Sample viewer

vx.netlux.org/Virus.DOS.Jessica.1261

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:58:10.463839412Z 53 PC: 31342 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:58:10.465612661Z 48 PC: 136d7 | Get DOS version
2018-12-17T22:58:10.466734324Z 74 PC: 13719 | Reallocate memory
2018-12-17T22:58:10.46891305Z 53 PC: 13729 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:58:10.470532302Z 37 PC: 1373d | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:58:10.472239153Z 68 PC: 13786 | I/O control for devices (Set for = '')
2018-12-17T22:58:10.474651465Z 68 PC: 13786 | I/O control for devices (Set for = '')
2018-12-17T22:58:10.476128455Z 68 PC: 13786 | I/O control for devices (Set for = '')
2018-12-17T22:58:10.477525781Z 68 PC: 13786 | I/O control for devices (Set for = '')
2018-12-17T22:58:10.47981454Z 68 PC: 13786 | I/O control for devices (Set for = '')
2018-12-17T22:58:10.48199857Z 48 PC: 12c61 | Get DOS version
2018-12-17T22:58:10.484271222Z 42 PC: 12c61 | Get date 0x12c61: pop bp
0x12c62: mov word ptr [0x20d0], cx
0x12c66: mov word ptr [0x20d2], dx
0x12c6a: mov sp, bp
0x12c6c: pop bp
0x12c6d: retf 4
0x12c70: push bp
0x12c71: mov bp, sp
0x12c73: cmp word ptr [0x2214], 0
0x12c78: jne 0x12cea
0x12c7a: inc word ptr [0x2214]
0x12c7e: mov ax, 0x12a4
0x12c81: mov word ptr [0x305e], ax
0x12c84: mov ax, 0x733
0x12c87: mov word ptr [0x305c], ax
0x12c8a: mov ax, 0x2b3c
0x12c8d: mov es, ax
0x12c8f: mov ax, word ptr es:[0x3078]
0x12c93: mov word ptr [0x2208], ax
0x12c96: mov ax, word ptr es:[0x307a]
2018-12-17T22:58:10.487489569Z 44 PC: 12c61 | Get time 0x12c61: pop bp
0x12c62: mov word ptr [0x20d0], cx
0x12c66: mov word ptr [0x20d2], dx
0x12c6a: mov sp, bp
0x12c6c: pop bp
0x12c6d: retf 4
0x12c70: push bp
0x12c71: mov bp, sp
0x12c73: cmp word ptr [0x2214], 0
0x12c78: jne 0x12cea
0x12c7a: inc word ptr [0x2214]
0x12c7e: mov ax, 0x12a4
0x12c81: mov word ptr [0x305e], ax
0x12c84: mov ax, 0x733
0x12c87: mov word ptr [0x305c], ax
0x12c8a: mov ax, 0x2b3c
0x12c8d: mov es, ax
0x12c8f: mov ax, word ptr es:[0x3078]
0x12c93: mov word ptr [0x2208], ax
0x12c96: mov ax, word ptr es:[0x307a]
2018-12-17T22:58:10.490056606Z 64 PC: 12bdd | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:58:10.494990552Z 64 PC: 12bdd | Write file or device (Write 37 bytes on handle 1)
2018-12-17T22:58:10.511992743Z 64 PC: 12bdd | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:58:10.516353926Z 64 PC: 12bdd | Write file or device (Write 51 bytes on handle 1)
2018-12-17T22:58:10.521605307Z 64 PC: 12bdd | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:58:10.526257509Z 64 PC: 12bdd | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:58:10.531217038Z 64 PC: 12bdd | Write file or device (Write 17 bytes on handle 1)
2018-12-17T22:58:10.54247081Z 64 PC: 12bdd | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:58:10.545717389Z 64 PC: 12bdd | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:58:10.548727511Z 64 PC: 12bdd | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:58:10.553037243Z 63 PC: 12bdd | Read file or device (Read 1 bytes on handle 0)