Sample viewer

vx.netlux.org/Virus.DOS.Whimsy.256

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:50:18.10603104Z 26 PC: 227d1 | Set disk transfer address
2018-12-17T22:50:18.108420199Z 78 PC: 227d8 | Find first file
2018-12-17T22:50:18.11434087Z 61 PC: 227ec | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:50:18.120846122Z 63 PC: 227fa | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:50:18.136753973Z 66 PC: 2280c | Move file pointer
2018-12-17T22:50:18.150846156Z 44 PC: 22860 | Get time 0x22860: shr cl, 1
0x22862: jb 0x2286a
0x22864: xor word ptr [0xfe7c], 0x2d02
0x2286a: shr cl, 1
0x2286c: jb 0x22874
0x2286e: xor word ptr [0xfe7f], 0x1202
0x22874: mov di, 0xfe78
0x22877: call 0x3283c
0x2287a: mov di, 0xff61
0x2287d: call 0x3283c
0x22880: mov di, 0xfee5
0x22883: call 0x32840
0x22886: mov di, 0xfea7
0x22889: call 0x3283c
0x2288c: mov di, 0xfec5
0x2288f: call 0x3283c
0x22892: mov dx, 0xfe6c
0x22895: mov ah, 0x40
0x22897: call 0x2289e
0x2289a: mov ch, 1
2018-12-17T22:50:18.153309691Z 64 PC: 2289e | Write file or device (Write 256 bytes on handle 5)
2018-12-17T22:50:18.419072454Z 66 PC: 22818 | Move file pointer
2018-12-17T22:50:18.420561013Z 64 PC: 22822 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:50:18.427039746Z 87 PC: 22830 | Get or set file date and time
2018-12-17T22:50:18.429625319Z 62 PC: 22834 | Close file
2018-12-17T22:50:18.438084502Z 26 PC: 2283b | Set disk transfer address