Sample viewer

vx.netlux.org/Virus.DOS.Voyager.1134

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:12:51.549557474Z 26 PC: 12be6 | Set disk transfer address
2018-12-17T22:12:51.551576261Z 78 PC: 12c04 | Find first file
2018-12-17T22:12:51.556191978Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:51.557570458Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:51.560863218Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:51.562756987Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:51.566688964Z 26 PC: 12c50 | Set disk transfer address
2018-12-17T22:12:51.568918453Z 78 PC: 12c72 | Find first file
2018-12-17T22:12:51.578578179Z 67 PC: 12da5 | Get or set file attributes
2018-12-17T22:12:51.585240284Z 67 PC: 12db7 | Get or set file attributes
2018-12-17T22:12:52.167623219Z 61 PC: 12dc2 | Open file (Filename = 'c:\DOS\EDIT.COM')
2018-12-17T22:12:52.176728243Z 87 PC: 12dcb | Get or set file date and time
2018-12-17T22:12:52.178672041Z 63 PC: 12ce6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:12:52.184596211Z 62 PC: 12cea | Close file
2018-12-17T22:12:52.187216125Z 87 PC: 12df3 | Get or set file date and time
2018-12-17T22:12:52.189121867Z 62 PC: 12df7 | Close file
2018-12-17T22:12:52.190840323Z 67 PC: 12e07 | Get or set file attributes
2018-12-17T22:12:52.200989474Z 67 PC: 12da5 | Get or set file attributes
2018-12-17T22:12:52.207173799Z 67 PC: 12db7 | Get or set file attributes
2018-12-17T22:12:52.21681087Z 61 PC: 12dc2 | Open file (Filename = 'c:\DOS\EDIT.COM')
2018-12-17T22:12:52.224972136Z 87 PC: 12dcb | Get or set file date and time
2018-12-17T22:12:52.226745924Z 66 PC: 12d25 | Move file pointer
2018-12-17T22:12:52.228497248Z 64 PC: 12d2f | Write file or device (Write 1134 bytes on handle 5)
2018-12-17T22:12:52.236824681Z 66 PC: 12d3e | Move file pointer
2018-12-17T22:12:52.238597434Z 64 PC: 12d4d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:12:52.245039149Z 66 PC: 12d56 | Move file pointer
2018-12-17T22:12:52.246810569Z 64 PC: 12d7a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:12:52.252398516Z 87 PC: 12df3 | Get or set file date and time
2018-12-17T22:12:52.254008811Z 62 PC: 12df7 | Close file
2018-12-17T22:12:52.261624732Z 67 PC: 12e07 | Get or set file attributes
2018-12-17T22:12:52.266319844Z 79 PC: 12c90 | Find next file
2018-12-17T22:12:52.269920546Z 67 PC: 12da5 | Get or set file attributes
2018-12-17T22:12:52.27673463Z 67 PC: 12db7 | Get or set file attributes
2018-12-17T22:12:52.294078317Z 61 PC: 12dc2 | Open file (Filename = 'c:\DOS\FORMAT.COM')
2018-12-17T22:12:52.301029721Z 87 PC: 12dcb | Get or set file date and time
2018-12-17T22:12:52.30262099Z 63 PC: 12ce6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:12:52.309115494Z 62 PC: 12cea | Close file
2018-12-17T22:12:52.310774333Z 87 PC: 12df3 | Get or set file date and time
2018-12-17T22:12:52.312095104Z 62 PC: 12df7 | Close file
2018-12-17T22:12:52.313593138Z 67 PC: 12e07 | Get or set file attributes
2018-12-17T22:12:52.322922559Z 67 PC: 12da5 | Get or set file attributes
2018-12-17T22:12:52.328736507Z 67 PC: 12db7 | Get or set file attributes
2018-12-17T22:12:52.338530765Z 61 PC: 12dc2 | Open file (Filename = 'c:\DOS\FORMAT.COM')
2018-12-17T22:12:52.345463641Z 87 PC: 12dcb | Get or set file date and time
2018-12-17T22:12:52.346780887Z 66 PC: 12d25 | Move file pointer
2018-12-17T22:12:52.348688206Z 64 PC: 12d2f | Write file or device (Write 1134 bytes on handle 5)
2018-12-17T22:12:52.356494394Z 66 PC: 12d3e | Move file pointer
2018-12-17T22:12:52.358297395Z 64 PC: 12d4d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:12:52.365183703Z 66 PC: 12d56 | Move file pointer
2018-12-17T22:12:52.367200035Z 64 PC: 12d7a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:12:52.370974738Z 87 PC: 12df3 | Get or set file date and time
2018-12-17T22:12:52.373501005Z 62 PC: 12df7 | Close file
2018-12-17T22:12:52.380488121Z 67 PC: 12e07 | Get or set file attributes
2018-12-17T22:12:52.38487934Z 79 PC: 12c90 | Find next file
2018-12-17T22:12:52.389036108Z 67 PC: 12da5 | Get or set file attributes
2018-12-17T22:12:52.395099519Z 67 PC: 12db7 | Get or set file attributes
2018-12-17T22:12:52.404575907Z 61 PC: 12dc2 | Open file (Filename = 'c:\DOS\KEYB.COM')
2018-12-17T22:12:52.411610156Z 87 PC: 12dcb | Get or set file date and time
2018-12-17T22:12:52.413136422Z 63 PC: 12ce6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:12:52.418444485Z 62 PC: 12cea | Close file
2018-12-17T22:12:52.421192939Z 87 PC: 12df3 | Get or set file date and time
2018-12-17T22:12:52.422620684Z 62 PC: 12df7 | Close file
2018-12-17T22:12:52.423987196Z 67 PC: 12e07 | Get or set file attributes
2018-12-17T22:12:52.43422201Z 67 PC: 12da5 | Get or set file attributes
2018-12-17T22:12:52.44095657Z 67 PC: 12db7 | Get or set file attributes
2018-12-17T22:12:52.450227718Z 61 PC: 12dc2 | Open file (Filename = 'c:\DOS\KEYB.COM')
2018-12-17T22:12:52.457368946Z 87 PC: 12dcb | Get or set file date and time
2018-12-17T22:12:52.459526739Z 66 PC: 12d25 | Move file pointer
2018-12-17T22:12:52.461134287Z 64 PC: 12d2f | Write file or device (Write 1134 bytes on handle 5)
2018-12-17T22:12:52.470870261Z 66 PC: 12d3e | Move file pointer
2018-12-17T22:12:52.47264309Z 64 PC: 12d4d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:12:52.475368745Z 66 PC: 12d56 | Move file pointer
2018-12-17T22:12:52.476584146Z 64 PC: 12d7a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:12:52.480114674Z 87 PC: 12df3 | Get or set file date and time
2018-12-17T22:12:52.48144241Z 62 PC: 12df7 | Close file
2018-12-17T22:12:52.488230456Z 67 PC: 12e07 | Get or set file attributes
2018-12-17T22:12:52.492995235Z 79 PC: 12c90 | Find next file
2018-12-17T22:12:52.498916251Z 67 PC: 12da5 | Get or set file attributes
2018-12-17T22:12:52.505467332Z 67 PC: 12db7 | Get or set file attributes
2018-12-17T22:12:52.516327409Z 61 PC: 12dc2 | Open file (Filename = 'c:\DOS\SYS.COM')
2018-12-17T22:12:52.523134638Z 87 PC: 12dcb | Get or set file date and time
2018-12-17T22:12:52.524514631Z 63 PC: 12ce6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:12:52.530298665Z 62 PC: 12cea | Close file
2018-12-17T22:12:52.532048159Z 87 PC: 12df3 | Get or set file date and time
2018-12-17T22:12:52.533547602Z 62 PC: 12df7 | Close file
2018-12-17T22:12:52.53547589Z 67 PC: 12e07 | Get or set file attributes
2018-12-17T22:12:52.544908892Z 67 PC: 12da5 | Get or set file attributes
2018-12-17T22:12:52.551091443Z 67 PC: 12db7 | Get or set file attributes
2018-12-17T22:12:52.561266402Z 61 PC: 12dc2 | Open file (Filename = 'c:\DOS\SYS.COM')
2018-12-17T22:12:52.56808077Z 87 PC: 12dcb | Get or set file date and time
2018-12-17T22:12:52.569995631Z 66 PC: 12d25 | Move file pointer
2018-12-17T22:12:52.571719822Z 64 PC: 12d2f | Write file or device (Write 1134 bytes on handle 5)
2018-12-17T22:12:52.57961769Z 66 PC: 12d3e | Move file pointer
2018-12-17T22:12:52.580800366Z 64 PC: 12d4d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:12:52.583938927Z 66 PC: 12d56 | Move file pointer
2018-12-17T22:12:52.585473604Z 64 PC: 12d7a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:12:52.58829604Z 87 PC: 12df3 | Get or set file date and time
2018-12-17T22:12:52.590418838Z 62 PC: 12df7 | Close file
2018-12-17T22:12:52.597759292Z 67 PC: 12e07 | Get or set file attributes
2018-12-17T22:12:52.601820633Z 79 PC: 12c90 | Find next file
2018-12-17T22:12:52.608062405Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.609309564Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.612232499Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.614493923Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.617358766Z 26 PC: 12c50 | Set disk transfer address
2018-12-17T22:12:52.618476705Z 78 PC: 12c72 | Find first file
2018-12-17T22:12:52.624312484Z 79 PC: 12c90 | Find next file
2018-12-17T22:12:52.628777838Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.629750079Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.632135444Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.632992407Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.635144522Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.636595925Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.63821528Z 44 PC: 12ae4 | Get time 0x12ae4: mov byte ptr [bp + 0x3e], 0xb2
0x12ae8: push dx
0x12ae9: and dl, 0x1f
0x12aec: mov bx, 5
0x12aef: dec bl
0x12af1: shr dl, 1
0x12af3: jne 0x12aef
0x12af5: add bl, 3
0x12af8: mov ax, 0x4408
0x12afb: int 0x21
0x12afd: jae 0x12b03
0x12aff: dec bl
0x12b01: jmp 0x12af8
0x12b03: add bx, 0x3a60
0x12b07: mov word ptr [bp + 0x3f3], bx
0x12b0b: mov byte ptr [bp + 0x3f5], 0
0x12b10: pop dx
0x12b11: cmp dl, 0x28
0x12b14: jae 0x12b1b
0x12b16: call 0x12b79
2018-12-17T22:12:52.639732076Z 68 PC: 12afd | I/O control for devices
2018-12-17T22:12:52.641445685Z 68 PC: 12afd | I/O control for devices
2018-12-17T22:12:52.642604977Z 68 PC: 12afd | I/O control for devices
2018-12-17T22:12:52.643766859Z 68 PC: 12afd | I/O control for devices
2018-12-17T22:12:52.645498046Z 68 PC: 12afd | I/O control for devices
2018-12-17T22:12:52.646858887Z 26 PC: 12b83 | Set disk transfer address
2018-12-17T22:12:52.64778243Z 78 PC: 12ba1 | Find first file
2018-12-17T22:12:52.651690654Z 26 PC: 12bb1 | Set disk transfer address
2018-12-17T22:12:52.652559461Z 79 PC: 12bb5 | Find next file
2018-12-17T22:12:52.654286439Z 26 PC: 12bb1 | Set disk transfer address
2018-12-17T22:12:52.65566907Z 79 PC: 12bb5 | Find next file
2018-12-17T22:12:52.657486414Z 26 PC: 12be6 | Set disk transfer address
2018-12-17T22:12:52.658380356Z 78 PC: 12c04 | Find first file
2018-12-17T22:12:52.662922168Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.663868808Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.665847272Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.667294285Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.669294163Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.670211201Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.67281652Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.673710409Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.675713952Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.677236221Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.67920242Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.680062256Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.682629591Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.683528254Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.685572694Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.686997717Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.688967875Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.689834911Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.692407997Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.693296736Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.695260406Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.696797301Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.698864123Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.699810293Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.702445213Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.703298205Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.705304037Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.706686045Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.708734493Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.709611611Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.712170041Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.712986774Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.714971871Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.71678231Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.718707888Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.719546726Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.722076817Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.722910253Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.724868779Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.726926498Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.730092358Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.731363277Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.735337845Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.736932579Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.740101079Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.74219391Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.745632121Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.746923261Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.750844726Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.752460683Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.755642218Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.757158543Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.76054036Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.761807375Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.765128253Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.766551469Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.769704796Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.771252424Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.774565637Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.775800154Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.779548085Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.780668492Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.784178822Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.786451302Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.789569841Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.790738601Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.794739024Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.796006728Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.799855929Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.801852366Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.804842222Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.805802295Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.809774662Z 26 PC: 12c14 | Set disk transfer address
2018-12-17T22:12:52.810834052Z 79 PC: 12c18 | Find next file
2018-12-17T22:12:52.813479684Z 26 PC: 12bb1 | Set disk transfer address
2018-12-17T22:12:52.815483095Z 79 PC: 12bb5 | Find next file
2018-12-17T22:12:52.818068007Z 26 PC: 12bb1 | Set disk transfer address
2018-12-17T22:12:52.819008827Z 79 PC: 12bb5 | Find next file
2018-12-17T22:12:52.822316477Z 26 PC: 12bb1 | Set disk transfer address
2018-12-17T22:12:52.823373479Z 79 PC: 12bb5 | Find next file
2018-12-17T22:12:52.825819696Z 26 PC: 12bb1 | Set disk transfer address
2018-12-17T22:12:52.827783926Z 79 PC: 12bb5 | Find next file
2018-12-17T22:12:52.830241245Z 26 PC: 12bb1 | Set disk transfer address
2018-12-17T22:12:52.831187737Z 79 PC: 12bb5 | Find next file
2018-12-17T22:12:52.83432525Z 42 PC: 12b34 | Get date 0x12b34: mov byte ptr [bp + 0x8e], 0xb2
0x12b39: cmp dx, 0xa0a
0x12b3d: jne 0x12b49
0x12b3f: mov dx, bp
0x12b41: add dx, 0x451
0x12b45: mov ah, 9
0x12b47: int 0x21
0x12b49: mov ax, 0x80
0x12b4c: mov dx, 0x1a00
0x12b4f: xchg ax, dx
0x12b50: int 0x21
0x12b52: mov ax, word ptr [bp + 0x365]
0x12b56: mov cx, word ptr [bp + 0x367]
0x12b5a: mov bx, 0x100
0x12b5d: mov word ptr [bx], ax
0x12b5f: mov word ptr [bx + 2], cx
0x12b62: pop bp
0x12b63: pop si
0x12b64: pop di
0x12b65: pop es
2018-12-17T22:12:52.837083412Z 26 PC: 12b52 | Set disk transfer address