Sample viewer

vx.netlux.org/Virus.DOS.Vbasic.g

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:30:41.543848745Z 51 PC: 151df | Get or set Ctrl-Break
2018-12-17T22:30:41.546052383Z 46 PC: 151e6 | Set verify flag
2018-12-17T22:30:41.547372923Z 53 PC: 151eb | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:30:41.548387679Z 37 PC: 151fb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:30:41.549916035Z 44 PC: 152e3 | Get time 0x152e3: mov bp, sp
0x152e5: mov bp, word ptr [bp + 8]
0x152e8: mov word ptr [bp], ax
0x152eb: mov word ptr [bp + 2], bx
0x152ee: mov word ptr [bp + 4], cx
0x152f1: mov word ptr [bp + 6], dx
0x152f4: mov word ptr [bp + 8], si
0x152f7: mov word ptr [bp + 0xa], di
0x152fa: pushf
0x152fb: pop ax
0x152fc: and ax, 1
0x152ff: mov word ptr [bp + 0xc], ax
0x15302: cld
0x15303: pop di
0x15304: pop si
0x15305: pop bp
0x15306: ret
0x15307: add byte ptr [di - 0x75], dl
0x1530a: in al, dx
0x1530b: mov ax, 0x4200
2018-12-17T22:30:41.553508502Z 42 PC: 152e3 | Get date 0x152e3: mov bp, sp
0x152e5: mov bp, word ptr [bp + 8]
0x152e8: mov word ptr [bp], ax
0x152eb: mov word ptr [bp + 2], bx
0x152ee: mov word ptr [bp + 4], cx
0x152f1: mov word ptr [bp + 6], dx
0x152f4: mov word ptr [bp + 8], si
0x152f7: mov word ptr [bp + 0xa], di
0x152fa: pushf
0x152fb: pop ax
0x152fc: and ax, 1
0x152ff: mov word ptr [bp + 0xc], ax
0x15302: cld
0x15303: pop di
0x15304: pop si
0x15305: pop bp
0x15306: ret
0x15307: add byte ptr [di - 0x75], dl
0x1530a: in al, dx
0x1530b: mov ax, 0x4200
2018-12-17T22:30:41.556192097Z 25 PC: 152e3 | Get default drive
2018-12-17T22:30:41.557587259Z 71 PC: 15393 | Get current directory
2018-12-17T22:30:41.560632001Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.564876429Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.568826866Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.571719128Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.574449721Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.578397939Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.585853242Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.586943073Z 78 PC: 153b9 | Find first file
2018-12-17T22:30:41.592912799Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.595234972Z 78 PC: 153b9 | Find first file
2018-12-17T22:30:41.602618356Z 61 PC: 15371 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:30:41.611407502Z 87 PC: 152e3 | Get or set file date and time
2018-12-17T22:30:41.61487007Z 66 PC: 15319 | Move file pointer
2018-12-17T22:30:41.616563867Z 63 PC: 1532e | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:30:41.62372304Z 62 PC: 15361 | Close file
2018-12-17T22:30:41.627324856Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.628301088Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.631234017Z 61 PC: 15371 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:30:41.640235682Z 87 PC: 152e3 | Get or set file date and time
2018-12-17T22:30:41.641940147Z 66 PC: 15319 | Move file pointer
2018-12-17T22:30:41.643444525Z 63 PC: 1532e | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:30:41.651417635Z 62 PC: 15361 | Close file
2018-12-17T22:30:41.653980225Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.655380301Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.659642619Z 61 PC: 15371 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:30:41.66453462Z 87 PC: 152e3 | Get or set file date and time
2018-12-17T22:30:41.66577534Z 66 PC: 15319 | Move file pointer
2018-12-17T22:30:41.668669374Z 63 PC: 1532e | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:30:41.674078778Z 62 PC: 15361 | Close file
2018-12-17T22:30:41.675621494Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.677614711Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.68086995Z 61 PC: 15371 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:30:41.687452993Z 87 PC: 152e3 | Get or set file date and time
2018-12-17T22:30:41.69029156Z 66 PC: 15319 | Move file pointer
2018-12-17T22:30:41.692127504Z 63 PC: 1532e | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:30:41.698801323Z 62 PC: 15361 | Close file
2018-12-17T22:30:41.701680909Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.703014191Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.70699826Z 61 PC: 15371 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:30:41.71405509Z 87 PC: 152e3 | Get or set file date and time
2018-12-17T22:30:41.715773261Z 66 PC: 15319 | Move file pointer
2018-12-17T22:30:41.717150872Z 63 PC: 1532e | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:30:41.724683899Z 62 PC: 15361 | Close file
2018-12-17T22:30:41.726885613Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.727974474Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.732340223Z 61 PC: 15371 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:30:41.738799821Z 87 PC: 152e3 | Get or set file date and time
2018-12-17T22:30:41.740287086Z 66 PC: 15319 | Move file pointer
2018-12-17T22:30:41.741603621Z 63 PC: 1532e | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:30:41.748770882Z 62 PC: 15361 | Close file
2018-12-17T22:30:41.750893576Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.752251445Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.756307854Z 61 PC: 15371 | Open file (Filename = 'PAH.COM')
2018-12-17T22:30:41.762957188Z 87 PC: 152e3 | Get or set file date and time
2018-12-17T22:30:41.765102055Z 66 PC: 15319 | Move file pointer
2018-12-17T22:30:41.767180298Z 63 PC: 1532e | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:30:41.77375459Z 62 PC: 15361 | Close file
2018-12-17T22:30:41.776405673Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.778075544Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.781229469Z 61 PC: 15371 | Open file (Filename = 'TEST.COM')
2018-12-17T22:30:41.788267153Z 87 PC: 152e3 | Get or set file date and time
2018-12-17T22:30:41.79100233Z 66 PC: 15319 | Move file pointer
2018-12-17T22:30:41.792483605Z 63 PC: 1532e | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:30:41.795254519Z 66 PC: 15319 | Move file pointer
2018-12-17T22:30:41.797831789Z 63 PC: 1532e | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:30:41.805265764Z 63 PC: 1532e | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:30:41.807966363Z 62 PC: 15361 | Close file
2018-12-17T22:30:41.810561794Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.811550056Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.813855634Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.815463269Z 78 PC: 153b9 | Find first file
2018-12-17T22:30:41.821237994Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.82233046Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.825347133Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.826334722Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.828735253Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.830459342Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.832818018Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.833749482Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.836961794Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.837909327Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.840658089Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.84244849Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.844847406Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.846793703Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.849928241Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.850813139Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.853856065Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.855669545Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.857952816Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.861904737Z 14 PC: 152e3 | Set default drive (Drive = 'C')
2018-12-17T22:30:41.864365107Z 25 PC: 152e3 | Get default drive
2018-12-17T22:30:41.865452508Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.86641471Z 78 PC: 153b9 | Find first file
2018-12-17T22:30:41.872259528Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.873244966Z 78 PC: 153b9 | Find first file
2018-12-17T22:30:41.879399918Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.894627697Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.897648858Z 71 PC: 15393 | Get current directory
2018-12-17T22:30:41.900547706Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.9137059Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.917579342Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.921412263Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.926080733Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.929909548Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.93371811Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.935430696Z 78 PC: 153b9 | Find first file
2018-12-17T22:30:41.941139042Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.942279866Z 78 PC: 153b9 | Find first file
2018-12-17T22:30:41.949787703Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.950903937Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.953307434Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.955370607Z 78 PC: 153b9 | Find first file
2018-12-17T22:30:41.960943341Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.962316331Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.966052881Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.96744636Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.970476391Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.972637843Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.975433913Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.976737507Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.980906316Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.982050717Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.984581175Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.986209669Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.991786499Z 26 PC: 153af | Set disk transfer address
2018-12-17T22:30:41.993088857Z 79 PC: 153b9 | Find next file
2018-12-17T22:30:41.99626227Z 59 PC: 1537d | Change current directory
2018-12-17T22:30:41.999804796Z 14 PC: 152e3 | Set default drive (Drive = 'F')
2018-12-17T22:30:42.001045538Z 25 PC: 152e3 | Get default drive
2018-12-17T22:30:42.00363084Z 14 PC: 152e3 | Set default drive (Drive = 'A')
2018-12-17T22:30:42.005375693Z 37 PC: 1520f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:30:42.006917992Z 26 PC: 1521d | Set disk transfer address
2018-12-17T22:30:42.009317678Z 9 PC: 12a51 | Display string (String= 'This is a sample! (10.000 bytes)')
2018-12-17T22:30:42.011841225Z 76 PC: 12a56 | Terminate with return code (Return code = '0')