Sample viewer

vx.netlux.org/Virus.DOS.TPE.CivilWar.1915

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:12:42.278589294Z 26 PC: 12a55 | Set disk transfer address
2018-12-17T23:12:42.280711702Z 44 PC: 12ca2 | Get time 0x12ca2: in al, 0x40
0x12ca4: mov ah, al
0x12ca6: in al, 0x40
0x12ca8: xor ax, cx
0x12caa: xor dx, ax
0x12cac: jmp 0x12cc9
0x12cae: push dx
0x12caf: push cx
0x12cb0: push bx
0x12cb1: mov ax, 0
0x12cb4: mov dx, 0
0x12cb7: mov cx, 7
0x12cba: shl ax, 1
0x12cbc: rcl dx, 1
0x12cbe: mov bl, al
0x12cc0: xor bl, dh
0x12cc2: jns 0x12cc6
0x12cc4: inc al
0x12cc6: loop 0x12cba
0x12cc8: pop bx
2018-12-17T23:12:42.285229116Z 78 PC: 12a6e | Find first file
2018-12-17T23:12:42.292406374Z 61 PC: 12a76 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:12:42.300316628Z 87 PC: 12a80 | Get or set file date and time
2018-12-17T23:12:42.303057147Z 63 PC: 12a97 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T23:12:42.3106055Z 66 PC: 12b3b | Move file pointer
2018-12-17T23:12:42.313214954Z 64 PC: 12ad1 | Write file or device (Write 1 bytes on handle 5)
2018-12-17T23:12:42.316810069Z 64 PC: 12adc | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:12:42.320247733Z 64 PC: 12ae7 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:12:42.323342475Z 66 PC: 12b3b | Move file pointer
2018-12-17T23:12:42.330439662Z 64 PC: 12b15 | Write file or device (Write 1983 bytes on handle 5)
2018-12-17T23:12:42.347988447Z 87 PC: 12b26 | Get or set file date and time