Sample viewer

vx.netlux.org/Virus.DOS.Slam.Daemon.332

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:23:34.371541109Z 53 PC: 12aa7 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:23:34.373004263Z 37 PC: 12ab7 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:23:34.3871391Z 71 PC: 12ac0 | Get current directory
2018-12-17T22:23:34.400396771Z 53 PC: 12ac7 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:23:34.40767857Z 37 PC: 12ad0 | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T22:23:34.410385934Z 78 PC: 12b01 | Find first file
2018-12-17T22:23:34.430782502Z 67 PC: 12b0a | Get or set file attributes
2018-12-17T22:23:34.437725321Z 67 PC: 12b14 | Get or set file attributes
2018-12-17T22:23:34.472716911Z 61 PC: 12b18 | Open file (Filename = '')
2018-12-17T22:23:34.48081567Z 87 PC: 12b1d | Get or set file date and time
2018-12-17T22:23:34.482938151Z 63 PC: 12b28 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:23:34.491017979Z 66 PC: 12b37 | Move file pointer
2018-12-17T22:23:34.493631856Z 44 PC: 12a50 | Get time 0x12a50: cmp dl, 0
0x12a53: je 0x12a4c
0x12a55: mov byte ptr [0x10a], dl
0x12a59: call 0x12a6e
0x12a5c: pop bx
0x12a5d: mov cx, 0x14c
0x12a60: mov dx, 0x100
0x12a63: mov ah, 0x40
0x12a65: int3
0x12a66: inc byte ptr [0x24c]
0x12a6a: call 0x12a6e
0x12a6d: ret
0x12a6e: mov bx, 0x146
0x12a71: mov al, byte ptr [0x10a]
0x12a75: cmp al, 0
0x12a77: je 0x12a85
0x12a79: xor byte ptr [bx], al
0x12a7c: inc bx
0x12a7d: add al, bh
0x12a7f: cmp bx, 0x22d
2018-12-17T22:23:34.496701412Z 64 PC: 12a66 | Write file or device (Write 332 bytes on handle 5)
2018-12-17T22:23:34.501229964Z 87 PC: 12b42 | Get or set file date and time
2018-12-17T22:23:34.510092121Z 62 PC: 12b45 | Close file
2018-12-17T22:23:34.519273712Z 67 PC: 12b50 | Get or set file attributes
2018-12-17T22:23:34.531153983Z 79 PC: 12b01 | Find next file
2018-12-17T22:23:34.542834975Z 67 PC: 12b0a | Get or set file attributes
2018-12-17T22:23:34.550535517Z 67 PC: 12b14 | Get or set file attributes
2018-12-17T22:23:34.561994171Z 61 PC: 12b18 | Open file (Filename = '')
2018-12-17T22:23:34.570596437Z 87 PC: 12b1d | Get or set file date and time
2018-12-17T22:23:34.572369774Z 63 PC: 12b28 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:23:34.580300619Z 66 PC: 12b37 | Move file pointer
2018-12-17T22:23:34.58506195Z 44 PC: 12a50 | Get time 0x12a50: cmp dl, 0
0x12a53: je 0x12a4c
0x12a55: mov byte ptr [0x10a], dl
0x12a59: call 0x12a6e
0x12a5c: pop bx
0x12a5d: mov cx, 0x14c
0x12a60: mov dx, 0x100
0x12a63: mov ah, 0x40
0x12a65: int3
0x12a66: inc byte ptr [0x24c]
0x12a6a: call 0x12a6e
0x12a6d: ret
0x12a6e: mov bx, 0x146
0x12a71: mov al, byte ptr [0x10a]
0x12a75: cmp al, 0
0x12a77: je 0x12a85
0x12a79: xor byte ptr [bx], al
0x12a7c: inc bx
0x12a7d: add al, bh
0x12a7f: cmp bx, 0x22d
2018-12-17T22:23:34.587827863Z 64 PC: 12a66 | Write file or device (Write 332 bytes on handle 5)
2018-12-17T22:23:34.602294287Z 87 PC: 12b42 | Get or set file date and time
2018-12-17T22:23:34.605811558Z 62 PC: 12b45 | Close file
2018-12-17T22:23:34.621788658Z 67 PC: 12b50 | Get or set file attributes
2018-12-17T22:23:34.644917961Z 79 PC: 12b01 | Find next file
2018-12-17T22:23:34.649034099Z 67 PC: 12b0a | Get or set file attributes
2018-12-17T22:23:34.65666094Z 67 PC: 12b14 | Get or set file attributes
2018-12-17T22:23:34.667750351Z 61 PC: 12b18 | Open file (Filename = '')
2018-12-17T22:23:34.676109493Z 87 PC: 12b1d | Get or set file date and time
2018-12-17T22:23:34.678248769Z 63 PC: 12b28 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:23:34.685934996Z 66 PC: 12b37 | Move file pointer
2018-12-17T22:23:34.688222155Z 44 PC: 12a50 | Get time 0x12a50: cmp dl, 0
0x12a53: je 0x12a4c
0x12a55: mov byte ptr [0x10a], dl
0x12a59: call 0x12a6e
0x12a5c: pop bx
0x12a5d: mov cx, 0x14c
0x12a60: mov dx, 0x100
0x12a63: mov ah, 0x40
0x12a65: int3
0x12a66: inc byte ptr [0x24c]
0x12a6a: call 0x12a6e
0x12a6d: ret
0x12a6e: mov bx, 0x146
0x12a71: mov al, byte ptr [0x10a]
0x12a75: cmp al, 0
0x12a77: je 0x12a85
0x12a79: xor byte ptr [bx], al
0x12a7c: inc bx
0x12a7d: add al, bh
0x12a7f: cmp bx, 0x22d
2018-12-17T22:23:34.691682058Z 64 PC: 12a66 | Write file or device (Write 332 bytes on handle 5)
2018-12-17T22:23:34.695343806Z 87 PC: 12b42 | Get or set file date and time
2018-12-17T22:23:34.697525857Z 62 PC: 12b45 | Close file
2018-12-17T22:23:34.707183948Z 67 PC: 12b50 | Get or set file attributes
2018-12-17T22:23:34.719216636Z 59 PC: 12aed | Change current directory
2018-12-17T22:23:34.722620852Z 37 PC: 12af9 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')