Sample viewer

vx.netlux.org/Virus.DOS.Summer.616

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:52:48.547732955Z 26 PC: 12ad4 | Set disk transfer address
2018-12-17T22:52:48.549911968Z 44 PC: 12ad8 | Get time 0x12ad8: xchg ax, cx
0x12ad9: add byte ptr [0x209], al
0x12add: add byte ptr [0x211], ah
0x12ae1: or al, al
0x12ae3: jne 0x12af9
0x12ae5: mov di, 0x224
0x12ae8: mov si, 0x22b
0x12aeb: mov cx, 0xe
0x12aee: push di
0x12aef: rep movsd dword ptr es:[di], dword ptr [si]
0x12af1: pop si
0x12af2: mov di, 0x240
0x12af5: mov cl, 7
0x12af7: rep movsb byte ptr es:[di], byte ptr [si]
0x12af9: mov al, dh
0x12afb: and ax, 0xe
0x12afe: add ax, 0x206
0x12b01: xchg ax, si
0x12b02: lodsw ax, word ptr [si]
0x12b03: mov word ptr [0x261], ax
2018-12-17T22:52:48.553483638Z 42 PC: 12b19 | Get date 0x12b19: or al, al
0x12b1b: je 0x12b94
0x12b1d: mov ah, 0x36
0x12b1f: cdq
0x12b20: int 0x21
0x12b22: inc ax
0x12b23: je 0x12b94
0x12b25: cmp bx, 5
0x12b28: jb 0x12b94
0x12b2a: mov ah, 0x4e
0x12b2c: mov dx, 0x1f7
0x12b2f: mov word ptr [0x1f9], 0x5845
0x12b35: call 0x12c70
0x12b38: mov word ptr [0x1f9], 0x5555
0x12b3e: jb 0x12b94
0x12b40: mov ax, 0x4f68
0x12b43: sub al, byte ptr [0x2a7]
0x12b47: add byte ptr [0x25b], al
0x12b4b: and al, 0xf
0x12b4d: je 0x12b35
2018-12-17T22:52:48.556059366Z 54 PC: 12b22 | Get free disk space
2018-12-17T22:52:48.569892511Z 78 PC: 12c76 | Find first file
2018-12-17T22:52:48.57650914Z 79 PC: 12c76 | Find next file
2018-12-17T22:52:48.578990011Z 26 PC: 12b9d | Set disk transfer address