Sample viewer

vx.netlux.org/Virus.DOS.Bomber

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:28:07.588626625Z 48 PC: 12ed9 | Get DOS version
2018-12-17T22:28:07.590001732Z 66 PC: 12ef2 | Move file pointer
2018-12-17T22:28:07.591812336Z 53 PC: 12a64 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:28:07.592963601Z 37 PC: 12a73 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:28:07.594030157Z 44 PC: 133be | Get time 0x133be: in al, 0x40
0x133c0: mov ah, al
0x133c2: in al, 0x40
0x133c4: xor ax, cx
0x133c6: xor dx, ax
0x133c8: jmp 0x133e5
0x133ca: push dx
0x133cb: push cx
0x133cc: push bx
0x133cd: mov ax, 0x3782
0x133d0: mov dx, 0xb8e3
0x133d3: mov cx, 7
0x133d6: shl ax, 1
0x133d8: rcl dx, 1
0x133da: mov bl, al
0x133dc: xor bl, dh
0x133de: jns 0x133e2
0x133e0: inc al
0x133e2: loop 0x133d6
0x133e4: pop bx
2018-12-17T22:28:07.595758823Z 73 PC: 12a82 | Release memory
2018-12-17T22:28:07.596806561Z 74 PC: 12a8b | Reallocate memory
2018-12-17T22:28:07.598587471Z 72 PC: 12b69 | Allocate memory
2018-12-17T22:28:07.626469231Z 67 PC: 12b69 | Get or set file attributes
2018-12-17T22:28:07.632906309Z 61 PC: 12b69 | Open file (Filename = '.�z')
2018-12-17T22:28:07.640018726Z 63 PC: 12b69 | Read file or device (Read 61184 bytes on handle 5)
2018-12-17T22:28:07.649625132Z 87 PC: 12b69 | Get or set file date and time
2018-12-17T22:28:07.672616518Z 66 PC: 12b69 | Move file pointer
2018-12-17T22:28:07.675238161Z 64 PC: 12b69 | Write file or device (Write 13312 bytes on handle 5)
2018-12-17T22:28:07.692039528Z 87 PC: 12b69 | Get or set file date and time
2018-12-17T22:28:07.694888806Z 62 PC: 12b69 | Close file
2018-12-17T22:28:07.704504682Z 73 PC: 12b69 | Release memory
2018-12-17T22:28:07.706629842Z 75 PC: 12a9f | Execute program
2018-12-17T22:28:07.732190759Z 48 PC: 1455e | Get DOS version
2018-12-17T22:28:07.733682453Z 61 PC: 14583 | Open file (Filename = '')
2018-12-17T22:28:07.741809146Z 87 PC: 1458d | Get or set file date and time
2018-12-17T22:28:07.744769674Z 64 PC: 145ae | Write file or device (Write 13312 bytes on handle 5)
2018-12-17T22:28:07.768351712Z 64 PC: 145b4 | Write file or device (Write 0 bytes on handle 5)
2018-12-17T22:28:07.776809088Z 87 PC: 145bb | Get or set file date and time
2018-12-17T22:28:07.779369961Z 62 PC: 145bf | Close file
2018-12-17T22:28:07.791884037Z 48 PC: 139a9 | Get DOS version
2018-12-17T22:28:07.796813845Z 61 PC: 139ce | Open file (Filename = '')
2018-12-17T22:28:07.812179871Z 87 PC: 139d8 | Get or set file date and time
2018-12-17T22:28:07.814072615Z 64 PC: 139f9 | Write file or device (Write 9216 bytes on handle 5)
2018-12-17T22:28:07.823666505Z 64 PC: 139ff | Write file or device (Write 0 bytes on handle 5)
2018-12-17T22:28:07.832820449Z 87 PC: 13a06 | Get or set file date and time
2018-12-17T22:28:07.83584742Z 62 PC: 13a0a | Close file
2018-12-17T22:28:07.846403227Z 77 PC: 12aa5 | Get program return code
2018-12-17T22:28:07.848221858Z 49 PC: 12aac | Terminate and stay resident (Return code = '0' | Memory size = '172')