Sample viewer

vx.netlux.org/Virus.DOS.SatanBrain.606

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:58:16.422636671Z 47 PC: 12a63 | Get disk transfer address
2018-12-17T22:58:16.424852737Z 26 PC: 12a6b | Set disk transfer address
2018-12-17T22:58:16.426562981Z 42 PC: 12c0f | Get date 0x12c0f: mov al, dl
0x12c11: cwde
0x12c12: ret
0x12c13: push bx
0x12c14: inc bp
0x12c15: push bp
0x12c16: and byte ptr [bp + di + 0x4f], al
0x12c19: dec bp
0x12c1a: push ax
0x12c1b: push bp
0x12c1c: push sp
0x12c1d: inc cx
0x12c1e: inc sp
0x12c1f: dec di
0x12c20: push dx
0x12c21: and byte ptr [bp + 0x4f], al
0x12c24: dec cx
0x12c25: and byte ptr [bp + 0x49], dl
0x12c28: push bx
0x12c29: dec cx
2018-12-17T22:58:16.429207923Z 71 PC: 12ab5 | Get current directory
2018-12-17T22:58:16.432520549Z 59 PC: 12abd | Change current directory
2018-12-17T22:58:16.438742835Z 47 PC: 12ad2 | Get disk transfer address
2018-12-17T22:58:16.440193702Z 26 PC: 12ae0 | Set disk transfer address
2018-12-17T22:58:16.441688132Z 78 PC: 12aeb | Find first file
2018-12-17T22:58:16.449418091Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.452687256Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.455819884Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.459848136Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.462957901Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.466046607Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.469687451Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.472653265Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.476535302Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.480064065Z 47 PC: 12b39 | Get disk transfer address
2018-12-17T22:58:16.482358758Z 26 PC: 12b4a | Set disk transfer address
2018-12-17T22:58:16.485069394Z 78 PC: 12b54 | Find first file
2018-12-17T22:58:16.497270257Z 47 PC: 12b6c | Get disk transfer address
2018-12-17T22:58:16.498777079Z 61 PC: 12b85 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:58:16.506148294Z 63 PC: 12b91 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:16.512731619Z 66 PC: 12b99 | Move file pointer
2018-12-17T22:58:16.516257015Z 62 PC: 12b9e | Close file
2018-12-17T22:58:16.519170131Z 67 PC: 12bbe | Get or set file attributes
2018-12-17T22:58:16.541546831Z 61 PC: 12bc3 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:58:16.557836881Z 64 PC: 12bcf | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:16.561014464Z 66 PC: 12bd7 | Move file pointer
2018-12-17T22:58:16.56313493Z 64 PC: 12be2 | Write file or device (Write 606 bytes on handle 5)
2018-12-17T22:58:16.573874176Z 87 PC: 12bed | Get or set file date and time
2018-12-17T22:58:16.576350841Z 62 PC: 12bf1 | Close file
2018-12-17T22:58:16.584727847Z 67 PC: 12bfe | Get or set file attributes
2018-12-17T22:58:16.596240677Z 26 PC: 12b66 | Set disk transfer address
2018-12-17T22:58:16.59823202Z 26 PC: 12b23 | Set disk transfer address
2018-12-17T22:58:16.599458816Z 59 PC: 12ac7 | Change current directory
2018-12-17T22:58:16.602351614Z 71 PC: 12ab5 | Get current directory
2018-12-17T22:58:16.605155825Z 59 PC: 12abd | Change current directory
2018-12-17T22:58:16.610176793Z 47 PC: 12ad2 | Get disk transfer address
2018-12-17T22:58:16.6130003Z 26 PC: 12ae0 | Set disk transfer address
2018-12-17T22:58:16.615022551Z 78 PC: 12aeb | Find first file
2018-12-17T22:58:16.626347347Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.629117264Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.633002247Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.637423156Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.641514837Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.645113782Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.64976741Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.656296001Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.662150806Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.664569482Z 47 PC: 12b39 | Get disk transfer address
2018-12-17T22:58:16.666274216Z 26 PC: 12b4a | Set disk transfer address
2018-12-17T22:58:16.66836675Z 78 PC: 12b54 | Find first file
2018-12-17T22:58:16.675192671Z 47 PC: 12b6c | Get disk transfer address
2018-12-17T22:58:16.676482405Z 61 PC: 12b85 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:58:16.683559106Z 63 PC: 12b91 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:16.691171956Z 66 PC: 12b99 | Move file pointer
2018-12-17T22:58:16.692619406Z 62 PC: 12b9e | Close file
2018-12-17T22:58:16.69443536Z 79 PC: 12b54 | Find next file
2018-12-17T22:58:16.69828166Z 47 PC: 12b6c | Get disk transfer address
2018-12-17T22:58:16.699953532Z 61 PC: 12b85 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:58:16.707295262Z 63 PC: 12b91 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:16.715964227Z 66 PC: 12b99 | Move file pointer
2018-12-17T22:58:16.717408502Z 62 PC: 12b9e | Close file
2018-12-17T22:58:16.719324433Z 67 PC: 12bbe | Get or set file attributes
2018-12-17T22:58:16.73079818Z 61 PC: 12bc3 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:58:16.738257891Z 64 PC: 12bcf | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:16.741529551Z 66 PC: 12bd7 | Move file pointer
2018-12-17T22:58:16.74509354Z 64 PC: 12be2 | Write file or device (Write 606 bytes on handle 5)
2018-12-17T22:58:16.754679288Z 87 PC: 12bed | Get or set file date and time
2018-12-17T22:58:16.75651592Z 62 PC: 12bf1 | Close file
2018-12-17T22:58:16.766664195Z 67 PC: 12bfe | Get or set file attributes
2018-12-17T22:58:16.77705668Z 26 PC: 12b66 | Set disk transfer address
2018-12-17T22:58:16.778528176Z 26 PC: 12b23 | Set disk transfer address
2018-12-17T22:58:16.780292773Z 59 PC: 12ac7 | Change current directory
2018-12-17T22:58:16.782479373Z 71 PC: 12ab5 | Get current directory
2018-12-17T22:58:16.78605318Z 59 PC: 12abd | Change current directory
2018-12-17T22:58:16.790541216Z 47 PC: 12ad2 | Get disk transfer address
2018-12-17T22:58:16.792531607Z 26 PC: 12ae0 | Set disk transfer address
2018-12-17T22:58:16.794965352Z 78 PC: 12aeb | Find first file
2018-12-17T22:58:16.804192576Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.807786101Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.810996235Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.814237357Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.817980943Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.8207989Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.823680306Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.827351016Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.83032739Z 79 PC: 12b13 | Find next file
2018-12-17T22:58:16.83622681Z 47 PC: 12b39 | Get disk transfer address
2018-12-17T22:58:16.839708805Z 26 PC: 12b4a | Set disk transfer address
2018-12-17T22:58:16.84173865Z 78 PC: 12b54 | Find first file
2018-12-17T22:58:16.848285235Z 47 PC: 12b6c | Get disk transfer address
2018-12-17T22:58:16.850878259Z 61 PC: 12b85 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:58:16.858176237Z 63 PC: 12b91 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:16.861184652Z 66 PC: 12b99 | Move file pointer
2018-12-17T22:58:16.863775672Z 62 PC: 12b9e | Close file
2018-12-17T22:58:16.865764791Z 79 PC: 12b54 | Find next file
2018-12-17T22:58:16.868643683Z 47 PC: 12b6c | Get disk transfer address
2018-12-17T22:58:16.870200469Z 61 PC: 12b85 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:58:16.87851106Z 63 PC: 12b91 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:16.885464369Z 66 PC: 12b99 | Move file pointer
2018-12-17T22:58:16.887275934Z 62 PC: 12b9e | Close file
2018-12-17T22:58:16.889320217Z 79 PC: 12b54 | Find next file
2018-12-17T22:58:16.892750565Z 47 PC: 12b6c | Get disk transfer address
2018-12-17T22:58:16.894608457Z 61 PC: 12b85 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:58:16.903243899Z 63 PC: 12b91 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:16.911343734Z 66 PC: 12b99 | Move file pointer
2018-12-17T22:58:16.913269012Z 62 PC: 12b9e | Close file
2018-12-17T22:58:16.916722935Z 67 PC: 12bbe | Get or set file attributes
2018-12-17T22:58:16.928467731Z 61 PC: 12bc3 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:58:16.936854606Z 64 PC: 12bcf | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:16.941751009Z 66 PC: 12bd7 | Move file pointer
2018-12-17T22:58:16.943467626Z 64 PC: 12be2 | Write file or device (Write 606 bytes on handle 5)
2018-12-17T22:58:16.953167979Z 87 PC: 12bed | Get or set file date and time
2018-12-17T22:58:16.956094209Z 62 PC: 12bf1 | Close file
2018-12-17T22:58:16.965131056Z 67 PC: 12bfe | Get or set file attributes
2018-12-17T22:58:16.976192427Z 26 PC: 12b66 | Set disk transfer address
2018-12-17T22:58:16.97793326Z 26 PC: 12b23 | Set disk transfer address
2018-12-17T22:58:16.980413752Z 59 PC: 12ac7 | Change current directory
2018-12-17T22:58:16.98259939Z 26 PC: 12a95 | Set disk transfer address