Sample viewer

vx.netlux.org/Virus.DOS.Made.256

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:28:05.077551216Z 44 PC: 12a8e | Get time 0x12a8e: cmp dh, 0xf
0x12a91: jle 0x12aa1
0x12a93: cmp dl, 0
0x12a96: je 0x12a8a
0x12a98: cmp dh, 0
0x12a9b: je 0x12a8a
0x12a9d: mov word ptr [si + 0x117], dx
0x12aa1: mov bp, word ptr [si + 0x1fd]
0x12aa5: add bp, 0x103
0x12aa9: mov ah, 0x1a
0x12aab: lea dx, word ptr [si + 0x20b]
0x12aaf: int 0x21
0x12ab1: lea dx, word ptr [si + 0x1ff]
0x12ab5: xor cx, cx
0x12ab7: mov ah, 0x4e
0x12ab9: int 0x21
0x12abb: jb 0x12b27
0x12abd: mov ax, 0x3d02
0x12ac0: lea dx, word ptr [si + 0x229]
0x12ac4: int 0x21
2018-12-17T22:28:05.081359955Z 26 PC: 12ab1 | Set disk transfer address
2018-12-17T22:28:05.083335426Z 78 PC: 12abb | Find first file
2018-12-17T22:28:05.089235772Z 61 PC: 12ac6 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:28:05.095837502Z 63 PC: 12b2d | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:28:05.103781465Z 79 PC: 12abb | Find next file
2018-12-17T22:28:05.106704132Z 61 PC: 12ac6 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:28:05.120732137Z 63 PC: 12b2d | Read file or device (Read 3 bytes on handle 6)
2018-12-17T22:28:05.134990136Z 79 PC: 12abb | Find next file
2018-12-17T22:28:05.138648968Z 61 PC: 12ac6 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:28:05.146163517Z 63 PC: 12b2d | Read file or device (Read 3 bytes on handle 7)
2018-12-17T22:28:05.153471521Z 79 PC: 12abb | Find next file
2018-12-17T22:28:05.156346311Z 61 PC: 12ac6 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:28:05.163067154Z 63 PC: 12b2d | Read file or device (Read 3 bytes on handle 8)
2018-12-17T22:28:05.170460132Z 79 PC: 12abb | Find next file
2018-12-17T22:28:05.173219686Z 61 PC: 12ac6 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:28:05.180170824Z 63 PC: 12b2d | Read file or device (Read 3 bytes on handle 9)
2018-12-17T22:28:05.186834649Z 79 PC: 12abb | Find next file
2018-12-17T22:28:05.190420551Z 61 PC: 12ac6 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:28:05.19760308Z 63 PC: 12b2d | Read file or device (Read 3 bytes on handle 10)
2018-12-17T22:28:05.204106968Z 79 PC: 12abb | Find next file
2018-12-17T22:28:05.207123451Z 61 PC: 12ac6 | Open file (Filename = 'PAH.COM')
2018-12-17T22:28:05.214308956Z 63 PC: 12b2d | Read file or device (Read 3 bytes on handle 11)
2018-12-17T22:28:05.220749035Z 79 PC: 12abb | Find next file
2018-12-17T22:28:05.224143131Z 61 PC: 12ac6 | Open file (Filename = 'TEST.COM')
2018-12-17T22:28:05.230905736Z 63 PC: 12b2d | Read file or device (Read 3 bytes on handle 12)
2018-12-17T22:28:05.233855462Z 66 PC: 12aeb | Move file pointer
2018-12-17T22:28:05.236402868Z 63 PC: 12b2d | Read file or device (Read 2 bytes on handle 12)
2018-12-17T22:28:05.239157791Z 79 PC: 12abb | Find next file