Sample viewer

vx.netlux.org/Virus.DOS.HPE.2423

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:05:37.664821925Z 26 PC: 1365e | Set disk transfer address
2018-12-17T22:05:37.666709438Z 71 PC: 1366a | Get current directory
2018-12-17T22:05:37.669873089Z 44 PC: 12e43 | Get time 0x12e43: in al, 0x40
0x12e45: mov ah, al
0x12e47: in al, 0x40
0x12e49: xor ax, cx
0x12e4b: xor dx, ax
0x12e4d: jmp 0x12e6b
0x12e4f: push dx
0x12e50: push cx
0x12e51: push bx
0x12e52: in al, 0x40
0x12e54: add ax, 0xd35f
0x12e57: mov dx, 0xbd68
0x12e5a: mov cx, 7
0x12e5d: shl ax, 1
0x12e5f: rcl dx, 1
0x12e61: mov bl, al
0x12e63: xor bl, dh
0x12e65: jns 0x12e69
0x12e67: inc al
0x12e69: loop 0x12e5d
2018-12-17T22:05:37.671921949Z 78 PC: 1367a | Find first file
2018-12-17T22:05:37.678531096Z 61 PC: 1369e | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:05:37.68545216Z 63 PC: 136ab | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:05:37.693739625Z 62 PC: 136af | Close file
2018-12-17T22:05:37.697278383Z 61 PC: 136d2 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:05:37.704129671Z 64 PC: 136ff | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:05:37.720401716Z 64 PC: 13731 | Write file or device (Write 121 bytes on handle 5)
2018-12-17T22:05:37.73465705Z 64 PC: 13739 | Write file or device (Write 2423 bytes on handle 5)
2018-12-17T22:05:37.74378981Z 62 PC: 13744 | Close file
2018-12-17T22:05:37.751793024Z 79 PC: 1367a | Find next file
2018-12-17T22:05:37.754335151Z 61 PC: 1369e | Open file (Filename = 'EEEIIIOOUUYAIOU')
2018-12-17T22:05:37.761500673Z 63 PC: 136ab | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:05:37.767917271Z 62 PC: 136af | Close file
2018-12-17T22:05:37.769830673Z 61 PC: 136d2 | Open file (Filename = 'EEEIIIOOUUYAIOU')
2018-12-17T22:05:37.777368681Z 64 PC: 136ff | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:05:37.786550281Z 64 PC: 13731 | Write file or device (Write 37 bytes on handle 5)
2018-12-17T22:05:37.789288372Z 64 PC: 13739 | Write file or device (Write 2423 bytes on handle 5)
2018-12-17T22:05:37.798407413Z 62 PC: 13744 | Close file
2018-12-17T22:05:37.8060026Z 79 PC: 1367a | Find next file
2018-12-17T22:05:37.808333058Z 61 PC: 1369e | Open file (Filename = 'EEEIIIOOUUYAIOU')
2018-12-17T22:05:37.813579911Z 63 PC: 136ab | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:05:37.818952955Z 62 PC: 136af | Close file
2018-12-17T22:05:37.820345341Z 61 PC: 136d2 | Open file (Filename = 'EEEIIIOOUUYAIOU')
2018-12-17T22:05:37.82621169Z 64 PC: 136ff | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:05:37.836611886Z 64 PC: 13731 | Write file or device (Write 84 bytes on handle 5)
2018-12-17T22:05:37.838648221Z 64 PC: 13739 | Write file or device (Write 2423 bytes on handle 5)
2018-12-17T22:05:37.846105813Z 62 PC: 13744 | Close file
2018-12-17T22:05:37.851484717Z 79 PC: 1367a | Find next file
2018-12-17T22:05:37.854360489Z 61 PC: 1369e | Open file (Filename = 'EEEIIIOOUUYAIOU')
2018-12-17T22:05:37.861632835Z 63 PC: 136ab | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:05:37.866689571Z 62 PC: 136af | Close file
2018-12-17T22:05:37.869091844Z 61 PC: 136d2 | Open file (Filename = 'EEEIIIOOUUYAIOU')
2018-12-17T22:05:37.883309685Z 64 PC: 136ff | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:05:37.914714022Z 64 PC: 13731 | Write file or device (Write 243 bytes on handle 5)
2018-12-17T22:05:37.916830964Z 64 PC: 13739 | Write file or device (Write 2423 bytes on handle 5)
2018-12-17T22:05:37.923073563Z 62 PC: 13744 | Close file
2018-12-17T22:05:37.928607174Z 79 PC: 1367a | Find next file
2018-12-17T22:05:37.930616859Z 61 PC: 1369e | Open file (Filename = 'EEEIIIOOUUYAIOU')
2018-12-17T22:05:37.935065735Z 63 PC: 136ab | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:05:37.939617086Z 62 PC: 136af | Close file
2018-12-17T22:05:37.941002185Z 61 PC: 136d2 | Open file (Filename = 'EEEIIIOOUUYAIOU')
2018-12-17T22:05:37.945532599Z 64 PC: 136ff | Write file or device (Write 4 bytes on handle 5)