Sample viewer

vx.netlux.org/Virus.DOS.VCL.5minuten.891

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:09:44.098283025Z 47 PC: 12a69 | Get disk transfer address
2018-12-17T23:09:44.100258813Z 26 PC: 12a71 | Set disk transfer address
2018-12-17T23:09:44.146223011Z 37 PC: 12a86 | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T23:09:44.147425039Z 37 PC: 12a8a | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:09:44.149964712Z 71 PC: 12b76 | Get current directory
2018-12-17T23:09:44.152989974Z 59 PC: 12b7e | Change current directory
2018-12-17T23:09:44.156968942Z 47 PC: 12b93 | Get disk transfer address
2018-12-17T23:09:44.158340467Z 26 PC: 12ba1 | Set disk transfer address
2018-12-17T23:09:44.160115408Z 78 PC: 12bac | Find first file
2018-12-17T23:09:44.166950672Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.169893765Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.173295088Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.176568645Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.179461558Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.183568899Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.186982705Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.190166186Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.194412044Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.197261699Z 47 PC: 12bfd | Get disk transfer address
2018-12-17T23:09:44.198844488Z 26 PC: 12c0c | Set disk transfer address
2018-12-17T23:09:44.200695634Z 78 PC: 12c14 | Find first file
2018-12-17T23:09:44.206815794Z 47 PC: 12c31 | Get disk transfer address
2018-12-17T23:09:44.208327076Z 61 PC: 12c4a | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:09:44.215498125Z 63 PC: 12c56 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:09:44.221900554Z 66 PC: 12c5e | Move file pointer
2018-12-17T23:09:44.223760554Z 62 PC: 12c63 | Close file
2018-12-17T23:09:44.228512357Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:09:44.384399436Z 61 PC: 12c88 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:09:44.39239547Z 64 PC: 12c94 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:09:44.397169376Z 66 PC: 12c9c | Move file pointer
2018-12-17T23:09:44.399532169Z 64 PC: 12ca7 | Write file or device (Write 891 bytes on handle 5)
2018-12-17T23:09:44.409153601Z 87 PC: 12cb2 | Get or set file date and time
2018-12-17T23:09:44.411533431Z 62 PC: 12cb6 | Close file
2018-12-17T23:09:44.42021806Z 67 PC: 12cc3 | Get or set file attributes
2018-12-17T23:09:44.430495088Z 26 PC: 12c26 | Set disk transfer address
2018-12-17T23:09:44.431897717Z 26 PC: 12be4 | Set disk transfer address
2018-12-17T23:09:44.43456695Z 59 PC: 12b88 | Change current directory
2018-12-17T23:09:44.436577338Z 71 PC: 12b76 | Get current directory
2018-12-17T23:09:44.440173983Z 59 PC: 12b7e | Change current directory
2018-12-17T23:09:44.445413037Z 47 PC: 12b93 | Get disk transfer address
2018-12-17T23:09:44.446750336Z 26 PC: 12ba1 | Set disk transfer address
2018-12-17T23:09:44.448440198Z 78 PC: 12bac | Find first file
2018-12-17T23:09:44.455681667Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.458189441Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.460840091Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.464084171Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.46664671Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.469011375Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.472152078Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.474590539Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.477003418Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.479428179Z 47 PC: 12bfd | Get disk transfer address
2018-12-17T23:09:44.481223502Z 26 PC: 12c0c | Set disk transfer address
2018-12-17T23:09:44.482639766Z 78 PC: 12c14 | Find first file
2018-12-17T23:09:44.489399528Z 47 PC: 12c31 | Get disk transfer address
2018-12-17T23:09:44.490956766Z 61 PC: 12c4a | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:09:44.497336042Z 63 PC: 12c56 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:09:44.503791042Z 66 PC: 12c5e | Move file pointer
2018-12-17T23:09:44.505677212Z 62 PC: 12c63 | Close file
2018-12-17T23:09:44.507484942Z 79 PC: 12c14 | Find next file
2018-12-17T23:09:44.510038685Z 47 PC: 12c31 | Get disk transfer address
2018-12-17T23:09:44.511647318Z 61 PC: 12c4a | Open file (Filename = 'PRINT.COM')
2018-12-17T23:09:44.518972777Z 63 PC: 12c56 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:09:44.525704322Z 66 PC: 12c5e | Move file pointer
2018-12-17T23:09:44.527980291Z 62 PC: 12c63 | Close file
2018-12-17T23:09:44.52974309Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:09:44.539964839Z 61 PC: 12c88 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:09:44.547787793Z 64 PC: 12c94 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:09:44.550679799Z 66 PC: 12c9c | Move file pointer
2018-12-17T23:09:44.552201747Z 64 PC: 12ca7 | Write file or device (Write 891 bytes on handle 5)
2018-12-17T23:09:44.560752194Z 87 PC: 12cb2 | Get or set file date and time
2018-12-17T23:09:44.562225754Z 62 PC: 12cb6 | Close file
2018-12-17T23:09:44.570099986Z 67 PC: 12cc3 | Get or set file attributes
2018-12-17T23:09:44.580727838Z 26 PC: 12c26 | Set disk transfer address
2018-12-17T23:09:44.581658326Z 26 PC: 12be4 | Set disk transfer address
2018-12-17T23:09:44.582575198Z 59 PC: 12b88 | Change current directory
2018-12-17T23:09:44.584688858Z 71 PC: 12b76 | Get current directory
2018-12-17T23:09:44.587485291Z 59 PC: 12b7e | Change current directory
2018-12-17T23:09:44.591319868Z 47 PC: 12b93 | Get disk transfer address
2018-12-17T23:09:44.593087957Z 26 PC: 12ba1 | Set disk transfer address
2018-12-17T23:09:44.594111122Z 78 PC: 12bac | Find first file
2018-12-17T23:09:44.599798715Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.602859191Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.605724248Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.608516878Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.61229767Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.61473696Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.617027765Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.61977994Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.622620765Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.624957911Z 47 PC: 12bfd | Get disk transfer address
2018-12-17T23:09:44.626440072Z 26 PC: 12c0c | Set disk transfer address
2018-12-17T23:09:44.627460655Z 78 PC: 12c14 | Find first file
2018-12-17T23:09:44.633641071Z 47 PC: 12c31 | Get disk transfer address
2018-12-17T23:09:44.6352864Z 61 PC: 12c4a | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:09:44.647325717Z 63 PC: 12c56 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:09:44.654102636Z 66 PC: 12c5e | Move file pointer
2018-12-17T23:09:44.657212711Z 62 PC: 12c63 | Close file
2018-12-17T23:09:44.659344088Z 79 PC: 12c14 | Find next file
2018-12-17T23:09:44.662313991Z 47 PC: 12c31 | Get disk transfer address
2018-12-17T23:09:44.66374357Z 61 PC: 12c4a | Open file (Filename = 'PRINT.COM')
2018-12-17T23:09:44.671532215Z 63 PC: 12c56 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:09:44.678065462Z 66 PC: 12c5e | Move file pointer
2018-12-17T23:09:44.679665824Z 62 PC: 12c63 | Close file
2018-12-17T23:09:44.682747184Z 79 PC: 12c14 | Find next file
2018-12-17T23:09:44.685386138Z 47 PC: 12c31 | Get disk transfer address
2018-12-17T23:09:44.686437099Z 61 PC: 12c4a | Open file (Filename = 'HELLO.COM')
2018-12-17T23:09:44.693342688Z 63 PC: 12c56 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:09:44.699746404Z 66 PC: 12c5e | Move file pointer
2018-12-17T23:09:44.701358379Z 62 PC: 12c63 | Close file
2018-12-17T23:09:44.704010921Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:09:44.714440554Z 61 PC: 12c88 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:09:44.721893247Z 64 PC: 12c94 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:09:44.725856294Z 66 PC: 12c9c | Move file pointer
2018-12-17T23:09:44.727521376Z 64 PC: 12ca7 | Write file or device (Write 891 bytes on handle 5)
2018-12-17T23:09:44.735537538Z 87 PC: 12cb2 | Get or set file date and time
2018-12-17T23:09:44.737244313Z 62 PC: 12cb6 | Close file
2018-12-17T23:09:44.742680069Z 67 PC: 12cc3 | Get or set file attributes
2018-12-17T23:09:44.751506595Z 26 PC: 12c26 | Set disk transfer address
2018-12-17T23:09:44.753463634Z 26 PC: 12be4 | Set disk transfer address
2018-12-17T23:09:44.754564776Z 59 PC: 12b88 | Change current directory
2018-12-17T23:09:44.755775104Z 71 PC: 12b76 | Get current directory
2018-12-17T23:09:44.758151145Z 59 PC: 12b7e | Change current directory
2018-12-17T23:09:44.760754986Z 47 PC: 12b93 | Get disk transfer address
2018-12-17T23:09:44.761636087Z 26 PC: 12ba1 | Set disk transfer address
2018-12-17T23:09:44.763709798Z 78 PC: 12bac | Find first file
2018-12-17T23:09:44.770252716Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.772056636Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.77447092Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.776162615Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.777889694Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.780379612Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.782107342Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.783837463Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.786328631Z 79 PC: 12bd4 | Find next file
2018-12-17T23:09:44.787948423Z 47 PC: 12bfd | Get disk transfer address
2018-12-17T23:09:44.788889384Z 26 PC: 12c0c | Set disk transfer address
2018-12-17T23:09:44.790508882Z 78 PC: 12c14 | Find first file
2018-12-17T23:09:44.797264261Z 47 PC: 12c31 | Get disk transfer address
2018-12-17T23:09:44.798169409Z 61 PC: 12c4a | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:09:44.802906917Z 63 PC: 12c56 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:09:44.806851009Z 66 PC: 12c5e | Move file pointer
2018-12-17T23:09:44.807931552Z 62 PC: 12c63 | Close file
2018-12-17T23:09:44.810207296Z 79 PC: 12c14 | Find next file
2018-12-17T23:09:44.812673398Z 47 PC: 12c31 | Get disk transfer address
2018-12-17T23:09:44.813594339Z 61 PC: 12c4a | Open file (Filename = 'PRINT.COM')
2018-12-17T23:09:44.81819779Z 63 PC: 12c56 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:09:44.822094505Z 66 PC: 12c5e | Move file pointer
2018-12-17T23:09:44.823125728Z 62 PC: 12c63 | Close file
2018-12-17T23:09:44.824951856Z 79 PC: 12c14 | Find next file
2018-12-17T23:09:44.826754176Z 47 PC: 12c31 | Get disk transfer address
2018-12-17T23:09:44.827616985Z 61 PC: 12c4a | Open file (Filename = 'HELLO.COM')
2018-12-17T23:09:44.832165275Z 63 PC: 12c56 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:09:44.836065131Z 66 PC: 12c5e | Move file pointer
2018-12-17T23:09:44.837099171Z 62 PC: 12c63 | Close file
2018-12-17T23:09:44.838961039Z 79 PC: 12c14 | Find next file
2018-12-17T23:09:44.840711873Z 47 PC: 12c31 | Get disk transfer address
2018-12-17T23:09:44.841538329Z 61 PC: 12c4a | Open file (Filename = 'PHANG.COM')
2018-12-17T23:09:44.846068424Z 63 PC: 12c56 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:09:44.849924139Z 66 PC: 12c5e | Move file pointer
2018-12-17T23:09:44.850933113Z 62 PC: 12c63 | Close file
2018-12-17T23:09:44.852754029Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:09:44.860247891Z 61 PC: 12c88 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:09:44.864685104Z 64 PC: 12c94 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:09:44.869365091Z 66 PC: 12c9c | Move file pointer
2018-12-17T23:09:44.870430496Z 64 PC: 12ca7 | Write file or device (Write 891 bytes on handle 5)
2018-12-17T23:09:44.875390696Z 87 PC: 12cb2 | Get or set file date and time
2018-12-17T23:09:44.877060772Z 62 PC: 12cb6 | Close file
2018-12-17T23:09:44.881918962Z 67 PC: 12cc3 | Get or set file attributes
2018-12-17T23:09:44.888079935Z 26 PC: 12c26 | Set disk transfer address
2018-12-17T23:09:44.889583989Z 26 PC: 12be4 | Set disk transfer address
2018-12-17T23:09:44.890595256Z 59 PC: 12b88 | Change current directory
2018-12-17T23:09:44.892137769Z 44 PC: 12cd9 | Get time 0x12cd9: mov al, ch
0x12cdb: cwde
0x12cdc: ret
0x12cdd: add sp, dx
0x12cdf: pop di
0x12ce0: xlatb
0x12ce1: test byte ptr [si - 0x32d4], dh
0x12ce5: and word ptr [bp + si - 0x673f], cx
0x12ce9: ret
0x12cea: movups xmm3, xmmword ptr [bx + si]
0x12ced: sbb byte ptr [bx + si], bl
0x12cef: sbb byte ptr [bx + si], bl
0x12cf1: sbb byte ptr [bx + si], bl
0x12cf3: sbb word ptr [0xda17], dx
0x12cf7: sbb bl, byte ptr [bx + di]
0x12cf9: les di, ptr [bx + 0x1018]
0x12cfd: sbb word ptr [0x1700], dx
0x12d01: mov bl, 4
0x12d03: push bp
0x12d04: and byte ptr [bx + si + 0x65], cl
2018-12-17T23:09:44.894282529Z 44 PC: 12cd9 | Get time 0x12cd9: mov al, ch
0x12cdb: cwde
0x12cdc: ret
0x12cdd: add sp, dx
0x12cdf: pop di
0x12ce0: xlatb
0x12ce1: test byte ptr [si - 0x32d4], dh
0x12ce5: and word ptr [bp + si - 0x673f], cx
0x12ce9: ret
0x12cea: movups xmm3, xmmword ptr [bx + si]
0x12ced: sbb byte ptr [bx + si], bl
0x12cef: sbb byte ptr [bx + si], bl
0x12cf1: sbb byte ptr [bx + si], bl
0x12cf3: sbb word ptr [0xda17], dx
0x12cf7: sbb bl, byte ptr [bx + di]
0x12cf9: les di, ptr [bx + 0x1018]
0x12cfd: sbb word ptr [0x1700], dx
0x12d01: mov bl, 4
0x12d03: push bp
0x12d04: and byte ptr [bx + si + 0x65], cl
2018-12-17T23:09:44.895995548Z 26 PC: 12b51 | Set disk transfer address