Sample viewer

vx.netlux.org/Virus.DOS.Vienna.646

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:00:19.713900118Z 48 PC: 12e41 | Get DOS version
2018-12-17T23:00:19.727083242Z 47 PC: 12e4d | Get disk transfer address
2018-12-17T23:00:19.729274023Z 26 PC: 12e60 | Set disk transfer address
2018-12-17T23:00:19.730750729Z 78 PC: 12eec | Find first file
2018-12-17T23:00:19.74684107Z 67 PC: 12f2a | Get or set file attributes
2018-12-17T23:00:19.763150128Z 67 PC: 12f3c | Get or set file attributes
2018-12-17T23:00:19.784724666Z 61 PC: 12f47 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:19.792491113Z 87 PC: 12f53 | Get or set file date and time
2018-12-17T23:00:19.794421794Z 44 PC: 12f5f | Get time 0x12f5f: and dh, 7
0x12f62: jmp 0x12f75
0x12f64: nop
0x12f65: mov ah, 0x40
0x12f67: mov cx, 5
0x12f6a: mov dx, si
0x12f6c: add dx, 0x8a
0x12f70: int 0x21
0x12f72: jmp 0x12fd9
0x12f74: nop
0x12f75: mov ah, 0x3f
0x12f77: mov cx, 3
0x12f7a: mov dx, 0xa
0x12f7d: nop
0x12f7e: add dx, si
0x12f80: int 0x21
0x12f82: jb 0x12fd9
0x12f84: cmp ax, 3
0x12f87: jne 0x12fd9
0x12f89: mov ax, 0x4202
2018-12-17T23:00:19.796841688Z 63 PC: 12f82 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:00:19.804031844Z 66 PC: 12f94 | Move file pointer
2018-12-17T23:00:19.806776914Z 64 PC: 12fb8 | Write file or device (Write 646 bytes on handle 5)
2018-12-17T23:00:19.817627702Z 66 PC: 12fca | Move file pointer
2018-12-17T23:00:19.819569624Z 64 PC: 12fd9 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:00:19.828128245Z 87 PC: 12fec | Get or set file date and time
2018-12-17T23:00:19.830120754Z 62 PC: 12ff0 | Close file
2018-12-17T23:00:19.843954635Z 67 PC: 12fff | Get or set file attributes
2018-12-17T23:00:19.857741071Z 26 PC: 1300c | Set disk transfer address
2018-12-17T23:00:19.860720213Z 9 PC: 12e26 | Display string (String= 'Hello - Copyright S & S International, 1990 ')