Sample viewer

vx.netlux.org/Virus.DOS.Nuke.Howard.967

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:06:31.952914096Z 47 PC: 12a91 | Get disk transfer address
2018-12-17T22:06:31.954829552Z 26 PC: 12a9b | Set disk transfer address
2018-12-17T22:06:31.956193159Z 71 PC: 12b3c | Get current directory
2018-12-17T22:06:31.95924118Z 59 PC: 12b5b | Change current directory
2018-12-17T22:06:31.972975815Z 47 PC: 12bd9 | Get disk transfer address
2018-12-17T22:06:31.975426304Z 26 PC: 12bec | Set disk transfer address
2018-12-17T22:06:31.977054555Z 78 PC: 12bf6 | Find first file
2018-12-17T22:06:31.983458047Z 47 PC: 12cd9 | Get disk transfer address
2018-12-17T22:06:31.985346026Z 61 PC: 12cf2 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:06:31.991892721Z 63 PC: 12cfe | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:06:31.999278026Z 66 PC: 12d0e | Move file pointer
2018-12-17T22:06:32.001835231Z 62 PC: 12d13 | Close file
2018-12-17T22:06:32.003698012Z 67 PC: 12d35 | Get or set file attributes
2018-12-17T22:06:32.020546963Z 61 PC: 12d3c | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:06:32.02848388Z 64 PC: 12d48 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:06:32.031508679Z 66 PC: 12d56 | Move file pointer
2018-12-17T22:06:32.033690966Z 64 PC: 12d63 | Write file or device (Write 967 bytes on handle 5)
2018-12-17T22:06:32.043017622Z 87 PC: 12d74 | Get or set file date and time
2018-12-17T22:06:32.044495403Z 62 PC: 12d78 | Close file
2018-12-17T22:06:32.052302106Z 67 PC: 12d87 | Get or set file attributes
2018-12-17T22:06:32.063137806Z 26 PC: 12c0c | Set disk transfer address
2018-12-17T22:06:32.064775765Z 59 PC: 12b74 | Change current directory
2018-12-17T22:06:32.069276176Z 71 PC: 12b3c | Get current directory
2018-12-17T22:06:32.073520824Z 59 PC: 12b5b | Change current directory
2018-12-17T22:06:32.075814794Z 47 PC: 12bd9 | Get disk transfer address
2018-12-17T22:06:32.07755743Z 26 PC: 12bec | Set disk transfer address
2018-12-17T22:06:32.079866853Z 78 PC: 12bf6 | Find first file
2018-12-17T22:06:32.084636797Z 26 PC: 12c0c | Set disk transfer address
2018-12-17T22:06:32.085977118Z 59 PC: 12b74 | Change current directory
2018-12-17T22:06:32.095414364Z 44 PC: 12d98 | Get time 0x12d98: mov al, ch
0x12d9a: cwde
0x12d9b: ret
0x12d9c: and byte ptr [bx + di], dh
0x12d9e: xor dh, byte ptr [bp + di]
0x12da0: xor al, 0x35
0x12da2: aaa
0x12da4: cmp byte ptr [bx + di], bh
0x12da6: xor byte ptr [bx + di], ah
0x12da8: inc ax
0x12da9: and sp, word ptr [si]
0x12dab: and ax, 0x265e
0x12dae: sub ch, byte ptr [bx + si]
0x12db0: sub word ptr [bx + di + 0x73], sp
0x12db3: arpl word ptr [bx + di + 0x69], bp
0x12db6: and byte ptr [bx + si], ah
0x12db8: sub byte ptr [bp + di + 0x29], ah
0x12dbb: and byte ptr [bp + si + 0x61], al
0x12dbe: and byte ptr [bp + si + 0x61], al
0x12dc1: and byte ptr [bp + di + 0x74], dl
2018-12-17T22:06:32.099355043Z 26 PC: 12af5 | Set disk transfer address