Sample viewer

vx.netlux.org/Virus.DOS.Nuke.Howard.954

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:39:01.983039697Z 47 PC: 12a91 | Get disk transfer address
2018-12-17T22:39:01.986697296Z 26 PC: 12a9b | Set disk transfer address
2018-12-17T22:39:01.98992296Z 71 PC: 12b3e | Get current directory
2018-12-17T22:39:01.99740807Z 59 PC: 12b5d | Change current directory
2018-12-17T22:39:02.011960981Z 47 PC: 12bdb | Get disk transfer address
2018-12-17T22:39:02.018110018Z 26 PC: 12bee | Set disk transfer address
2018-12-17T22:39:02.019415223Z 78 PC: 12bf8 | Find first file
2018-12-17T22:39:02.026476192Z 47 PC: 12ccc | Get disk transfer address
2018-12-17T22:39:02.029199406Z 61 PC: 12ce5 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:39:02.036853605Z 63 PC: 12cf1 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:39:02.044327023Z 66 PC: 12d01 | Move file pointer
2018-12-17T22:39:02.046579338Z 62 PC: 12d06 | Close file
2018-12-17T22:39:02.049561501Z 67 PC: 12d28 | Get or set file attributes
2018-12-17T22:39:02.067790107Z 61 PC: 12d2f | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:39:02.07994047Z 64 PC: 12d3b | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:39:02.08482702Z 66 PC: 12d49 | Move file pointer
2018-12-17T22:39:02.086425219Z 64 PC: 12d56 | Write file or device (Write 954 bytes on handle 5)
2018-12-17T22:39:02.102000292Z 87 PC: 12d67 | Get or set file date and time
2018-12-17T22:39:02.105955914Z 62 PC: 12d6b | Close file
2018-12-17T22:39:02.12352302Z 67 PC: 12d7a | Get or set file attributes
2018-12-17T22:39:02.136807856Z 26 PC: 12c0e | Set disk transfer address
2018-12-17T22:39:02.140070379Z 59 PC: 12b76 | Change current directory
2018-12-17T22:39:02.144807628Z 71 PC: 12b3e | Get current directory
2018-12-17T22:39:02.148437605Z 59 PC: 12b5d | Change current directory
2018-12-17T22:39:02.151189514Z 47 PC: 12bdb | Get disk transfer address
2018-12-17T22:39:02.153451026Z 26 PC: 12bee | Set disk transfer address
2018-12-17T22:39:02.155174301Z 78 PC: 12bf8 | Find first file
2018-12-17T22:39:02.165161017Z 26 PC: 12c0e | Set disk transfer address
2018-12-17T22:39:02.168145445Z 59 PC: 12b76 | Change current directory
2018-12-17T22:39:02.180336314Z 44 PC: 12d8b | Get time 0x12d8b: mov al, ch
0x12d8d: cwde
0x12d8e: ret
0x12d8f: and byte ptr [bx + di], dh
0x12d91: xor dh, byte ptr [bp + di]
0x12d93: xor al, 0x35
0x12d95: aaa
0x12d97: cmp byte ptr [bx + di], bh
0x12d99: xor byte ptr [bx + di], ah
0x12d9b: inc ax
0x12d9c: and sp, word ptr [si]
0x12d9e: and ax, 0x265e
0x12da1: sub ch, byte ptr [bx + si]
0x12da3: sub word ptr [bx + di + 0x73], sp
0x12da6: arpl word ptr [bx + di + 0x69], bp
0x12da9: and byte ptr [bx + si], ah
0x12dab: sub byte ptr [bp + di + 0x29], ah
0x12dae: and byte ptr [bp + si + 0x61], al
0x12db1: and byte ptr [bp + si + 0x61], al
0x12db4: and byte ptr [bp + di + 0x74], dl
2018-12-17T22:39:02.183112198Z 26 PC: 12af7 | Set disk transfer address