Sample viewer

vx.netlux.org/Virus.DOS.Beda.3233

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:24:09.595081411Z 42 PC: 1fb12 | Get date 0x1fb12: mov al, dh
0x1fb14: mov cl, 0x1e
0x1fb16: mul cl
0x1fb18: xor dh, dh
0x1fb1a: add ax, dx
0x1fb1c: mov word ptr [0xd33], ax
0x1fb1f: mov ax, 0xbeda
0x1fb22: int 0x21
0x1fb24: cmp ax, 0xc0fe
0x1fb27: jne 0x1fb2c
0x1fb29: jmp 0x1fbb3
0x1fb2c: mov ah, 0x52
0x1fb2e: int 0x21
0x1fb30: mov ax, word ptr es:[bx - 2]
0x1fb34: mov es, ax
0x1fb36: xor bx, bx
0x1fb38: cmp byte ptr es:[bx], 0x5a
0x1fb3c: je 0x1fb45
0x1fb3e: add ax, word ptr es:[bx + 3]
0x1fb42: inc ax
2018-12-17T22:24:09.597405144Z 190 PC: 1fb24 | UNKNOWN!
2018-12-17T22:24:09.598200674Z 82 PC: 1fb30 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:24:09.599645008Z 53 PC: 1fb63 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:24:09.601415109Z 53 PC: 1fb86 | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:24:09.602732442Z 37 PC: 1fbaa | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:24:09.604550857Z 37 PC: 1fbb2 | Set interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:24:09.624663611Z 48 PC: 12a4c | Get DOS version
2018-12-17T22:24:09.626391633Z 53 PC: 12b7c | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:24:09.627625944Z 53 PC: 12b89 | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:24:09.632037783Z 53 PC: 12b96 | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:24:09.633572374Z 53 PC: 12ba3 | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:24:09.641119804Z 37 PC: 12bb7 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:24:09.643662818Z 74 PC: 12acf | Reallocate memory
2018-12-17T22:24:09.64590862Z 68 PC: 16284 | I/O control for devices (Set for = '��$')
2018-12-17T22:24:09.648101236Z 74 PC: 16a66 | Reallocate memory
2018-12-17T22:24:09.650832453Z 74 PC: 16a66 | Reallocate memory
2018-12-17T22:24:09.652636796Z 68 PC: 16284 | I/O control for devices (Set for = 'Turbo C++ - Copyright 1990 Borland Intl.')
2018-12-17T22:24:09.657096357Z 43 PC: 2df53 | Set date
2018-12-17T22:24:09.660416374Z 74 PC: 16a66 | Reallocate memory
2018-12-17T22:24:09.66446986Z 51 PC: 1463a | Get or set Ctrl-Break
2018-12-17T22:24:09.665935909Z 25 PC: 15a17 | Get default drive
2018-12-17T22:24:09.670452176Z 25 PC: 15a17 | Get default drive
2018-12-17T22:24:09.672072039Z 71 PC: 15f88 | Get current directory
2018-12-17T22:24:09.677939463Z 37 PC: 1609c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:24:09.688367269Z 14 PC: 15a23 | Set default drive (Drive = 'A')
2018-12-17T22:24:09.689776728Z 59 PC: 15a06 | Change current directory
2018-12-17T22:24:09.693858705Z 25 PC: 15a17 | Get default drive
2018-12-17T22:24:09.703920353Z 71 PC: 15f88 | Get current directory
2018-12-17T22:24:09.707948201Z 47 PC: 15d06 | Get disk transfer address
2018-12-17T22:24:09.709587092Z 26 PC: 15d0f | Set disk transfer address
2018-12-17T22:24:09.711974082Z 78 PC: 9f06c | Find first file
2018-12-17T22:24:09.729920562Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.731526786Z 26 PC: 15d21 | Set disk transfer address
2018-12-17T22:24:09.735658395Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.73762768Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.738748261Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.745278533Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.746877696Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.748333605Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.750388375Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.75150367Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.754051927Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.756032836Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.758643825Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.760076043Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.76524526Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.768162687Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.769725235Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.771478129Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.773537634Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.775642921Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.778441298Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.780525136Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.781963244Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.783362207Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.785620442Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.788367151Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.789871667Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.792221097Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.79365833Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.794989164Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.79863876Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.800125858Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.801556769Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.803695316Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.805351114Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.808065459Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.810290129Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.812356504Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.813710332Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.815752569Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.818757577Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.820246199Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.822338081Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.823860031Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.825204464Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.827913928Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.829622798Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.831092638Z 47 PC: 15d06 | Get disk transfer address
2018-12-17T22:24:09.832657882Z 26 PC: 15d0f | Set disk transfer address
2018-12-17T22:24:09.834212445Z 78 PC: 9f06c | Find first file
2018-12-17T22:24:09.840317961Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.84199447Z 26 PC: 15d21 | Set disk transfer address
2018-12-17T22:24:09.844818559Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.84617054Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.847502437Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.850665039Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.852002076Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.854055579Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.855568999Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.856622956Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.86069116Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.862786544Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.865029212Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.866405404Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.868247317Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.87103542Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.872571225Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.875814798Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.877221527Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.878572921Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.88231483Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.883841011Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.886158793Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.888482537Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.889858823Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.892634316Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.895309013Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.897901312Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.899297371Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.901386258Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.904407188Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.90595353Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.908961543Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.910654571Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.912016642Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.915498829Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.917303087Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.919586256Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.921204363Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.923317081Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.926096585Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.927641822Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.930851165Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:24:09.932253903Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:24:09.933514064Z 79 PC: 9f06c | Find next file
2018-12-17T22:24:09.936102959Z 47 PC: 9f074 | Get disk transfer address
2018-12-17T22:24:09.937643982Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:24:09.939303634Z 14 PC: 15a23 | Set default drive (Drive = 'A')
2018-12-17T22:24:09.941269222Z 59 PC: 15a06 | Change current directory
2018-12-17T22:24:09.95028175Z 74 PC: 16a66 | Reallocate memory
2018-12-17T22:24:09.964715999Z 74 PC: 16a66 | Reallocate memory