Sample viewer

vx.netlux.org/Virus.DOS.Burger.560.bn

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:34:03.597177325Z 25 PC: 12b56 | Get default drive
2018-12-17T22:34:03.599325654Z 71 PC: 12b67 | Get current directory
2018-12-17T22:34:03.602197986Z 14 PC: 12b6d | Set default drive (Drive = 'A')
2018-12-17T22:34:03.603509552Z 14 PC: 12bc1 | Set default drive (Drive = 'A')
2018-12-17T22:34:03.604823387Z 59 PC: 12bc8 | Change current directory
2018-12-17T22:34:03.611539578Z 78 PC: 12c22 | Find first file
2018-12-17T22:34:03.616238791Z 23 PC: 12bd1 | Rename file
2018-12-17T22:34:03.61808819Z 59 PC: 12be2 | Change current directory
2018-12-17T22:34:03.623133898Z 23 PC: 12b8e | Rename file
2018-12-17T22:34:03.624673756Z 44 PC: 12b96 | Get time 0x12b96: mov bx, word ptr cs:[0x293]
0x12b9b: mov al, byte ptr cs:[bx]
0x12b9e: mov bx, dx
0x12ba0: mov cx, 2
0x12ba3: mov dh, 0
0x12ba5: int 0x26
0x12ba7: mov bx, word ptr cs:[0x293]
0x12bac: dec bx
0x12bad: mov word ptr cs:[0x293], bx
0x12bb2: mov dl, byte ptr cs:[bx]
0x12bb5: cmp dl, 0xff
0x12bb8: jne 0x12bbd
0x12bba: jmp 0x12caf
0x12bbd: mov ah, 0xe
0x12bbf: int 0x21
0x12bc1: mov ah, 0x3b
0x12bc3: mov dx, 0x2e8
0x12bc6: int 0x21
0x12bc8: jmp 0x12c18
0x12bca: mov ah, 0x17
2018-12-17T22:34:03.637654239Z 14 PC: 12cc3 | Set default drive (Drive = 'A')
2018-12-17T22:34:03.645074954Z 59 PC: 12cca | Change current directory
2018-12-17T22:34:03.652138978Z 0 PC: 12cba | Program terminate