Sample viewer

vx.netlux.org/Virus.DOS.Jester.222

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:02:49.684586405Z 26 PC: 12a67 | Set disk transfer address
2018-12-17T23:02:49.687372129Z 78 PC: 12a73 | Find first file
2018-12-17T23:02:49.691559057Z 61 PC: 12a82 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:02:49.695450664Z 87 PC: 12a8b | Get or set file date and time
2018-12-17T23:02:49.696882477Z 63 PC: 12a9e | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:02:49.700850105Z 66 PC: 12aad | Move file pointer
2018-12-17T23:02:49.701851037Z 64 PC: 12abf | Write file or device (Write 222 bytes on handle 5)
2018-12-17T23:02:49.715169288Z 66 PC: 12ac7 | Move file pointer
2018-12-17T23:02:49.716162805Z 64 PC: 12ad2 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:02:49.720362776Z 87 PC: 12ae0 | Get or set file date and time
2018-12-17T23:02:49.721646305Z 62 PC: 12ae4 | Close file
2018-12-17T23:02:49.726545597Z 79 PC: 12a73 | Find next file
2018-12-17T23:02:49.729103412Z 61 PC: 12a82 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:02:49.735975056Z 87 PC: 12a8b | Get or set file date and time
2018-12-17T23:02:49.737306719Z 63 PC: 12a9e | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:02:49.743696361Z 66 PC: 12aad | Move file pointer
2018-12-17T23:02:49.746100935Z 64 PC: 12abf | Write file or device (Write 222 bytes on handle 5)
2018-12-17T23:02:49.749100268Z 66 PC: 12ac7 | Move file pointer
2018-12-17T23:02:49.751020597Z 64 PC: 12ad2 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:02:49.754163764Z 87 PC: 12ae0 | Get or set file date and time
2018-12-17T23:02:49.757416858Z 62 PC: 12ae4 | Close file
2018-12-17T23:02:49.767271452Z 79 PC: 12a73 | Find next file
2018-12-17T23:02:49.771992256Z 61 PC: 12a82 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:02:49.784832921Z 87 PC: 12a8b | Get or set file date and time
2018-12-17T23:02:49.78622099Z 63 PC: 12a9e | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:02:49.792384485Z 66 PC: 12aad | Move file pointer
2018-12-17T23:02:49.79460324Z 64 PC: 12abf | Write file or device (Write 222 bytes on handle 5)
2018-12-17T23:02:49.797183286Z 66 PC: 12ac7 | Move file pointer
2018-12-17T23:02:49.798523684Z 64 PC: 12ad2 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:02:49.802111703Z 87 PC: 12ae0 | Get or set file date and time
2018-12-17T23:02:49.803510598Z 62 PC: 12ae4 | Close file
2018-12-17T23:02:49.81096199Z 79 PC: 12a73 | Find next file
2018-12-17T23:02:49.816679378Z 61 PC: 12a82 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:02:49.823072395Z 87 PC: 12a8b | Get or set file date and time
2018-12-17T23:02:49.824683014Z 63 PC: 12a9e | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:02:49.831365197Z 66 PC: 12aad | Move file pointer
2018-12-17T23:02:49.833663719Z 64 PC: 12abf | Write file or device (Write 222 bytes on handle 5)
2018-12-17T23:02:49.836130101Z 66 PC: 12ac7 | Move file pointer
2018-12-17T23:02:49.837416863Z 64 PC: 12ad2 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:02:49.841079059Z 87 PC: 12ae0 | Get or set file date and time
2018-12-17T23:02:49.842523108Z 62 PC: 12ae4 | Close file
2018-12-17T23:02:49.850258786Z 79 PC: 12a73 | Find next file
2018-12-17T23:02:49.85498943Z 61 PC: 12a82 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:02:49.861795875Z 87 PC: 12a8b | Get or set file date and time
2018-12-17T23:02:49.863411263Z 63 PC: 12a9e | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:02:49.870711663Z 66 PC: 12aad | Move file pointer
2018-12-17T23:02:49.872195627Z 64 PC: 12abf | Write file or device (Write 222 bytes on handle 5)
2018-12-17T23:02:49.875021183Z 66 PC: 12ac7 | Move file pointer
2018-12-17T23:02:49.877004145Z 64 PC: 12ad2 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:02:49.880040428Z 87 PC: 12ae0 | Get or set file date and time
2018-12-17T23:02:49.881785Z 62 PC: 12ae4 | Close file
2018-12-17T23:02:49.889344553Z 79 PC: 12a73 | Find next file
2018-12-17T23:02:49.892160081Z 61 PC: 12a82 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:02:49.899222462Z 87 PC: 12a8b | Get or set file date and time
2018-12-17T23:02:49.901200806Z 63 PC: 12a9e | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:02:49.907569404Z 66 PC: 12aad | Move file pointer
2018-12-17T23:02:49.908947193Z 64 PC: 12abf | Write file or device (Write 222 bytes on handle 5)
2018-12-17T23:02:49.918160873Z 66 PC: 12ac7 | Move file pointer
2018-12-17T23:02:49.919906773Z 64 PC: 12ad2 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:02:49.926361754Z 87 PC: 12ae0 | Get or set file date and time
2018-12-17T23:02:49.933163893Z 62 PC: 12ae4 | Close file
2018-12-17T23:02:49.941236305Z 79 PC: 12a73 | Find next file
2018-12-17T23:02:49.944046736Z 61 PC: 12a82 | Open file (Filename = 'PAH.COM')
2018-12-17T23:02:49.951303273Z 87 PC: 12a8b | Get or set file date and time
2018-12-17T23:02:49.95272937Z 63 PC: 12a9e | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:02:49.958906061Z 66 PC: 12aad | Move file pointer
2018-12-17T23:02:49.961074481Z 64 PC: 12abf | Write file or device (Write 222 bytes on handle 5)
2018-12-17T23:02:49.963599491Z 66 PC: 12ac7 | Move file pointer
2018-12-17T23:02:49.96478768Z 64 PC: 12ad2 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:02:49.967585968Z 87 PC: 12ae0 | Get or set file date and time
2018-12-17T23:02:49.968937937Z 62 PC: 12ae4 | Close file
2018-12-17T23:02:49.976021489Z 79 PC: 12a73 | Find next file
2018-12-17T23:02:49.978823535Z 44 PC: 12aec | Get time 0x12aec: cmp dl, 5
0x12aef: jg 0x12af3
0x12af1: int 0x19
0x12af3: mov dx, 0x80
0x12af6: mov ah, 0x1a
0x12af8: int 0x21
0x12afa: mov di, 0x100
0x12afd: push di
0x12afe: ret
0x12aff: xor word ptr [0x6f63], bp
0x12b03: insw word ptr es:[di], dx
0x12b04: add cl, ch
0x12b06: sbb al, byte ptr [bx + si]
0x12b08: dec cx
0x12b09: sbb cl, byte ptr [di + 0x4d88]
0x12b0d: inc bp
0x12b0e: bound cx, dword ptr [bx + 0x6c]
0x12b11: inc cx
0x12b12: add byte ptr [si + 0x68], dl
0x12b15: and byte ptr gs:[bp + si + 0x65], cl
2018-12-17T23:02:49.980829633Z 26 PC: 12afa | Set disk transfer address