Sample viewer

vx.netlux.org/Virus.DOS.Vienna.Violator.803

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:17:50.303361085Z 48 PC: 12a8e | Get DOS version
2018-12-17T22:17:50.304726721Z 42 PC: 12a8e | Get date 0x12a8e: ret
0x12a8f: int 0x13
0x12a91: ret
0x12a92: int 0x26
0x12a94: ret
0x12a95: mov ah, 0x2a
0x12a97: mov byte ptr [0x3a7], 1
0x12a9c: call 0x22a76
0x12a9f: cmp cx, word ptr [0x370]
0x12aa3: jge 0x12aa7
0x12aa5: jmp 0x12af2
0x12aa7: cmp dh, byte ptr [0x372]
0x12aab: jge 0x12aaf
0x12aad: jmp 0x12af2
0x12aaf: cmp dl, byte ptr [0x373]
0x12ab3: jge 0x12ab7
0x12ab5: jmp 0x12af2
0x12ab7: mov al, byte ptr [0x3a8]
0x12aba: call 0x12aca
0x12abd: cmp byte ptr [0x3a8], 0x1b
2018-12-17T22:17:50.306805102Z 47 PC: 12a8e | Get disk transfer address
2018-12-17T22:17:50.307726053Z 26 PC: 12a8e | Set disk transfer address
2018-12-17T22:17:50.308744857Z 78 PC: 12a8e | Find first file
2018-12-17T22:17:50.313781828Z 67 PC: 12a8e | Get or set file attributes
2018-12-17T22:17:50.317475715Z 67 PC: 12a8e | Get or set file attributes
2018-12-17T22:17:50.329537248Z 61 PC: 12a8e | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:17:50.338270682Z 87 PC: 12a8e | Get or set file date and time
2018-12-17T22:17:50.339959886Z 44 PC: 12a8e | Get time 0x12a8e: ret
0x12a8f: int 0x13
0x12a91: ret
0x12a92: int 0x26
0x12a94: ret
0x12a95: mov ah, 0x2a
0x12a97: mov byte ptr [0x3a7], 1
0x12a9c: call 0x22a76
0x12a9f: cmp cx, word ptr [0x370]
0x12aa3: jge 0x12aa7
0x12aa5: jmp 0x12af2
0x12aa7: cmp dh, byte ptr [0x372]
0x12aab: jge 0x12aaf
0x12aad: jmp 0x12af2
0x12aaf: cmp dl, byte ptr [0x373]
0x12ab3: jge 0x12ab7
0x12ab5: jmp 0x12af2
0x12ab7: mov al, byte ptr [0x3a8]
0x12aba: call 0x12aca
0x12abd: cmp byte ptr [0x3a8], 0x1b
2018-12-17T22:17:50.341950253Z 63 PC: 12a8e | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:17:50.349026853Z 66 PC: 12a8e | Move file pointer
2018-12-17T22:17:50.350798971Z 64 PC: 12a8e | Write file or device (Write 803 bytes on handle 5)
2018-12-17T22:17:50.359850826Z 66 PC: 12a8e | Move file pointer
2018-12-17T22:17:50.361960709Z 64 PC: 12a8e | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:17:50.366327421Z 87 PC: 12a8e | Get or set file date and time
2018-12-17T22:17:50.367481374Z 62 PC: 12a8e | Close file
2018-12-17T22:17:50.374881984Z 67 PC: 12a8e | Get or set file attributes
2018-12-17T22:17:50.384859571Z 26 PC: 12a8e | Set disk transfer address