Sample viewer

vx.netlux.org/Virus.DOS.Em.1303

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:02:19.426507923Z 44 PC: 12ad8 | Get time 0x12ad8: mov al, dl
0x12ada: or al, al
0x12adc: jne 0x12ae2
0x12ade: nop
0x12adf: nop
0x12ae0: inc al
0x12ae2: mov byte ptr [0x5f1], al
0x12ae5: nop
0x12ae6: nop
0x12ae7: nop
0x12ae8: nop
0x12ae9: call 0x12b9d
0x12aec: jmp 0x12b8a
0x12aef: mov ax, 0xa
0x12af2: push ax
0x12af3: mov ah, 0xe
0x12af5: mov dl, 2
0x12af7: int 0x21
0x12af9: mov ah, 0x2a
0x12afb: int 0x21
2018-12-17T23:02:19.430194101Z 14 PC: 12ba3 | Set default drive (Drive = 'C')
2018-12-17T23:02:19.431852181Z 59 PC: 12bab | Change current directory
2018-12-17T23:02:19.436037412Z 61 PC: 12bb6 | Open file (Filename = '�A')
2018-12-17T23:02:19.443164326Z 87 PC: 12c99 | Get or set file date and time
2018-12-17T23:02:19.445464567Z 63 PC: 12c99 | Read file or device (Read 2048 bytes on handle 5)
2018-12-17T23:02:19.448457082Z 66 PC: 12c99 | Move file pointer
2018-12-17T23:02:19.449894016Z 64 PC: 12c99 | Write file or device (Write 94 bytes on handle 5)
2018-12-17T23:02:19.454152927Z 87 PC: 12c99 | Get or set file date and time
2018-12-17T23:02:19.456502076Z 62 PC: 12c99 | Close file
2018-12-17T23:02:19.796696117Z 60 PC: 12c6f | Create or truncate file
2018-12-17T23:02:19.811235615Z 64 PC: 12c99 | Write file or device (Write 1303 bytes on handle 5)
2018-12-17T23:02:19.82383852Z 87 PC: 12c99 | Get or set file date and time
2018-12-17T23:02:19.826427229Z 62 PC: 12c99 | Close file
2018-12-17T23:02:19.836247753Z 59 PC: 12cda | Change current directory