Sample viewer

vx.netlux.org/Virus.DOS.Leprosy.666.w

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:07:08.933466648Z 44 PC: 12b9e | Get time 0x12b9e: cmp byte ptr [0x107], 0
0x12ba3: je 0x12baa
0x12ba5: cmp dh, 0xf
0x12ba8: jg 0x12bb3
0x12baa: cmp dl, 0
0x12bad: je 0x12b98
0x12baf: mov byte ptr [0x107], dl
0x12bb3: mov byte ptr [0x24d], 0
0x12bb8: mov byte ptr [0x24e], 4
0x12bbd: mov byte ptr [0x257], 0
0x12bc2: mov cx, 0x27
0x12bc5: mov dx, 0x136
0x12bc8: mov ah, 0x4e
0x12bca: mov ah, 0x4e
0x12bcc: int 0x21
0x12bce: cmp ax, 0x12
0x12bd1: je 0x12bd6
0x12bd3: call 0x12bfc
0x12bd6: mov cx, 0x27
0x12bd9: mov dx, 0x13c
2018-12-17T23:07:08.936518501Z 78 PC: 12bce | Find first file
2018-12-17T23:07:08.94431526Z 78 PC: 12be2 | Find first file
2018-12-17T23:07:08.951280759Z 67 PC: 12c1f | Get or set file attributes
2018-12-17T23:07:08.971006999Z 61 PC: 12c27 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:07:08.980645363Z 63 PC: 12c38 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T23:07:09.00257446Z 62 PC: 12c70 | Close file
2018-12-17T23:07:09.00462532Z 61 PC: 12c7b | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:07:09.017011208Z 64 PC: 12a5e | Write file or device (Write 666 bytes on handle 5)
2018-12-17T23:07:09.038451426Z 87 PC: 12ca5 | Get or set file date and time
2018-12-17T23:07:09.041025392Z 62 PC: 12caf | Close file
2018-12-17T23:07:09.051929734Z 67 PC: 12cbe | Get or set file attributes
2018-12-17T23:07:09.059615658Z 79 PC: 12c5e | Find next file
2018-12-17T23:07:09.062872355Z 67 PC: 12c1f | Get or set file attributes
2018-12-17T23:07:09.083441064Z 61 PC: 12c27 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:07:09.092433994Z 63 PC: 12c38 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T23:07:09.101261884Z 62 PC: 12c70 | Close file
2018-12-17T23:07:09.1044417Z 61 PC: 12c7b | Open file (Filename = 'PRINT.COM')
2018-12-17T23:07:09.113924471Z 64 PC: 12a5e | Write file or device (Write 666 bytes on handle 5)
2018-12-17T23:07:09.125557333Z 87 PC: 12ca5 | Get or set file date and time
2018-12-17T23:07:09.127778425Z 62 PC: 12caf | Close file
2018-12-17T23:07:09.142909Z 67 PC: 12cbe | Get or set file attributes
2018-12-17T23:07:09.175653847Z 79 PC: 12c5e | Find next file
2018-12-17T23:07:09.179013Z 67 PC: 12c1f | Get or set file attributes
2018-12-17T23:07:09.205328415Z 61 PC: 12c27 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:07:09.231073236Z 63 PC: 12c38 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T23:07:09.239021795Z 62 PC: 12c70 | Close file
2018-12-17T23:07:09.24589444Z 61 PC: 12c7b | Open file (Filename = 'HELLO.COM')
2018-12-17T23:07:09.254485495Z 64 PC: 12a5e | Write file or device (Write 666 bytes on handle 5)
2018-12-17T23:07:09.264165618Z 87 PC: 12ca5 | Get or set file date and time
2018-12-17T23:07:09.267474553Z 62 PC: 12caf | Close file
2018-12-17T23:07:09.276774243Z 67 PC: 12cbe | Get or set file attributes
2018-12-17T23:07:09.282910491Z 79 PC: 12c5e | Find next file
2018-12-17T23:07:09.287455414Z 67 PC: 12c1f | Get or set file attributes
2018-12-17T23:07:09.298501229Z 61 PC: 12c27 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:07:09.306013461Z 63 PC: 12c38 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T23:07:09.313971291Z 62 PC: 12c70 | Close file
2018-12-17T23:07:09.316814297Z 61 PC: 12c7b | Open file (Filename = 'PHANG.COM')
2018-12-17T23:07:09.324737707Z 64 PC: 12a5e | Write file or device (Write 666 bytes on handle 5)
2018-12-17T23:07:09.33476244Z 87 PC: 12ca5 | Get or set file date and time
2018-12-17T23:07:09.337955037Z 62 PC: 12caf | Close file
2018-12-17T23:07:09.34710479Z 67 PC: 12cbe | Get or set file attributes
2018-12-17T23:07:09.352811614Z 9 PC: 12ced | Display string (String= ' Program too big to fit in memory')
2018-12-17T23:07:09.35864592Z 76 PC: 12cf3 | Terminate with return code (Return code = '36')