Sample viewer

vx.netlux.org/Virus.DOS.Consumed.377

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:57:25.127658315Z 78 PC: 12afa | Find first file
2018-12-17T22:57:25.134840282Z 61 PC: 12afa | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:57:25.141340945Z 63 PC: 12afa | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:57:25.147757757Z 66 PC: 12afa | Move file pointer
2018-12-17T22:57:25.149429515Z 44 PC: 12afa | Get time 0x12afa: pop si
0x12afb: ret
0x12afc: sub ch, byte ptr [0x4f43]
0x12b00: dec bp
0x12b01: add byte ptr [bp + di + 0x43], bl
0x12b04: outsw dx, word ptr [si]
0x12b05: outsb dx, byte ptr [si]
0x12b06: jae 0x12b7d
0x12b08: insw word ptr es:[di], dx
0x12b09: pop bp
0x12b0c: and byte ptr [bp + 0x31], dh
0x12b0f: xor byte ptr cs:[di], cl
0x12b12: or al, byte ptr [bp + di + 0x6f]
0x12b15: and byte ptr fs:[bp + si + 0x79], ah
0x12b1b: and byte ptr [si + 0x61], al
0x12b1e: je 0x12b81
0x12b20: and byte ptr [si + 0x69], al
0x12b23: jae 0x12b97
0x12b25: jne 0x12b97
0x12b27: je 0x12b98
2018-12-17T22:57:25.152161115Z 64 PC: 12afa | Write file or device (Write 27 bytes on handle 5)
2018-12-17T22:57:25.154885642Z 64 PC: 12afa | Write file or device (Write 350 bytes on handle 5)
2018-12-17T22:57:25.158127688Z 62 PC: 12afa | Close file
2018-12-17T22:57:25.172997105Z 76 PC: 12afa | Terminate with return code (Return code = '0')