Sample viewer

vx.netlux.org/Virus.DOS.VirDem.1336.g

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:51:17.063561297Z 25 PC: 12a79 | Get default drive
2018-12-17T22:51:17.064908539Z 71 PC: 12a8b | Get current directory
2018-12-17T22:51:17.068083397Z 14 PC: 12ab3 | Set default drive (Drive = 'A')
2018-12-17T22:51:17.06971455Z 59 PC: 12abb | Change current directory
2018-12-17T22:51:17.074296658Z 78 PC: 12b14 | Find first file
2018-12-17T22:51:17.08211743Z 79 PC: 12b27 | Find next file
2018-12-17T22:51:17.085249258Z 61 PC: 12b32 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:51:17.092604107Z 63 PC: 12b40 | Read file or device (Read 1280 bytes on handle 5)
2018-12-17T22:51:17.100660985Z 62 PC: 12b44 | Close file
2018-12-17T22:51:17.103110232Z 67 PC: 12b58 | Get or set file attributes
2018-12-17T22:51:17.11590491Z 67 PC: 12b62 | Get or set file attributes
2018-12-17T22:51:17.697383342Z 61 PC: 12b6b | Open file (Filename = 'PRINT.COM')
2018-12-17T22:51:17.705531707Z 87 PC: 12b73 | Get or set file date and time
2018-12-17T22:51:17.708440534Z 66 PC: 12b81 | Move file pointer
2018-12-17T22:51:17.710269231Z 66 PC: 12ce5 | Move file pointer
2018-12-17T22:51:17.712873754Z 64 PC: 12b9d | Write file or device (Write 1280 bytes on handle 5)
2018-12-17T22:51:17.724054615Z 64 PC: 12bc4 | Write file or device (Write 56 bytes on handle 5)
2018-12-17T22:51:17.734905989Z 66 PC: 12c0c | Move file pointer
2018-12-17T22:51:17.738829522Z 64 PC: 12c18 | Write file or device (Write 1280 bytes on handle 5)
2018-12-17T22:51:17.748415865Z 87 PC: 12c20 | Get or set file date and time
2018-12-17T22:51:17.75145479Z 62 PC: 12c24 | Close file
2018-12-17T22:51:17.760805929Z 14 PC: 12ccf | Set default drive (Drive = 'A')
2018-12-17T22:51:17.762400618Z 59 PC: 12cd7 | Change current directory
2018-12-17T22:51:17.767193784Z 64 PC: 12c54 | Write file or device (Write 262 bytes on handle 1)
2018-12-17T22:51:17.787940264Z 2 PC: 12c5f | Character output (Char = '36')
2018-12-17T22:51:17.791265818Z 44 PC: 12c63 | Get time 0x12c63: mov al, bl
0x12c65: and al, 0xf
0x12c67: mov bx, 0x41c
0x12c6a: xlatb
0x12c6b: mov bh, al
0x12c6d: and dx, 0xff
0x12c71: mov ah, 0
0x12c73: mov dh, 0
0x12c75: mov al, dl
0x12c77: mov dl, bh
0x12c79: div dl
0x12c7b: mov dl, al
0x12c7d: or dl, 0x30
0x12c80: mov ah, 0xc
0x12c82: mov al, 1
0x12c84: int 0x21
0x12c86: cmp dl, al
0x12c88: je 0x12cb1
0x12c8a: mov bl, dl
0x12c8c: mov ah, 2
2018-12-17T22:51:17.794079708Z 12 PC: 12c86 | Flush input buffer and input