Sample viewer

vx.netlux.org/Virus.DOS.Perfume.731.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:49:41.805998617Z 11 PC: 9f8db | Get input status
2018-12-17T22:49:41.809668202Z 53 PC: 9f959 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:49:41.81185492Z 37 PC: 9f96d | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:49:41.813655793Z 25 PC: 9f9e5 | Get default drive
2018-12-17T22:49:41.817299138Z 67 PC: 9fa1c | Get or set file attributes
2018-12-17T22:49:41.825243484Z 67 PC: 9fa26 | Get or set file attributes
2018-12-17T22:49:41.83149536Z 61 PC: 9fa2b | Open file (Filename = '�')
2018-12-17T22:49:41.838218571Z 87 PC: 9fac2 | Get or set file date and time
2018-12-17T22:49:41.841160629Z 62 PC: 9fac7 | Close file
2018-12-17T22:49:41.843703136Z 67 PC: 9facf | Get or set file attributes
2018-12-17T22:49:41.850298266Z 11 PC: 9f985 | Get input status
2018-12-17T22:49:41.854724522Z 42 PC: 9f8e4 | Get date 0x9f8e4: cmp cx, word ptr [0x7c]
0x9f8e8: jb 0x9f922
0x9f8ea: cmp dx, word ptr [0x7e]
0x9f8ee: jb 0x9f922
0x9f8f0: push cs
0x9f8f1: pop ds
0x9f8f2: mov dx, 0xf
0x9f8f5: mov ah, 9
0x9f8f7: int 0x21
0x9f8f9: mov ah, 0xa
0x9f8fb: mov dx, 0x34
0x9f8fe: int 0x21
0x9f900: mov bx, dx
0x9f902: cmp word ptr [bx + 1], 0x3404
0x9f907: jne 0x9f916
0x9f909: cmp byte ptr [bx + 3], 0x37
0x9f90d: jne 0x9f916
0x9f90f: cmp word ptr [bx + 4], 0x3131
0x9f914: je 0x9f922
0x9f916: mov dx, 0x46
2018-12-17T22:49:41.859058395Z 9 PC: 9f8f9 | Display string (Could not find end pointer)
2018-12-17T22:49:41.864632487Z 10 PC: 9f900 | Buffered keyboard input