Sample viewer

vx.netlux.org/Virus.DOS.SillyWilly.2256

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:32:59.672411867Z 51 PC: 186ab | Get or set Ctrl-Break
2018-12-17T22:32:59.67379683Z 42 PC: 18ea2 | Get date 0x18ea2: cmp cx, 0x7bc
0x18ea6: jb 0x18eb1
0x18ea8: cmp cx, 0x7c8
0x18eac: ja 0x18eb1
0x18eae: jmp 0x18eb4
0x18eb0: nop
0x18eb1: jmp 0x18ee8
0x18eb3: nop
0x18eb4: mov dl, 3
0x18eb6: mov ah, 0x1c
0x18eb8: int 0x21
0x18eba: push cs
0x18ebb: pop ds
0x18ebc: cmp al, 0xff
0x18ebe: je 0x18ee8
0x18ec0: call 0x28912
0x18ec3: cmp al, 0
0x18ec5: jne 0x18e68
0x18ec7: jmp 0x18ed1
0x18ec9: nop
2018-12-17T22:32:59.677446961Z 99 PC: 139fd | Get DBCS lead byte table pointer
2018-12-17T22:32:59.67874937Z 68 PC: 13a17 | I/O control for devices (Set for = '')
2018-12-17T22:32:59.681833054Z 68 PC: 13a22 | I/O control for devices (Set for = '')
2018-12-17T22:32:59.683486816Z 68 PC: 13a2d | I/O control for devices (Set for = '')
2018-12-17T22:32:59.684830353Z 68 PC: 13a35 | I/O control for devices (Set for = '��b���g�t�S3����[r�2��W�<t�<u�6�u����>��>W')
2018-12-17T22:32:59.694779201Z 48 PC: 13a3a | Get DOS version
2018-12-17T22:32:59.696650121Z 64 PC: 13cbc | Write file or device (Write 23 bytes on handle 2)
2018-12-17T22:32:59.701849137Z 0 PC: 14bf1 | Program terminate