Sample viewer

vx.netlux.org/Virus.DOS.Vienna.Violator.810

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:09:01.00608677Z 48 PC: 12a8f | Get DOS version
2018-12-17T23:09:01.007666711Z 42 PC: 12a8f | Get date 0x12a8f: ret
0x12a90: int 0x13
0x12a92: ret
0x12a93: int 0x26
0x12a95: ret
0x12a96: mov ah, 0x2a
0x12a98: mov byte ptr [0x3ae], 1
0x12a9d: call 0x22a77
0x12aa0: cmp cx, word ptr [0x377]
0x12aa4: jge 0x12aa8
0x12aa6: jmp 0x12af3
0x12aa8: cmp dh, byte ptr [0x379]
0x12aac: jge 0x12ab0
0x12aae: jmp 0x12af3
0x12ab0: cmp dl, byte ptr [0x37a]
0x12ab4: jge 0x12ab8
0x12ab6: jmp 0x12af3
0x12ab8: mov al, byte ptr [0x3af]
0x12abb: call 0x12acb
0x12abe: cmp byte ptr [0x3af], 0x1b
2018-12-17T23:09:01.009665535Z 47 PC: 12a8f | Get disk transfer address
2018-12-17T23:09:01.012593547Z 26 PC: 12a8f | Set disk transfer address
2018-12-17T23:09:01.015308215Z 78 PC: 12a8f | Find first file
2018-12-17T23:09:01.021460984Z 67 PC: 12a8f | Get or set file attributes
2018-12-17T23:09:01.027250838Z 67 PC: 12a8f | Get or set file attributes
2018-12-17T23:09:01.045739952Z 61 PC: 12a8f | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:09:01.055745128Z 87 PC: 12a8f | Get or set file date and time
2018-12-17T23:09:01.056997448Z 44 PC: 12a8f | Get time 0x12a8f: ret
0x12a90: int 0x13
0x12a92: ret
0x12a93: int 0x26
0x12a95: ret
0x12a96: mov ah, 0x2a
0x12a98: mov byte ptr [0x3ae], 1
0x12a9d: call 0x22a77
0x12aa0: cmp cx, word ptr [0x377]
0x12aa4: jge 0x12aa8
0x12aa6: jmp 0x12af3
0x12aa8: cmp dh, byte ptr [0x379]
0x12aac: jge 0x12ab0
0x12aae: jmp 0x12af3
0x12ab0: cmp dl, byte ptr [0x37a]
0x12ab4: jge 0x12ab8
0x12ab6: jmp 0x12af3
0x12ab8: mov al, byte ptr [0x3af]
0x12abb: call 0x12acb
0x12abe: cmp byte ptr [0x3af], 0x1b
2018-12-17T23:09:01.059721323Z 63 PC: 12a8f | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:09:01.0673192Z 66 PC: 12a8f | Move file pointer
2018-12-17T23:09:01.068727048Z 64 PC: 12a8f | Write file or device (Write 810 bytes on handle 5)
2018-12-17T23:09:01.077297191Z 66 PC: 12a8f | Move file pointer
2018-12-17T23:09:01.079357696Z 64 PC: 12a8f | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:09:01.0861439Z 87 PC: 12a8f | Get or set file date and time
2018-12-17T23:09:01.08798509Z 62 PC: 12a8f | Close file
2018-12-17T23:09:01.096344998Z 67 PC: 12a8f | Get or set file attributes
2018-12-17T23:09:01.106532727Z 26 PC: 12a8f | Set disk transfer address