Sample viewer

vx.netlux.org/Virus.DOS.Leprosy.5370.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:10:35.11817084Z 44 PC: 12aa5 | Get time 0x12aa5: cmp byte ptr [0x107], 0
0x12aaa: je 0x12ab1
0x12aac: cmp dh, 0xf
0x12aaf: jg 0x12aba
0x12ab1: cmp dl, 0
0x12ab4: je 0x12aa1
0x12ab6: mov byte ptr [0x107], dl
0x12aba: mov byte ptr [0x156], 0
0x12abf: mov byte ptr [0x157], 4
0x12ac4: mov byte ptr [0x160], 0
0x12ac9: mov cx, 0x27
0x12acc: mov dx, 0x139
0x12acf: mov ah, 0x4e
0x12ad1: int 0x21
0x12ad3: cmp ax, 0x12
0x12ad6: je 0x12adb
0x12ad8: call 0x12aeb
0x12adb: mov dx, 0x13f
0x12ade: mov ah, 0x3b
0x12ae0: int 0x21
2018-12-17T23:10:35.120796703Z 78 PC: 12ad3 | Find first file
2018-12-17T23:10:35.127617566Z 59 PC: 12ae2 | Change current directory
2018-12-17T23:10:35.131748782Z 78 PC: 12ad3 | Find first file
2018-12-17T23:10:35.137750178Z 59 PC: 12ae2 | Change current directory
2018-12-17T23:10:35.1419304Z 78 PC: 12ad3 | Find first file
2018-12-17T23:10:35.147462915Z 59 PC: 12ae2 | Change current directory
2018-12-17T23:10:35.151528466Z 78 PC: 12ad3 | Find first file
2018-12-17T23:10:35.155346529Z 59 PC: 12ae2 | Change current directory
2018-12-17T23:10:35.159627809Z 76 PC: 13f2a | Terminate with return code (Return code = '3')