Sample viewer

vx.netlux.org/Virus.DOS.Companion.923.based.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:01:25.74508065Z 44 PC: 12d60 | Get time 0x12d60: mov al, ch
0x12d62: cwde
0x12d63: cmp ax, 0x10
0x12d66: jge 0x12dad
0x12d68: mov sp, 0x69b
0x12d6b: mov bx, sp
0x12d6d: add bx, 0xf
0x12d70: mov cl, 4
0x12d72: shr bx, cl
0x12d74: mov ah, 0x4a
0x12d76: int 0x21
0x12d78: mov di, 0x39a
0x12d7b: nop
0x12d7c: mov si, 0x10d
0x12d7f: mov cx, 0xc
0x12d82: rep movsb byte ptr es:[di], byte ptr [si]
0x12d84: mov dx, 0x103
0x12d87: mov cx, word ptr [0x127]
0x12d8b: mov ah, 0x4e
0x12d8d: int 0x21
2018-12-17T22:01:25.748151699Z 74 PC: 12d78 | Reallocate memory
2018-12-17T22:01:25.74958455Z 78 PC: 12d8f | Find first file
2018-12-17T22:01:25.756655121Z 61 PC: 12d33 | Open file (Filename = 'TEST.COM')
2018-12-17T22:01:25.763247445Z 60 PC: 12d3e | Create or truncate file
2018-12-17T22:01:25.779473295Z 64 PC: 12d4c | Write file or device (Write 923 bytes on handle 5)
2018-12-17T22:01:25.787649207Z 62 PC: 12d50 | Close file
2018-12-17T22:01:25.796132716Z 67 PC: 12d5b | Get or set file attributes
2018-12-17T22:01:25.805996807Z 79 PC: 12d9e | Find next file
2018-12-17T22:01:25.812472967Z 81 PC: 12145 | Get current PSP