Sample viewer

vx.netlux.org/Virus.DOS.Bios.2048.c

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:03:32.793169555Z 200 PC: 12a4c | UNKNOWN!
2018-12-17T23:03:32.795472801Z 74 PC: 12b11 | Reallocate memory
2018-12-17T23:03:32.79818237Z 61 PC: 12d49 | Open file (Filename = '')
2018-12-17T23:03:32.805874669Z 66 PC: 12d5a | Move file pointer
2018-12-17T23:03:32.808113966Z 66 PC: 12d7d | Move file pointer
2018-12-17T23:03:32.810342609Z 63 PC: 12d88 | Read file or device (Read 2048 bytes on handle 5)
2018-12-17T23:03:32.817876842Z 62 PC: 12dd1 | Close file
2018-12-17T23:03:32.820210396Z 42 PC: 12f45 | Get date 0x12f45: cmp dx, 0xc1c
0x12f49: je 0x12fc0
0x12f4b: call 0x13040
0x12f4e: ret
0x12f4f: add byte ptr [bx + si], al
0x12f51: add byte ptr [bx + si], al
0x12f53: add byte ptr [bx + si], al
0x12f55: add byte ptr [bx + si], al
0x12f57: add byte ptr [bx + si], al
0x12f59: add byte ptr [bx + si], al
0x12f5b: add byte ptr [bx + si], al
0x12f5d: add byte ptr [bx + si], al
0x12f5f: add byte ptr [bx + si], al
0x12f61: add byte ptr [bx + si], al
0x12f63: add byte ptr [bx + si], al
0x12f65: add byte ptr [bx + si], al
0x12f67: add byte ptr [bx + si], al
0x12f69: add byte ptr [bx + si], al
0x12f6b: add byte ptr [bx + si], al
0x12f6d: add byte ptr [bx + si], al
2018-12-17T23:03:32.823457451Z 75 PC: 12b2e | Execute program
2018-12-17T23:03:32.832550091Z 49 PC: 12b36 | Terminate and stay resident (Return code = '0' | Memory size = '272')

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":14585,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:41:01.80616177Z 200 PC: 12a4c | UNKNOWN!
2018-12-25T12:41:01.808529617Z 74 PC: 12b11 | Reallocate memory
2018-12-25T12:41:01.81059458Z 61 PC: 12d49 | Open file (Filename = '')
2018-12-25T12:41:01.817895944Z 66 PC: 12d5a | Move file pointer
2018-12-25T12:41:01.819686348Z 66 PC: 12d7d | Move file pointer
2018-12-25T12:41:01.821430016Z 63 PC: 12d88 | Read file or device (Read 2048 bytes on handle 5)
2018-12-25T12:41:01.828784843Z 62 PC: 12dd1 | Close file
2018-12-25T12:41:01.830788884Z 42 PC: 12f45 | Get date 0x12f45: cmp dx, 0xc1c
0x12f49: je 0x12fc0
0x12f4b: call 0x13040
0x12f4e: ret
0x12f4f: add byte ptr [bx + si], al
0x12f51: add byte ptr [bx + si], al
0x12f53: add byte ptr [bx + si], al
0x12f55: add byte ptr [bx + si], al
0x12f57: add byte ptr [bx + si], al
0x12f59: add byte ptr [bx + si], al
0x12f5b: add byte ptr [bx + si], al
0x12f5d: add byte ptr [bx + si], al
0x12f5f: add byte ptr [bx + si], al
0x12f61: add byte ptr [bx + si], al
0x12f63: add byte ptr [bx + si], al
0x12f65: add byte ptr [bx + si], al
0x12f67: add byte ptr [bx + si], al
0x12f69: add byte ptr [bx + si], al
0x12f6b: add byte ptr [bx + si], al
0x12f6d: add byte ptr [bx + si], al
2018-12-25T12:41:01.833556402Z 75 PC: 12b2e | Execute program
2018-12-25T12:41:01.842749351Z 49 PC: 12b36 | Terminate and stay resident (Return code = '0' | Memory size = '272')

{"DateBased":true,"Day":28,"Month":12,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":14585,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:41:01.941680162Z 200 PC: 12a4c | UNKNOWN!
2018-12-25T12:41:01.944059632Z 74 PC: 12b11 | Reallocate memory
2018-12-25T12:41:01.945843567Z 61 PC: 12d49 | Open file (Filename = '')
2018-12-25T12:41:01.952560377Z 66 PC: 12d5a | Move file pointer
2018-12-25T12:41:01.954909031Z 66 PC: 12d7d | Move file pointer
2018-12-25T12:41:01.956260595Z 63 PC: 12d88 | Read file or device (Read 2048 bytes on handle 5)
2018-12-25T12:41:01.962486088Z 62 PC: 12dd1 | Close file
2018-12-25T12:41:01.965118641Z 42 PC: 12f45 | Get date 0x12f45: cmp dx, 0xc1c
0x12f49: je 0x12fc0
0x12f4b: call 0x13040
0x12f4e: ret
0x12f4f: add byte ptr [bx + si], al
0x12f51: add byte ptr [bx + si], al
0x12f53: add byte ptr [bx + si], al
0x12f55: add byte ptr [bx + si], al
0x12f57: add byte ptr [bx + si], al
0x12f59: add byte ptr [bx + si], al
0x12f5b: add byte ptr [bx + si], al
0x12f5d: add byte ptr [bx + si], al
0x12f5f: add byte ptr [bx + si], al
0x12f61: add byte ptr [bx + si], al
0x12f63: add byte ptr [bx + si], al
0x12f65: add byte ptr [bx + si], al
0x12f67: add byte ptr [bx + si], al
0x12f69: add byte ptr [bx + si], al
0x12f6b: add byte ptr [bx + si], al
0x12f6d: add byte ptr [bx + si], al
2018-12-25T12:41:01.967233058Z 25 PC: 12fc5 | Get default drive