Sample viewer

vx.netlux.org/Virus.DOS.TPE.CivilWar.1979

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:05:52.042207436Z 26 PC: 12b62 | Set disk transfer address
2018-12-17T23:05:52.043745637Z 44 PC: 1328d | Get time 0x1328d: in al, 0x40
0x1328f: mov ah, al
0x13291: in al, 0x40
0x13293: xor ax, cx
0x13295: xor dx, ax
0x13297: jmp 0x132be
0x13299: call 0x132a1
0x1329c: or ax, ax
0x1329e: je 0x13299
0x132a0: ret
0x132a1: push dx
0x132a2: push cx
0x132a3: push bx
0x132a4: in al, 0x40
0x132a6: add ax, 0x4f4e
0x132a9: mov dx, 0x204b
0x132ac: mov cx, 7
0x132af: shl ax, 1
0x132b1: rcl dx, 1
0x132b3: mov bl, al
2018-12-17T23:05:52.046481811Z 78 PC: 12b7b | Find first file
2018-12-17T23:05:52.053118308Z 61 PC: 12b83 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:05:52.061096519Z 87 PC: 12b8d | Get or set file date and time
2018-12-17T23:05:52.063695125Z 63 PC: 12ba4 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T23:05:52.070834941Z 66 PC: 12c43 | Move file pointer
2018-12-17T23:05:52.072398985Z 64 PC: 12bdf | Write file or device (Write 1 bytes on handle 5)
2018-12-17T23:05:52.076049794Z 64 PC: 12bea | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:05:52.078651337Z 64 PC: 12bf5 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:05:52.080427185Z 66 PC: 12c43 | Move file pointer
2018-12-17T23:05:52.083802961Z 64 PC: 12c23 | Write file or device (Write 2004 bytes on handle 5)
2018-12-17T23:05:52.113059175Z 87 PC: 12c34 | Get or set file date and time
2018-12-17T23:05:52.115330652Z 9 PC: 12a47 | Display string (Could not find end pointer)