Sample viewer

vx.netlux.org/Virus.DOS.YouHaveProblem

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:49:40.174926022Z 47 PC: 12a5b | Get disk transfer address
2018-12-17T22:49:40.176931554Z 26 PC: 12a69 | Set disk transfer address
2018-12-17T22:49:40.180430783Z 25 PC: 12bd8 | Get default drive
2018-12-17T22:49:40.18208554Z 42 PC: 12b97 | Get date 0x12b97: xor ch, cl
0x12b99: xor dh, dl
0x12b9b: xor cx, dx
0x12b9d: push cx
0x12b9e: mov ah, 0x2c
0x12ba0: int 0x21
0x12ba2: xor ch, cl
0x12ba4: xor dh, dl
0x12ba6: xor cx, dx
0x12ba8: pop dx
0x12ba9: xor cx, dx
0x12bab: cmp ch, cl
0x12bad: je 0x12bb2
0x12baf: jmp 0x12bcb
0x12bb1: nop
0x12bb2: push cs
0x12bb3: pop ds
0x12bb4: mov ah, 0xe
0x12bb6: xor cx, cx
0x12bb8: xor bx, bx
2018-12-17T22:49:40.184898128Z 44 PC: 12ba2 | Get time 0x12ba2: xor ch, cl
0x12ba4: xor dh, dl
0x12ba6: xor cx, dx
0x12ba8: pop dx
0x12ba9: xor cx, dx
0x12bab: cmp ch, cl
0x12bad: je 0x12bb2
0x12baf: jmp 0x12bcb
0x12bb1: nop
0x12bb2: push cs
0x12bb3: pop ds
0x12bb4: mov ah, 0xe
0x12bb6: xor cx, cx
0x12bb8: xor bx, bx
0x12bba: add di, 0x229
0x12bbe: mov al, byte ptr [di]
0x12bc0: sub al, 0x2d
0x12bc2: cmp al, 0
0x12bc4: je 0x12bcb
0x12bc6: int 0x10
2018-12-17T22:49:40.188849053Z 26 PC: 12aa1 | Set disk transfer address