Sample viewer

vx.netlux.org/Virus.DOS.Slam.Hunter.324.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:00:51.145851426Z 53 PC: 12aa7 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:51.148594914Z 37 PC: 12ab7 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:51.150666179Z 71 PC: 12ac0 | Get current directory
2018-12-17T23:00:51.154612089Z 53 PC: 12ac7 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:00:51.157858809Z 37 PC: 12ad0 | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T23:00:51.159440571Z 78 PC: 12b01 | Find first file
2018-12-17T23:00:51.166496139Z 67 PC: 12b0a | Get or set file attributes
2018-12-17T23:00:51.1733453Z 67 PC: 12b14 | Get or set file attributes
2018-12-17T23:00:51.309991908Z 61 PC: 12b18 | Open file (Filename = '')
2018-12-17T23:00:51.318272582Z 87 PC: 12b1d | Get or set file date and time
2018-12-17T23:00:51.320551417Z 63 PC: 12b28 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:00:51.329521166Z 66 PC: 12b37 | Move file pointer
2018-12-17T23:00:51.331660135Z 44 PC: 12a50 | Get time 0x12a50: cmp dl, 0
0x12a53: je 0x12a4c
0x12a55: mov byte ptr [0x10a], dl
0x12a59: call 0x12a6e
0x12a5c: pop bx
0x12a5d: mov cx, 0x144
0x12a60: mov dx, 0x100
0x12a63: mov ah, 0x40
0x12a65: int3
0x12a66: inc byte ptr [0x244]
0x12a6a: call 0x12a6e
0x12a6d: ret
0x12a6e: mov bx, 0x146
0x12a71: mov al, byte ptr [0x10a]
0x12a75: cmp al, 0
0x12a77: je 0x12a85
0x12a79: xor byte ptr [bx], al
0x12a7c: inc bx
0x12a7d: add al, bh
0x12a7f: cmp bx, 0x22d
2018-12-17T23:00:51.334788074Z 64 PC: 12a66 | Write file or device (Write 324 bytes on handle 5)
2018-12-17T23:00:51.339475194Z 87 PC: 12b42 | Get or set file date and time
2018-12-17T23:00:51.341740823Z 62 PC: 12b45 | Close file
2018-12-17T23:00:51.350842907Z 67 PC: 12b50 | Get or set file attributes
2018-12-17T23:00:51.362640369Z 79 PC: 12b01 | Find next file
2018-12-17T23:00:51.366114142Z 67 PC: 12b0a | Get or set file attributes
2018-12-17T23:00:51.372940287Z 67 PC: 12b14 | Get or set file attributes
2018-12-17T23:00:51.385030672Z 61 PC: 12b18 | Open file (Filename = '')
2018-12-17T23:00:51.393680015Z 87 PC: 12b1d | Get or set file date and time
2018-12-17T23:00:51.395743602Z 63 PC: 12b28 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:00:51.403549738Z 66 PC: 12b37 | Move file pointer
2018-12-17T23:00:51.405221711Z 44 PC: 12a50 | Get time 0x12a50: cmp dl, 0
0x12a53: je 0x12a4c
0x12a55: mov byte ptr [0x10a], dl
0x12a59: call 0x12a6e
0x12a5c: pop bx
0x12a5d: mov cx, 0x144
0x12a60: mov dx, 0x100
0x12a63: mov ah, 0x40
0x12a65: int3
0x12a66: inc byte ptr [0x244]
0x12a6a: call 0x12a6e
0x12a6d: ret
0x12a6e: mov bx, 0x146
0x12a71: mov al, byte ptr [0x10a]
0x12a75: cmp al, 0
0x12a77: je 0x12a85
0x12a79: xor byte ptr [bx], al
0x12a7c: inc bx
0x12a7d: add al, bh
0x12a7f: cmp bx, 0x22d
2018-12-17T23:00:51.407687413Z 64 PC: 12a66 | Write file or device (Write 324 bytes on handle 5)
2018-12-17T23:00:51.410887289Z 87 PC: 12b42 | Get or set file date and time
2018-12-17T23:00:51.413747492Z 62 PC: 12b45 | Close file
2018-12-17T23:00:51.422316956Z 67 PC: 12b50 | Get or set file attributes
2018-12-17T23:00:51.433227867Z 79 PC: 12b01 | Find next file
2018-12-17T23:00:51.43681627Z 67 PC: 12b0a | Get or set file attributes
2018-12-17T23:00:51.443595902Z 67 PC: 12b14 | Get or set file attributes
2018-12-17T23:00:51.45479274Z 61 PC: 12b18 | Open file (Filename = '')
2018-12-17T23:00:51.463611098Z 87 PC: 12b1d | Get or set file date and time
2018-12-17T23:00:51.465464206Z 63 PC: 12b28 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:00:51.473303253Z 66 PC: 12b37 | Move file pointer
2018-12-17T23:00:51.475909109Z 44 PC: 12a50 | Get time 0x12a50: cmp dl, 0
0x12a53: je 0x12a4c
0x12a55: mov byte ptr [0x10a], dl
0x12a59: call 0x12a6e
0x12a5c: pop bx
0x12a5d: mov cx, 0x144
0x12a60: mov dx, 0x100
0x12a63: mov ah, 0x40
0x12a65: int3
0x12a66: inc byte ptr [0x244]
0x12a6a: call 0x12a6e
0x12a6d: ret
0x12a6e: mov bx, 0x146
0x12a71: mov al, byte ptr [0x10a]
0x12a75: cmp al, 0
0x12a77: je 0x12a85
0x12a79: xor byte ptr [bx], al
0x12a7c: inc bx
0x12a7d: add al, bh
0x12a7f: cmp bx, 0x22d
2018-12-17T23:00:51.478383571Z 64 PC: 12a66 | Write file or device (Write 324 bytes on handle 5)
2018-12-17T23:00:51.482385Z 87 PC: 12b42 | Get or set file date and time
2018-12-17T23:00:51.485046406Z 62 PC: 12b45 | Close file
2018-12-17T23:00:51.493611734Z 67 PC: 12b50 | Get or set file attributes
2018-12-17T23:00:51.504855299Z 59 PC: 12aed | Change current directory
2018-12-17T23:00:51.516948838Z 37 PC: 12af9 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')