Sample viewer

vx.netlux.org/Virus.DOS.Leprosy.BadCommand.281

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:20:36.369386626Z 67 PC: 12a84 | Get or set file attributes
2018-12-17T22:20:36.376602841Z 65 PC: 12a88 | Delete file (Filename = 'CHKLIST.MS')
2018-12-17T22:20:36.384323068Z 67 PC: 12a84 | Get or set file attributes
2018-12-17T22:20:36.391003864Z 65 PC: 12a88 | Delete file (Filename = 'ANTI-VIR.DAT')
2018-12-17T22:20:36.397694357Z 44 PC: 12a97 | Get time 0x12a97: cmp dl, 0
0x12a9a: je 0x12a93
0x12a9c: mov byte ptr [0x12a], dl
0x12aa0: mov ah, byte ptr [0x1e5]
0x12aa4: mov cx, 0x27
0x12aa7: mov dx, 0x1e1
0x12aaa: int 0x21
0x12aac: jb 0x12b19
0x12aae: mov ax, 0x3d02
0x12ab1: mov dx, 0x9e
0x12ab4: int 0x21
0x12ab6: xchg ax, bx
0x12ab7: mov ax, 0x5700
0x12aba: int 0x21
0x12abc: mov word ptr [0x12b], cx
0x12ac0: mov word ptr [0x12d], dx
0x12ac4: mov ah, 0x3f
0x12ac6: mov cx, 2
0x12ac9: mov dx, 0x219
0x12acc: int 0x21
2018-12-17T22:20:36.401224759Z 78 PC: 12aac | Find first file
2018-12-17T22:20:36.407936068Z 61 PC: 12ab6 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:20:36.415480742Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:20:36.417874379Z 63 PC: 12ace | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:20:36.425542004Z 62 PC: 12ae5 | Close file
2018-12-17T22:20:36.427896663Z 61 PC: 12aed | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:20:36.436853708Z 64 PC: 12a57 | Write file or device (Write 281 bytes on handle 5)
2018-12-17T22:20:36.440640932Z 87 PC: 12b02 | Get or set file date and time
2018-12-17T22:20:36.442393517Z 62 PC: 12b06 | Close file
2018-12-17T22:20:36.457099429Z 79 PC: 12aac | Find next file
2018-12-17T22:20:36.460494697Z 61 PC: 12ab6 | Open file (Filename = 'PRINT.S')
2018-12-17T22:20:36.467759376Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:20:36.469333713Z 63 PC: 12ace | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:20:36.476790032Z 62 PC: 12ae5 | Close file
2018-12-17T22:20:36.478724118Z 61 PC: 12aed | Open file (Filename = 'PRINT.S')
2018-12-17T22:20:36.486312556Z 64 PC: 12a57 | Write file or device (Write 281 bytes on handle 5)
2018-12-17T22:20:36.493380381Z 87 PC: 12b02 | Get or set file date and time
2018-12-17T22:20:36.495118071Z 62 PC: 12b06 | Close file
2018-12-17T22:20:36.50302332Z 79 PC: 12aac | Find next file
2018-12-17T22:20:36.506566384Z 61 PC: 12ab6 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:20:36.515542558Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:20:36.518133745Z 63 PC: 12ace | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:20:36.526763486Z 62 PC: 12ae5 | Close file
2018-12-17T22:20:36.529137234Z 61 PC: 12aed | Open file (Filename = 'PRINT.COM')
2018-12-17T22:20:36.537111315Z 64 PC: 12a57 | Write file or device (Write 281 bytes on handle 5)
2018-12-17T22:20:36.540925804Z 87 PC: 12b02 | Get or set file date and time
2018-12-17T22:20:36.547168753Z 62 PC: 12b06 | Close file
2018-12-17T22:20:36.555457169Z 79 PC: 12aac | Find next file
2018-12-17T22:20:36.558454119Z 61 PC: 12ab6 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:20:36.566567585Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:20:36.577014906Z 63 PC: 12ace | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:20:36.59496037Z 62 PC: 12ae5 | Close file
2018-12-17T22:20:36.59746665Z 61 PC: 12aed | Open file (Filename = 'HELLO.COM')
2018-12-17T22:20:36.605231502Z 64 PC: 12a57 | Write file or device (Write 281 bytes on handle 5)
2018-12-17T22:20:36.608724548Z 87 PC: 12b02 | Get or set file date and time
2018-12-17T22:20:36.611392087Z 62 PC: 12b06 | Close file
2018-12-17T22:20:36.619660924Z 79 PC: 12aac | Find next file
2018-12-17T22:20:36.62258722Z 61 PC: 12ab6 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:20:36.638345873Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:20:36.640035082Z 63 PC: 12ace | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:20:36.64714745Z 62 PC: 12ae5 | Close file
2018-12-17T22:20:36.649326012Z 61 PC: 12aed | Open file (Filename = 'PHANG.COM')
2018-12-17T22:20:36.658229652Z 64 PC: 12a57 | Write file or device (Write 281 bytes on handle 5)
2018-12-17T22:20:36.661789825Z 87 PC: 12b02 | Get or set file date and time
2018-12-17T22:20:36.663771789Z 62 PC: 12b06 | Close file
2018-12-17T22:20:36.672449529Z 79 PC: 12aac | Find next file
2018-12-17T22:20:36.675592996Z 61 PC: 12ab6 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:20:36.682914625Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:20:36.685537972Z 63 PC: 12ace | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:20:36.705170049Z 62 PC: 12ae5 | Close file
2018-12-17T22:20:36.707146718Z 61 PC: 12aed | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:20:36.716081246Z 64 PC: 12a57 | Write file or device (Write 281 bytes on handle 5)
2018-12-17T22:20:36.720131149Z 87 PC: 12b02 | Get or set file date and time
2018-12-17T22:20:36.721789521Z 62 PC: 12b06 | Close file
2018-12-17T22:20:36.730563103Z 79 PC: 12aac | Find next file
2018-12-17T22:20:36.733396463Z 61 PC: 12ab6 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:20:36.740764372Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:20:36.742805038Z 63 PC: 12ace | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:20:36.750441373Z 62 PC: 12ae5 | Close file
2018-12-17T22:20:36.752597257Z 61 PC: 12aed | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:20:36.761704012Z 64 PC: 12a57 | Write file or device (Write 281 bytes on handle 5)
2018-12-17T22:20:36.766199038Z 87 PC: 12b02 | Get or set file date and time
2018-12-17T22:20:36.768268568Z 62 PC: 12b06 | Close file
2018-12-17T22:20:36.776755984Z 79 PC: 12aac | Find next file
2018-12-17T22:20:36.78121122Z 61 PC: 12ab6 | Open file (Filename = 'PAH.COM')
2018-12-17T22:20:36.790387386Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:20:36.792274403Z 63 PC: 12ace | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:20:36.800658905Z 62 PC: 12ae5 | Close file
2018-12-17T22:20:36.802929488Z 61 PC: 12aed | Open file (Filename = 'PAH.COM')
2018-12-17T22:20:36.811198476Z 64 PC: 12a57 | Write file or device (Write 281 bytes on handle 5)
2018-12-17T22:20:36.816079865Z 87 PC: 12b02 | Get or set file date and time
2018-12-17T22:20:36.818847987Z 62 PC: 12b06 | Close file
2018-12-17T22:20:36.827602856Z 79 PC: 12aac | Find next file
2018-12-17T22:20:36.830854209Z 61 PC: 12ab6 | Open file (Filename = 'TEST.COM')
2018-12-17T22:20:36.840995285Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:20:36.843202545Z 63 PC: 12ace | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:20:36.84690418Z 62 PC: 12ada | Close file
2018-12-17T22:20:36.850451019Z 79 PC: 12aac | Find next file
2018-12-17T22:20:36.853710902Z 9 PC: 12b20 | Display string (String= 'Bad command or file name')