Sample viewer

vx.netlux.org/Virus.DOS.Lauren.790

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:38:36.565754994Z 71 PC: 12a6e | Get current directory
2018-12-17T22:38:36.56943299Z 53 PC: 12a75 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:38:36.57205657Z 37 PC: 12a89 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:38:36.573457969Z 26 PC: 12ad9 | Set disk transfer address
2018-12-17T22:38:36.575814547Z 59 PC: 12ae3 | Change current directory
2018-12-17T22:38:36.582130531Z 78 PC: 12aef | Find first file
2018-12-17T22:38:36.588930155Z 59 PC: 12afb | Change current directory
2018-12-17T22:38:36.595469318Z 26 PC: 12ad9 | Set disk transfer address
2018-12-17T22:38:36.597821057Z 59 PC: 12ae3 | Change current directory
2018-12-17T22:38:36.61108294Z 79 PC: 12aef | Find next file
2018-12-17T22:38:36.614317601Z 59 PC: 12afb | Change current directory
2018-12-17T22:38:36.621486211Z 26 PC: 12ad9 | Set disk transfer address
2018-12-17T22:38:36.623108896Z 59 PC: 12ae3 | Change current directory
2018-12-17T22:38:36.627642603Z 79 PC: 12aef | Find next file
2018-12-17T22:38:36.63227155Z 59 PC: 12afb | Change current directory
2018-12-17T22:38:36.639737088Z 26 PC: 12ad9 | Set disk transfer address
2018-12-17T22:38:36.64120897Z 59 PC: 12ae3 | Change current directory
2018-12-17T22:38:36.646066457Z 79 PC: 12aef | Find next file
2018-12-17T22:38:36.649487049Z 59 PC: 12afb | Change current directory
2018-12-17T22:38:36.655721749Z 26 PC: 12ad9 | Set disk transfer address
2018-12-17T22:38:36.657117527Z 59 PC: 12ae3 | Change current directory
2018-12-17T22:38:36.662529488Z 79 PC: 12aef | Find next file
2018-12-17T22:38:36.665597736Z 59 PC: 12afb | Change current directory
2018-12-17T22:38:36.67252998Z 26 PC: 12ad9 | Set disk transfer address
2018-12-17T22:38:36.675314964Z 59 PC: 12ae3 | Change current directory
2018-12-17T22:38:36.680101287Z 79 PC: 12aef | Find next file
2018-12-17T22:38:36.683299159Z 59 PC: 12afb | Change current directory
2018-12-17T22:38:36.691354628Z 26 PC: 12ad9 | Set disk transfer address
2018-12-17T22:38:36.693143527Z 59 PC: 12ae3 | Change current directory
2018-12-17T22:38:36.697772053Z 79 PC: 12aef | Find next file
2018-12-17T22:38:36.721804268Z 59 PC: 12afb | Change current directory
2018-12-17T22:38:36.728763332Z 26 PC: 12ad9 | Set disk transfer address
2018-12-17T22:38:36.730686804Z 59 PC: 12ae3 | Change current directory
2018-12-17T22:38:36.740260602Z 79 PC: 12aef | Find next file
2018-12-17T22:38:36.744037264Z 59 PC: 12afb | Change current directory
2018-12-17T22:38:36.750147841Z 26 PC: 12ad9 | Set disk transfer address
2018-12-17T22:38:36.751412042Z 59 PC: 12ae3 | Change current directory
2018-12-17T22:38:36.757371794Z 79 PC: 12aef | Find next file
2018-12-17T22:38:36.760620852Z 59 PC: 12afb | Change current directory
2018-12-17T22:38:36.76722047Z 26 PC: 12ad9 | Set disk transfer address
2018-12-17T22:38:36.769521312Z 59 PC: 12ae3 | Change current directory
2018-12-17T22:38:36.774227314Z 79 PC: 12aef | Find next file
2018-12-17T22:38:36.777073644Z 37 PC: 12cec | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:38:36.780002349Z 59 PC: 12cfa | Change current directory
2018-12-17T22:38:36.784838446Z 26 PC: 12d03 | Set disk transfer address
2018-12-17T22:38:36.78650276Z 42 PC: 12d09 | Get date 0x12d09: nop
0x12d0a: cmp dx, 0x520
0x12d0e: jne 0x12d23
0x12d10: mov ax, 3
0x12d13: int 0x10
0x12d16: nop
0x12d17: mov ah, 9
0x12d19: lea dx, word ptr [bp + 0x2cd]
0x12d1d: int 0x21
0x12d20: nop
0x12d21: jmp 0x12d21
0x12d23: mov ax, 0x100
0x12d26: push ax
0x12d27: xor ax, ax
0x12d29: xor bx, bx
0x12d2b: xor cx, cx
0x12d2d: xor dx, dx
0x12d2f: xor di, di
0x12d31: xor si, si
0x12d33: xor bp, bp