Sample viewer

vx.netlux.org/Virus.DOS.Nuke.Howard.951

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:14:57.573987016Z 47 PC: 12a91 | Get disk transfer address
2018-12-17T22:14:57.575481627Z 26 PC: 12a9b | Set disk transfer address
2018-12-17T22:14:57.576456491Z 71 PC: 12b3c | Get current directory
2018-12-17T22:14:57.579308807Z 59 PC: 12b5b | Change current directory
2018-12-17T22:14:57.585775931Z 47 PC: 12bd9 | Get disk transfer address
2018-12-17T22:14:57.586789081Z 26 PC: 12bec | Set disk transfer address
2018-12-17T22:14:57.587720026Z 78 PC: 12bf6 | Find first file
2018-12-17T22:14:57.593774514Z 47 PC: 12cca | Get disk transfer address
2018-12-17T22:14:57.594933884Z 61 PC: 12ce3 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:14:57.602824783Z 63 PC: 12cef | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:14:57.616274252Z 66 PC: 12cff | Move file pointer
2018-12-17T22:14:57.619645345Z 62 PC: 12d04 | Close file
2018-12-17T22:14:57.621906737Z 67 PC: 12d26 | Get or set file attributes
2018-12-17T22:14:57.638734387Z 61 PC: 12d2d | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:14:57.64841207Z 64 PC: 12d39 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:14:57.652462509Z 66 PC: 12d47 | Move file pointer
2018-12-17T22:14:57.653430808Z 64 PC: 12d54 | Write file or device (Write 951 bytes on handle 5)
2018-12-17T22:14:57.65913085Z 87 PC: 12d65 | Get or set file date and time
2018-12-17T22:14:57.660551852Z 62 PC: 12d69 | Close file
2018-12-17T22:14:57.667873653Z 67 PC: 12d78 | Get or set file attributes
2018-12-17T22:14:57.677694327Z 26 PC: 12c0c | Set disk transfer address
2018-12-17T22:14:57.678678462Z 59 PC: 12b74 | Change current directory
2018-12-17T22:14:57.682435645Z 71 PC: 12b3c | Get current directory
2018-12-17T22:14:57.685946104Z 59 PC: 12b5b | Change current directory
2018-12-17T22:14:57.687714735Z 47 PC: 12bd9 | Get disk transfer address
2018-12-17T22:14:57.688748499Z 26 PC: 12bec | Set disk transfer address
2018-12-17T22:14:57.690444716Z 78 PC: 12bf6 | Find first file
2018-12-17T22:14:57.699510346Z 26 PC: 12c0c | Set disk transfer address
2018-12-17T22:14:57.700505055Z 59 PC: 12b74 | Change current directory
2018-12-17T22:14:57.709434059Z 44 PC: 12d89 | Get time 0x12d89: mov al, ch
0x12d8b: cwde
0x12d8c: ret
0x12d8d: and byte ptr [bx + di], dh
0x12d8f: xor dh, byte ptr [bp + di]
0x12d91: xor al, 0x35
0x12d93: aaa
0x12d95: cmp byte ptr [bx + di], bh
0x12d97: xor byte ptr [bx + di], ah
0x12d99: inc ax
0x12d9a: and sp, word ptr [si]
0x12d9c: and ax, 0x265e
0x12d9f: sub ch, byte ptr [bx + si]
0x12da1: sub word ptr [bx + di + 0x73], sp
0x12da4: arpl word ptr [bx + di + 0x69], bp
0x12da7: and byte ptr [bx + si], ah
0x12da9: sub byte ptr [bp + di + 0x29], ah
0x12dac: and byte ptr [bp + si + 0x61], al
0x12daf: and byte ptr [bp + si + 0x61], al
0x12db2: and byte ptr [bp + di + 0x74], dl
2018-12-17T22:14:57.711534354Z 26 PC: 12af5 | Set disk transfer address