Sample viewer

vx.netlux.org/Virus.DOS.PrintMonster

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:11:21.505882797Z 48 PC: 12a45 | Get DOS version
2018-12-17T23:11:21.507231894Z 42 PC: 12a4c | Get date 0x12a4c: jmp 0x12b53
0x12a4f: and byte ptr [bx + di + 0x73], ch
0x12a52: and byte ptr [bx + di + 0x20], ah
0x12a55: xor word ptr [bx + si], si
0x12a57: xor byte ptr [bx + si], ah
0x12a59: and byte ptr [bx + si], ah
0x12a5b: inc bx
0x12a5c: dec di
0x12a5d: dec bp
0x12a5e: and byte ptr [si + 0x65], dh
0x12a61: jae 0x12ad7
0x12a63: and byte ptr [bp + 0x69], ah
0x12a66: insb byte ptr es:[di], dx
0x12a67: sub al, 0x20
0x12a6a: xor word ptr [bx + di], di
0x12a6c: cmp word ptr [bp + di], si
0x12a6e: or cl, byte ptr [di]
0x12a70: and al, 0x1a
0x12a72: inc cx
0x12a73: inc cx
2018-12-17T23:11:21.512491819Z 47 PC: 12b8f | Get disk transfer address
2018-12-17T23:11:21.514012812Z 26 PC: 12b9e | Set disk transfer address
2018-12-17T23:11:21.515549904Z 78 PC: 12bfd | Find first file
2018-12-17T23:11:21.523966867Z 67 PC: 12c3e | Get or set file attributes
2018-12-17T23:11:21.711485503Z 61 PC: 12c4a | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:11:21.719457401Z 63 PC: 12c5e | Read file or device (Read 18 bytes on handle 5)
2018-12-17T23:11:21.728375199Z 66 PC: 12c97 | Move file pointer
2018-12-17T23:11:21.730444925Z 64 PC: 12caf | Write file or device (Write 13 bytes on handle 5)
2018-12-17T23:11:21.733900149Z 64 PC: 12cbb | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:11:21.737198153Z 66 PC: 12cd1 | Move file pointer
2018-12-17T23:11:21.740029636Z 64 PC: 12ce8 | Write file or device (Write 853 bytes on handle 5)
2018-12-17T23:11:21.749880062Z 87 PC: 12cff | Get or set file date and time
2018-12-17T23:11:21.751917903Z 62 PC: 12d0b | Close file
2018-12-17T23:11:21.764647601Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:11:21.775944579Z 79 PC: 12c0d | Find next file
2018-12-17T23:11:21.779181643Z 67 PC: 12c3e | Get or set file attributes
2018-12-17T23:11:21.790526946Z 61 PC: 12c4a | Open file (Filename = 'PRINT.COM')
2018-12-17T23:11:21.798346479Z 63 PC: 12c5e | Read file or device (Read 18 bytes on handle 5)
2018-12-17T23:11:21.80572682Z 66 PC: 12c97 | Move file pointer
2018-12-17T23:11:21.80829874Z 64 PC: 12caf | Write file or device (Write 13 bytes on handle 5)
2018-12-17T23:11:21.811807084Z 64 PC: 12cbb | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:11:21.814932808Z 66 PC: 12cd1 | Move file pointer
2018-12-17T23:11:21.816693038Z 64 PC: 12ce8 | Write file or device (Write 853 bytes on handle 5)
2018-12-17T23:11:21.826261111Z 87 PC: 12cff | Get or set file date and time
2018-12-17T23:11:21.828129731Z 62 PC: 12d0b | Close file
2018-12-17T23:11:21.836911203Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:11:21.849502933Z 79 PC: 12c0d | Find next file
2018-12-17T23:11:21.852694186Z 67 PC: 12c3e | Get or set file attributes
2018-12-17T23:11:21.863451943Z 61 PC: 12c4a | Open file (Filename = 'HELLO.COM')
2018-12-17T23:11:21.871484777Z 63 PC: 12c5e | Read file or device (Read 18 bytes on handle 5)
2018-12-17T23:11:21.87900618Z 66 PC: 12c97 | Move file pointer
2018-12-17T23:11:21.880793682Z 64 PC: 12caf | Write file or device (Write 13 bytes on handle 5)
2018-12-17T23:11:21.885762859Z 64 PC: 12cbb | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:11:21.889758559Z 66 PC: 12cd1 | Move file pointer
2018-12-17T23:11:21.891567426Z 64 PC: 12ce8 | Write file or device (Write 853 bytes on handle 5)
2018-12-17T23:11:21.901015767Z 87 PC: 12cff | Get or set file date and time
2018-12-17T23:11:21.902686477Z 62 PC: 12d0b | Close file
2018-12-17T23:11:21.911202884Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:11:21.922194946Z 79 PC: 12c0d | Find next file
2018-12-17T23:11:21.925670908Z 67 PC: 12c3e | Get or set file attributes
2018-12-17T23:11:21.936392502Z 61 PC: 12c4a | Open file (Filename = 'PHANG.COM')
2018-12-17T23:11:21.943545813Z 63 PC: 12c5e | Read file or device (Read 18 bytes on handle 5)
2018-12-17T23:11:21.950906728Z 66 PC: 12c97 | Move file pointer
2018-12-17T23:11:21.953447126Z 64 PC: 12caf | Write file or device (Write 13 bytes on handle 5)
2018-12-17T23:11:21.956488644Z 64 PC: 12cbb | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:11:21.959965434Z 66 PC: 12cd1 | Move file pointer
2018-12-17T23:11:21.961939678Z 64 PC: 12ce8 | Write file or device (Write 853 bytes on handle 5)
2018-12-17T23:11:21.970810288Z 87 PC: 12cff | Get or set file date and time
2018-12-17T23:11:21.973453223Z 62 PC: 12d0b | Close file
2018-12-17T23:11:21.982031314Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:11:21.992730587Z 79 PC: 12c0d | Find next file
2018-12-17T23:11:21.996840576Z 67 PC: 12c3e | Get or set file attributes
2018-12-17T23:11:22.008101347Z 61 PC: 12c4a | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:11:22.015575555Z 63 PC: 12c5e | Read file or device (Read 18 bytes on handle 5)
2018-12-17T23:11:22.023605171Z 66 PC: 12c97 | Move file pointer
2018-12-17T23:11:22.025260885Z 64 PC: 12caf | Write file or device (Write 13 bytes on handle 5)
2018-12-17T23:11:22.028252098Z 64 PC: 12cbb | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:11:22.031045153Z 66 PC: 12cd1 | Move file pointer
2018-12-17T23:11:22.032555172Z 64 PC: 12ce8 | Write file or device (Write 853 bytes on handle 5)
2018-12-17T23:11:22.041276661Z 87 PC: 12cff | Get or set file date and time
2018-12-17T23:11:22.042886899Z 62 PC: 12d0b | Close file
2018-12-17T23:11:22.051204047Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:11:22.061731437Z 79 PC: 12c0d | Find next file
2018-12-17T23:11:22.064502892Z 67 PC: 12c3e | Get or set file attributes
2018-12-17T23:11:22.075236473Z 61 PC: 12c4a | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:11:22.083097787Z 63 PC: 12c5e | Read file or device (Read 18 bytes on handle 5)
2018-12-17T23:11:22.087472201Z 66 PC: 12c97 | Move file pointer
2018-12-17T23:11:22.089338078Z 64 PC: 12caf | Write file or device (Write 13 bytes on handle 5)
2018-12-17T23:11:22.092350785Z 64 PC: 12cbb | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:11:22.095123302Z 66 PC: 12cd1 | Move file pointer
2018-12-17T23:11:22.097090691Z 64 PC: 12ce8 | Write file or device (Write 853 bytes on handle 5)
2018-12-17T23:11:22.108609781Z 87 PC: 12cff | Get or set file date and time
2018-12-17T23:11:22.123993114Z 62 PC: 12d0b | Close file
2018-12-17T23:11:22.133157413Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:11:22.144781315Z 79 PC: 12c0d | Find next file
2018-12-17T23:11:22.148009759Z 67 PC: 12c3e | Get or set file attributes
2018-12-17T23:11:22.159517895Z 61 PC: 12c4a | Open file (Filename = 'PAH.COM')
2018-12-17T23:11:22.1682506Z 63 PC: 12c5e | Read file or device (Read 18 bytes on handle 5)
2018-12-17T23:11:22.175905657Z 66 PC: 12c97 | Move file pointer
2018-12-17T23:11:22.17880016Z 64 PC: 12caf | Write file or device (Write 13 bytes on handle 5)
2018-12-17T23:11:22.182126201Z 64 PC: 12cbb | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:11:22.18530004Z 66 PC: 12cd1 | Move file pointer
2018-12-17T23:11:22.187063431Z 64 PC: 12ce8 | Write file or device (Write 853 bytes on handle 5)
2018-12-17T23:11:22.197355774Z 87 PC: 12cff | Get or set file date and time
2018-12-17T23:11:22.19903143Z 62 PC: 12d0b | Close file
2018-12-17T23:11:22.207559594Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:11:22.219714283Z 79 PC: 12c0d | Find next file
2018-12-17T23:11:22.222865727Z 67 PC: 12c3e | Get or set file attributes
2018-12-17T23:11:22.233835805Z 61 PC: 12c4a | Open file (Filename = 'TEST.COM')
2018-12-17T23:11:22.238619995Z 63 PC: 12c5e | Read file or device (Read 18 bytes on handle 5)
2018-12-17T23:11:22.245085789Z 62 PC: 12d0b | Close file
2018-12-17T23:11:22.247220852Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:11:22.259714904Z 79 PC: 12c0d | Find next file
2018-12-17T23:11:22.26279517Z 26 PC: 12dee | Set disk transfer address
2018-12-17T23:11:22.26444817Z 9 PC: 12aa2 | Display string (String= 'Hello - This is a 100 COM test file, 1993 ')