Sample viewer

vx.netlux.org/Virus.DOS.VRN.2229

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:17:56.315750029Z 42 PC: 12f91 | Get date 0x12f91: cmp dh, 7
0x12f94: jne 0x12f9e
0x12f96: cmp dl, 4
0x12f99: jne 0x12f9e
0x12f9b: jmp 0x13129
0x12f9e: sti
0x12f9f: ret
0x12fa0: inc cx
0x12fa1: push si
0x12fa2: push ax
0x12fa3: dec sp
0x12fa4: dec cx
0x12fa5: push sp
0x12fa6: inc bp
0x12fa7: pop es
0x12fa8: inc cx
0x12fa9: dec si
0x12faa: push sp
0x12fab: dec cx
0x12fac: sub ax, 0x4956
2018-12-17T22:17:56.318440363Z 48 PC: 12a6b | Get DOS version
2018-12-17T22:17:56.319803888Z 0 PC: 12b45 | Program terminate

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":3108,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:48:12.84754819Z 42 PC: 12f91 | Get date 0x12f91: cmp dh, 7
0x12f94: jne 0x12f9e
0x12f96: cmp dl, 4
0x12f99: jne 0x12f9e
0x12f9b: jmp 0x13129
0x12f9e: sti
0x12f9f: ret
0x12fa0: inc cx
0x12fa1: push si
0x12fa2: push ax
0x12fa3: dec sp
0x12fa4: dec cx
0x12fa5: push sp
0x12fa6: inc bp
0x12fa7: pop es
0x12fa8: inc cx
0x12fa9: dec si
0x12faa: push sp
0x12fab: dec cx
0x12fac: sub ax, 0x4956
2018-12-25T11:48:12.849877546Z 48 PC: 12a6b | Get DOS version
2018-12-25T11:48:12.85160387Z 0 PC: 12b45 | Program terminate

{"DateBased":true,"Day":1,"Month":7,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":3108,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:48:13.11240112Z 42 PC: 12f91 | Get date 0x12f91: cmp dh, 7
0x12f94: jne 0x12f9e
0x12f96: cmp dl, 4
0x12f99: jne 0x12f9e
0x12f9b: jmp 0x13129
0x12f9e: sti
0x12f9f: ret
0x12fa0: inc cx
0x12fa1: push si
0x12fa2: push ax
0x12fa3: dec sp
0x12fa4: dec cx
0x12fa5: push sp
0x12fa6: inc bp
0x12fa7: pop es
0x12fa8: inc cx
0x12fa9: dec si
0x12faa: push sp
0x12fab: dec cx
0x12fac: sub ax, 0x4956
2018-12-25T11:48:13.115213943Z 48 PC: 12a6b | Get DOS version
2018-12-25T11:48:13.117411736Z 0 PC: 12b45 | Program terminate

{"DateBased":true,"Day":4,"Month":7,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":3108,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:48:13.293552692Z 42 PC: 12f91 | Get date 0x12f91: cmp dh, 7
0x12f94: jne 0x12f9e
0x12f96: cmp dl, 4
0x12f99: jne 0x12f9e
0x12f9b: jmp 0x13129
0x12f9e: sti
0x12f9f: ret
0x12fa0: inc cx
0x12fa1: push si
0x12fa2: push ax
0x12fa3: dec sp
0x12fa4: dec cx
0x12fa5: push sp
0x12fa6: inc bp
0x12fa7: pop es
0x12fa8: inc cx
0x12fa9: dec si
0x12faa: push sp
0x12fab: dec cx
0x12fac: sub ax, 0x4956