Sample viewer

vx.netlux.org/Virus.DOS.Slam.Hunter.324.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:56:37.784660496Z 53 PC: 12a94 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:56:37.786347097Z 37 PC: 12aa4 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:56:37.788711773Z 71 PC: 12aad | Get current directory
2018-12-17T22:56:37.792198899Z 53 PC: 12ab4 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:56:37.793886041Z 37 PC: 12abd | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T22:56:37.796235519Z 78 PC: 12aee | Find first file
2018-12-17T22:56:37.803310091Z 67 PC: 12b0b | Get or set file attributes
2018-12-17T22:56:37.809810633Z 67 PC: 12b15 | Get or set file attributes
2018-12-17T22:56:37.828832107Z 61 PC: 12b19 | Open file (Filename = '')
2018-12-17T22:56:37.842724168Z 87 PC: 12b1e | Get or set file date and time
2018-12-17T22:56:37.845020265Z 63 PC: 12b29 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:56:37.853583476Z 66 PC: 12b38 | Move file pointer
2018-12-17T22:56:37.85532484Z 44 PC: 12a50 | Get time 0x12a50: mov byte ptr [0x10a], dl
0x12a54: call 0x12a69
0x12a57: pop bx
0x12a58: mov cx, 0x144
0x12a5b: mov dx, 0x100
0x12a5e: mov ah, 0x40
0x12a60: int3
0x12a61: inc byte ptr [0x244]
0x12a65: call 0x12a69
0x12a68: ret
0x12a69: mov bx, 0x141
0x12a6c: mov al, byte ptr [0x10a]
0x12a70: cmp al, 0
0x12a72: je 0x12a80
0x12a74: xor byte ptr [bx], al
0x12a77: inc bx
0x12a78: add al, bh
0x12a7a: cmp bx, 0x22f
0x12a7e: jle 0x12a74
0x12a80: ret
2018-12-17T22:56:37.857842393Z 64 PC: 12a61 | Write file or device (Write 324 bytes on handle 5)
2018-12-17T22:56:37.861799674Z 87 PC: 12b43 | Get or set file date and time
2018-12-17T22:56:37.867006594Z 62 PC: 12b46 | Close file
2018-12-17T22:56:37.875220718Z 67 PC: 12b51 | Get or set file attributes
2018-12-17T22:56:37.886019794Z 79 PC: 12aee | Find next file
2018-12-17T22:56:37.889585879Z 67 PC: 12b0b | Get or set file attributes
2018-12-17T22:56:37.896018433Z 67 PC: 12b15 | Get or set file attributes
2018-12-17T22:56:37.906769808Z 61 PC: 12b19 | Open file (Filename = '')
2018-12-17T22:56:37.920651859Z 87 PC: 12b1e | Get or set file date and time
2018-12-17T22:56:37.922376341Z 63 PC: 12b29 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:56:37.929307774Z 66 PC: 12b38 | Move file pointer
2018-12-17T22:56:37.93204508Z 44 PC: 12a50 | Get time 0x12a50: mov byte ptr [0x10a], dl
0x12a54: call 0x12a69
0x12a57: pop bx
0x12a58: mov cx, 0x144
0x12a5b: mov dx, 0x100
0x12a5e: mov ah, 0x40
0x12a60: int3
0x12a61: inc byte ptr [0x244]
0x12a65: call 0x12a69
0x12a68: ret
0x12a69: mov bx, 0x141
0x12a6c: mov al, byte ptr [0x10a]
0x12a70: cmp al, 0
0x12a72: je 0x12a80
0x12a74: xor byte ptr [bx], al
0x12a77: inc bx
0x12a78: add al, bh
0x12a7a: cmp bx, 0x22f
0x12a7e: jle 0x12a74
0x12a80: ret
2018-12-17T22:56:37.934628027Z 64 PC: 12a61 | Write file or device (Write 324 bytes on handle 5)
2018-12-17T22:56:37.93789999Z 87 PC: 12b43 | Get or set file date and time
2018-12-17T22:56:37.940925689Z 62 PC: 12b46 | Close file
2018-12-17T22:56:37.949426031Z 67 PC: 12b51 | Get or set file attributes
2018-12-17T22:56:37.960632221Z 59 PC: 12ada | Change current directory
2018-12-17T22:56:37.962896238Z 37 PC: 12ae6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')