Sample viewer

vx.netlux.org/Virus.DOS.Vienna.ByteWarrior.1155.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:11:17.196266221Z 48 PC: 13e26 | Get DOS version
2018-12-17T23:11:17.198037004Z 47 PC: 13e33 | Get disk transfer address
2018-12-17T23:11:17.199445372Z 26 PC: 13e42 | Set disk transfer address
2018-12-17T23:11:17.201172359Z 78 PC: 13ecd | Find first file
2018-12-17T23:11:17.207579344Z 79 PC: 13ed8 | Find next file
2018-12-17T23:11:17.210210661Z 79 PC: 13ed8 | Find next file
2018-12-17T23:11:17.212799247Z 79 PC: 13ed8 | Find next file
2018-12-17T23:11:17.215949211Z 79 PC: 13ed8 | Find next file
2018-12-17T23:11:17.218435131Z 79 PC: 13ed8 | Find next file
2018-12-17T23:11:17.220829175Z 79 PC: 13ed8 | Find next file
2018-12-17T23:11:17.225592322Z 79 PC: 13ed8 | Find next file
2018-12-17T23:11:17.229635668Z 67 PC: 13f2d | Get or set file attributes
2018-12-17T23:11:17.235358332Z 67 PC: 13f3d | Get or set file attributes
2018-12-17T23:11:17.249512698Z 61 PC: 13f47 | Open file (Filename = 'TEST.COM')
2018-12-17T23:11:17.255904759Z 87 PC: 13f56 | Get or set file date and time
2018-12-17T23:11:17.257695974Z 44 PC: 13f60 | Get time 0x13f60: mov cx, 3
0x13f63: mov ah, 0x3f
0x13f65: mov dx, 0xa
0x13f68: add dx, si
0x13f6a: push dx
0x13f6b: int 0x21
0x13f6d: pop bp
0x13f6e: jb 0x13f95
0x13f70: cmp byte ptr [bp], 0x4d
0x13f74: jne 0x13f83
0x13f76: cmp byte ptr [bp + 1], 0x5a
0x13f7a: je 0x13f95
0x13f7c: jmp 0x13f83
0x13f7e: nop
0x13f7f: jmp 0x13fd0
0x13f81: jmp 0x13fce
0x13f83: cmp ax, 3
0x13f86: jne 0x14007
0x13f88: xor cx, cx
0x13f8a: mov ax, 0x4202
2018-12-17T23:11:17.25955724Z 63 PC: 13f6d | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:11:17.266165269Z 66 PC: 13f91 | Move file pointer
2018-12-17T23:11:17.267544931Z 64 PC: 13fe8 | Write file or device (Write 1155 bytes on handle 5)
2018-12-17T23:11:17.276833133Z 66 PC: 13ff9 | Move file pointer
2018-12-17T23:11:17.279950059Z 64 PC: 14007 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:11:17.282673147Z 87 PC: 14015 | Get or set file date and time
2018-12-17T23:11:17.284169473Z 62 PC: 14019 | Close file
2018-12-17T23:11:17.292177141Z 67 PC: 14026 | Get or set file attributes
2018-12-17T23:11:17.302238027Z 26 PC: 14030 | Set disk transfer address
2018-12-17T23:11:17.31231527Z 9 PC: 12a90 | Display string (Could not find end pointer)
2018-12-17T23:11:17.327268853Z 76 PC: 12a98 | Terminate with return code (Return code = '0')