Sample viewer

vx.netlux.org/Virus.DOS.Sailor.1107

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:47:14.533741614Z 42 PC: 12b1e | Get date 0x12b1e: cmp bx, 0xdef6
0x12b22: je 0x12b72
0x12b24: push es
0x12b25: mov ax, 0x3521
0x12b28: int 0x21
0x12b2a: mov word ptr cs:[bp + 0x1b6], bx
0x12b2f: mov word ptr cs:[bp + 0x1b8], es
0x12b34: pop es
0x12b35: mov ax, es
0x12b37: dec ax
0x12b38: mov ds, ax
0x12b3a: sub di, di
0x12b3c: cmp byte ptr [di], 0x5a
0x12b3f: je 0x12b49
0x12b41: inc ax
0x12b42: add ax, word ptr [di + 3]
0x12b45: mov ds, ax
0x12b47: jmp 0x12b3c
0x12b49: sub word ptr [di + 3], 0x48
0x12b4d: add ax, word ptr [di + 3]
2018-12-17T22:47:14.536093764Z 53 PC: 12b2a | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:47:14.538072Z 37 PC: 12b6d | Set interrupt vector (Interrupt = '33' AKA 'Random read')