Sample viewer

vx.netlux.org/Virus.DOS.Como.1786

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:55:20.592687929Z 44 PC: 1321e | Get time 0x1321e: ret
0x1321f: mov ah, 0x2a
0x13221: int 0x21
0x13223: ret
0x13224: mov ah, 0x57
0x13226: mov al, 0
0x13228: mov bx, word ptr cs:[0x95]
0x1322d: int 0x21
0x1322f: mov word ptr cs:[0x7f8], dx
0x13234: mov word ptr cs:[0x7fa], cx
0x13239: ret
0x1323a: mov ah, 0x57
0x1323c: mov al, 1
0x1323e: mov bx, word ptr cs:[0x95]
0x13243: mov dx, word ptr cs:[0x7f8]
0x13248: mov cx, word ptr cs:[0x7fa]
0x1324d: int 0x21
0x1324f: ret
0x13250: push ds
0x13251: mov ah, 0x47
2018-12-17T22:55:20.595200084Z 47 PC: 132f3 | Get disk transfer address
2018-12-17T22:55:20.597038171Z 26 PC: 12fc6 | Set disk transfer address
2018-12-17T22:55:20.598650955Z 71 PC: 1325a | Get current directory
2018-12-17T22:55:20.601953727Z 59 PC: 132c5 | Change current directory
2018-12-17T22:55:20.606923223Z 78 PC: 13267 | Find first file
2018-12-17T22:55:20.618409457Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.62152663Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.625732481Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.63261753Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.63852441Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.64234698Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.64653134Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.65023164Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.660628896Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.663764693Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.666810361Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.669944336Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.673080806Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.684479414Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.68762472Z 79 PC: 1328d | Find next file
2018-12-17T22:55:20.691674998Z 78 PC: 13198 | Find first file
2018-12-17T22:55:20.698945924Z 79 PC: 131ae | Find next file
2018-12-17T22:55:20.709379568Z 59 PC: 132c5 | Change current directory
2018-12-17T22:55:20.716986675Z 59 PC: 132af | Change current directory
2018-12-17T22:55:20.720702454Z 26 PC: 1330e | Set disk transfer address
2018-12-17T22:55:20.722170666Z 42 PC: 13223 | Get date 0x13223: ret
0x13224: mov ah, 0x57
0x13226: mov al, 0
0x13228: mov bx, word ptr cs:[0x95]
0x1322d: int 0x21
0x1322f: mov word ptr cs:[0x7f8], dx
0x13234: mov word ptr cs:[0x7fa], cx
0x13239: ret
0x1323a: mov ah, 0x57
0x1323c: mov al, 1
0x1323e: mov bx, word ptr cs:[0x95]
0x13243: mov dx, word ptr cs:[0x7f8]
0x13248: mov cx, word ptr cs:[0x7fa]
0x1324d: int 0x21
0x1324f: ret
0x13250: push ds
0x13251: mov ah, 0x47
0x13253: mov si, 0x730
0x13256: mov dl, 0
0x13258: int 0x21
2018-12-17T22:55:20.726535345Z 76 PC: 12aa4 | Terminate with return code (Return code = '0')