Sample viewer

vx.netlux.org/Virus.DOS.Mini.233.c

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:18:16.732301185Z 42 PC: 15154 | Get date 0x15154: cmp al, 5
0x15156: jne 0x1517b
0x15158: cmp dl, 0xd
0x1515b: jne 0x1517b
0x1515d: mov ax, 3
0x15160: int 0x10
0x15162: add di, 0xd3
0x15166: mov si, di
0x15168: mov cx, 0xa0d
0x1516b: add byte ptr [si - 0x7045], ch
0x1516f: add word ptr [si + 0x340e], si
0x15173: push bp
0x15174: int 0x10
0x15176: loop 0x1516c
0x15178: int 0x10
0x1517a: jmp 0x15178
0x1517c: push di
0x1517d: add di, 0xe3
0x15181: mov si, di
0x15183: mov di, 0x100
2018-12-17T22:18:16.735478138Z 47 PC: 15190 | Get disk transfer address
2018-12-17T22:18:16.736977883Z 78 PC: 1519b | Find first file

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":3144,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:48:31.001760851Z 42 PC: 15154 | Get date 0x15154: cmp al, 5
0x15156: jne 0x1517b
0x15158: cmp dl, 0xd
0x1515b: jne 0x1517b
0x1515d: mov ax, 3
0x15160: int 0x10
0x15162: add di, 0xd3
0x15166: mov si, di
0x15168: mov cx, 0xa0d
0x1516b: add byte ptr [si - 0x7045], ch
0x1516f: add word ptr [si + 0x340e], si
0x15173: push bp
0x15174: int 0x10
0x15176: loop 0x1516c
0x15178: int 0x10
0x1517a: jmp 0x15178
0x1517c: push di
0x1517d: add di, 0xe3
0x15181: mov si, di
0x15183: mov di, 0x100
2018-12-25T11:48:31.004747054Z 47 PC: 15190 | Get disk transfer address
2018-12-25T11:48:31.005813541Z 78 PC: 1519b | Find first file

{"DateBased":true,"Day":4,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":3144,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:48:31.450008971Z 42 PC: 15154 | Get date 0x15154: cmp al, 5
0x15156: jne 0x1517b
0x15158: cmp dl, 0xd
0x1515b: jne 0x1517b
0x1515d: mov ax, 3
0x15160: int 0x10
0x15162: add di, 0xd3
0x15166: mov si, di
0x15168: mov cx, 0xa0d
0x1516b: add byte ptr [si - 0x7045], ch
0x1516f: add word ptr [si + 0x340e], si
0x15173: push bp
0x15174: int 0x10
0x15176: loop 0x1516c
0x15178: int 0x10
0x1517a: jmp 0x15178
0x1517c: push di
0x1517d: add di, 0xe3
0x15181: mov si, di
0x15183: mov di, 0x100
2018-12-25T11:48:31.45354664Z 47 PC: 15190 | Get disk transfer address
2018-12-25T11:48:31.455156716Z 78 PC: 1519b | Find first file

{"DateBased":true,"Day":13,"Month":6,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":3144,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:48:31.541021607Z 42 PC: 15154 | Get date 0x15154: cmp al, 5
0x15156: jne 0x1517b
0x15158: cmp dl, 0xd
0x1515b: jne 0x1517b
0x1515d: mov ax, 3
0x15160: int 0x10
0x15162: add di, 0xd3
0x15166: mov si, di
0x15168: mov cx, 0xa0d
0x1516b: add byte ptr [si - 0x7045], ch
0x1516f: add word ptr [si + 0x340e], si
0x15173: push bp
0x15174: int 0x10
0x15176: loop 0x1516c
0x15178: int 0x10
0x1517a: jmp 0x15178
0x1517c: push di
0x1517d: add di, 0xe3
0x15181: mov si, di
0x15183: mov di, 0x100