Sample viewer

vx.netlux.org/Virus.DOS.DBase.1864.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:04:13.007901905Z 251 PC: 13479 | UNKNOWN!
2018-12-17T22:04:13.017185827Z 53 PC: 1341f | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:04:13.018670922Z 37 PC: 13466 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:04:13.019975821Z 9 PC: 12b61 | Display string (String= 'TOUCH [email protected]c) 1988 Ziff Communications Co. PC Magazine Michael J. Mefford ')
2018-12-17T22:04:13.026958342Z 25 PC: 12b65 | Get default drive
2018-12-17T22:04:13.027981794Z 71 PC: 12b76 | Get current directory
2018-12-17T22:04:13.030774019Z 42 PC: 12b7a | Get date 0x12b7a: call 0x12cea
0x12b7d: mov word ptr [0x1ed], dx
0x12b81: mov ah, 0x2c
0x12b83: int 0x21
0x12b85: call 0x12d06
0x12b88: mov word ptr [0x1ef], dx
0x12b8c: mov dx, 0x1e1
0x12b8f: mov ah, 9
0x12b91: int 0x21
0x12b93: mov si, 0x81
0x12b96: lodsb al, byte ptr [si]
0x12b97: cmp al, 0xd
0x12b99: je 0x12bf9
0x12b9b: cmp al, 0x2f
0x12b9d: jne 0x12b96
0x12b9f: lodsb al, byte ptr [si]
0x12ba0: cmp al, 0xd
0x12ba2: je 0x12bf9
0x12ba4: and al, 0x5f
0x12ba6: cmp al, 0x44
2018-12-17T22:04:13.033137918Z 44 PC: 12b85 | Get time 0x12b85: call 0x12d06
0x12b88: mov word ptr [0x1ef], dx
0x12b8c: mov dx, 0x1e1
0x12b8f: mov ah, 9
0x12b91: int 0x21
0x12b93: mov si, 0x81
0x12b96: lodsb al, byte ptr [si]
0x12b97: cmp al, 0xd
0x12b99: je 0x12bf9
0x12b9b: cmp al, 0x2f
0x12b9d: jne 0x12b96
0x12b9f: lodsb al, byte ptr [si]
0x12ba0: cmp al, 0xd
0x12ba2: je 0x12bf9
0x12ba4: and al, 0x5f
0x12ba6: cmp al, 0x44
0x12ba8: jne 0x12bd0
0x12baa: or byte ptr [0x1e8], 1
0x12baf: call 0x12d44
0x12bb2: call 0x12d19
2018-12-17T22:04:13.035592504Z 9 PC: 12b93 | Display string (String= ' ')
2018-12-17T22:04:13.039163755Z 9 PC: 12cc1 | Display string (String= 'Invalid parameter')
2018-12-17T22:04:13.041562242Z 9 PC: 12cc8 | Display string (String= ' Syntax: TOUCH filespec [/D date] [/T time] date = month-day-year time = hour[:minutes[:seconds]] Default is system date and time. ')
2018-12-17T22:04:13.053296967Z 59 PC: 12cd6 | Change current directory
2018-12-17T22:04:13.057762848Z 14 PC: 12cde | Set default drive (Drive = 'A')
2018-12-17T22:04:13.059136746Z 59 PC: 12ce5 | Change current directory
2018-12-17T22:04:13.063873332Z 76 PC: 12cea | Terminate with return code (Return code = '1')