Sample viewer

vx.netlux.org/Virus.DOS.Deicide.Comment.2405

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:30:27.990262381Z 26 PC: 12a63 | Set disk transfer address
2018-12-17T22:30:27.992828793Z 78 PC: 12a6e | Find first file
2018-12-17T22:30:27.999002925Z 79 PC: 12aad | Find next file
2018-12-17T22:30:28.001519766Z 79 PC: 12aad | Find next file
2018-12-17T22:30:28.004633629Z 79 PC: 12aad | Find next file
2018-12-17T22:30:28.007363741Z 79 PC: 12aad | Find next file
2018-12-17T22:30:28.010047732Z 79 PC: 12aad | Find next file
2018-12-17T22:30:28.013946924Z 79 PC: 12aad | Find next file
2018-12-17T22:30:28.016662046Z 79 PC: 12aad | Find next file
2018-12-17T22:30:28.019401876Z 61 PC: 12a8d | Open file (Filename = 'TEST.COM')
2018-12-17T22:30:28.026334362Z 63 PC: 12a9c | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:30:28.028977417Z 62 PC: 12aa0 | Close file
2018-12-17T22:30:28.030706463Z 79 PC: 12aad | Find next file
2018-12-17T22:30:28.035189322Z 26 PC: 12b3e | Set disk transfer address
2018-12-17T22:30:28.036398154Z 44 PC: 12b42 | Get time 0x12b42: xor dl, dl
0x12b44: xchg dl, dh
0x12b46: add dx, dx
0x12b48: add dx, 0x21a
0x12b4c: mov si, dx
0x12b4e: mov dx, word ptr cs:[si]
0x12b51: mov ah, 9
0x12b53: int 0x21
0x12b55: jmp word ptr cs:[0xa2b]
0x12b5a: xchg ax, dx
0x12b5b: add ch, byte ptr [bp + di - 0x33fe]
0x12b5f: add ch, dl
0x12b61: add al, byte ptr [bx + di]
0x12b63: add sp, word ptr [bp + si]
0x12b65: add ax, word ptr [bp + 3]
0x12b68: insw word ptr es:[di], dx
0x12b69: add dx, word ptr [bp + di - 0x3ffd]
0x12b6d: add bx, bp
0x12b6f: add di, cx
0x12b71: add bx, word ptr [di]
2018-12-17T22:30:28.038555377Z 9 PC: 12b55 | Display string (String= ' See the sunny side of life ')