Sample viewer

vx.netlux.org/Virus.DOS.Made.334.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:03:16.134964812Z 44 PC: 12e70 | Get time 0x12e70: cmp word ptr [si + 0x11b], 0
0x12e75: je 0x12e83
0x12e77: cmp word ptr [si + 0x11c], 0
0x12e7c: je 0x12e83
0x12e7e: cmp dh, 0xf
0x12e81: jle 0x12e91
0x12e83: cmp dl, 0
0x12e86: je 0x12e6c
0x12e88: cmp dh, 0
0x12e8b: je 0x12e6c
0x12e8d: mov word ptr [si + 0x11b], dx
0x12e91: mov bp, word ptr [si + 0x245]
0x12e95: add bp, 0x103
0x12e99: lea dx, word ptr [si + 0x247]
0x12e9d: xor cx, cx
0x12e9f: mov ah, 0x4e
0x12ea1: int 0x21
0x12ea3: jb 0x12f21
0x12ea5: mov ax, 0x3d02
0x12ea8: mov dx, 0x9e
2018-12-17T23:03:16.137593284Z 78 PC: 12ea3 | Find first file
2018-12-17T23:03:16.144340288Z 61 PC: 12ead | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:03:16.151061749Z 63 PC: 12f2a | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:03:16.158155517Z 79 PC: 12ea3 | Find next file
2018-12-17T23:03:16.161629085Z 61 PC: 12ead | Open file (Filename = 'PRINT.COM')
2018-12-17T23:03:16.168015954Z 63 PC: 12f2a | Read file or device (Read 3 bytes on handle 6)
2018-12-17T23:03:16.174690201Z 79 PC: 12ea3 | Find next file
2018-12-17T23:03:16.177301268Z 61 PC: 12ead | Open file (Filename = 'HELLO.COM')
2018-12-17T23:03:16.183675482Z 63 PC: 12f2a | Read file or device (Read 3 bytes on handle 7)
2018-12-17T23:03:16.190483062Z 79 PC: 12ea3 | Find next file
2018-12-17T23:03:16.192978766Z 61 PC: 12ead | Open file (Filename = 'PHANG.COM')
2018-12-17T23:03:16.199223972Z 63 PC: 12f2a | Read file or device (Read 3 bytes on handle 8)
2018-12-17T23:03:16.2066588Z 79 PC: 12ea3 | Find next file
2018-12-17T23:03:16.209183041Z 61 PC: 12ead | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:03:16.220370715Z 63 PC: 12f2a | Read file or device (Read 3 bytes on handle 9)
2018-12-17T23:03:16.227834587Z 79 PC: 12ea3 | Find next file
2018-12-17T23:03:16.230559598Z 61 PC: 12ead | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:03:16.236748942Z 63 PC: 12f2a | Read file or device (Read 3 bytes on handle 10)
2018-12-17T23:03:16.243010905Z 79 PC: 12ea3 | Find next file
2018-12-17T23:03:16.245540247Z 61 PC: 12ead | Open file (Filename = 'PAH.COM')
2018-12-17T23:03:16.251840362Z 63 PC: 12f2a | Read file or device (Read 3 bytes on handle 11)
2018-12-17T23:03:16.258161836Z 79 PC: 12ea3 | Find next file
2018-12-17T23:03:16.261397048Z 61 PC: 12ead | Open file (Filename = 'TEST.COM')
2018-12-17T23:03:16.268555372Z 63 PC: 12f2a | Read file or device (Read 3 bytes on handle 12)
2018-12-17T23:03:16.271321946Z 66 PC: 12f2a | Move file pointer
2018-12-17T23:03:16.280616513Z 63 PC: 12f2a | Read file or device (Read 2 bytes on handle 12)
2018-12-17T23:03:16.286862717Z 79 PC: 12ea3 | Find next file
2018-12-17T23:03:16.289139659Z 9 PC: 12e26 | Display string (String= 'BCDEF- This is a 1000 byte COM test, 1994 ')