Sample viewer

vx.netlux.org/Virus.DOS.Acurev.272

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:56:34.55854587Z 78 PC: 12acd | Find first file
2018-12-17T21:56:34.564696614Z 67 PC: 12acd | Get or set file attributes
2018-12-17T21:56:34.669002794Z 61 PC: 12acd | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:56:34.676286718Z 64 PC: 12acd | Write file or device (Write 23 bytes on handle 5)
2018-12-17T21:56:34.683915413Z 64 PC: 12acd | Write file or device (Write 249 bytes on handle 5)
2018-12-17T21:56:34.686893688Z 62 PC: 12acd | Close file
2018-12-17T21:56:34.694978148Z 79 PC: 12acd | Find next file
2018-12-17T21:56:34.699006733Z 67 PC: 12acd | Get or set file attributes
2018-12-17T21:56:34.709366853Z 61 PC: 12acd | Open file (Filename = 'PRINT.COM')
2018-12-17T21:56:34.717445836Z 64 PC: 12acd | Write file or device (Write 23 bytes on handle 5)
2018-12-17T21:56:34.724177069Z 64 PC: 12acd | Write file or device (Write 249 bytes on handle 5)
2018-12-17T21:56:34.727844632Z 62 PC: 12acd | Close file
2018-12-17T21:56:34.737558629Z 79 PC: 12acd | Find next file
2018-12-17T21:56:34.740654167Z 67 PC: 12acd | Get or set file attributes
2018-12-17T21:56:34.752030553Z 61 PC: 12acd | Open file (Filename = 'HELLO.COM')
2018-12-17T21:56:34.758568004Z 64 PC: 12acd | Write file or device (Write 23 bytes on handle 5)
2018-12-17T21:56:34.765128294Z 64 PC: 12acd | Write file or device (Write 249 bytes on handle 5)
2018-12-17T21:56:34.7685168Z 62 PC: 12acd | Close file
2018-12-17T21:56:34.778715881Z 79 PC: 12acd | Find next file
2018-12-17T21:56:34.781522472Z 67 PC: 12acd | Get or set file attributes
2018-12-17T21:56:34.791966145Z 61 PC: 12acd | Open file (Filename = 'PHANG.COM')
2018-12-17T21:56:34.79858278Z 64 PC: 12acd | Write file or device (Write 23 bytes on handle 5)
2018-12-17T21:56:34.805274018Z 64 PC: 12acd | Write file or device (Write 249 bytes on handle 5)
2018-12-17T21:56:34.808533937Z 62 PC: 12acd | Close file
2018-12-17T21:56:34.816317866Z 79 PC: 12acd | Find next file
2018-12-17T21:56:34.818857088Z 67 PC: 12acd | Get or set file attributes
2018-12-17T21:56:34.831748089Z 61 PC: 12acd | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:56:34.838308544Z 64 PC: 12acd | Write file or device (Write 23 bytes on handle 5)
2018-12-17T21:56:34.844752845Z 64 PC: 12acd | Write file or device (Write 249 bytes on handle 5)
2018-12-17T21:56:34.849641263Z 62 PC: 12acd | Close file
2018-12-17T21:56:34.857751Z 79 PC: 12acd | Find next file
2018-12-17T21:56:34.860674166Z 67 PC: 12acd | Get or set file attributes
2018-12-17T21:56:34.874058067Z 61 PC: 12acd | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:56:34.880793707Z 64 PC: 12acd | Write file or device (Write 23 bytes on handle 5)
2018-12-17T21:56:34.887107527Z 64 PC: 12acd | Write file or device (Write 249 bytes on handle 5)
2018-12-17T21:56:34.890415872Z 62 PC: 12acd | Close file
2018-12-17T21:56:34.897892998Z 79 PC: 12acd | Find next file
2018-12-17T21:56:34.900626119Z 67 PC: 12acd | Get or set file attributes
2018-12-17T21:56:34.911007106Z 61 PC: 12acd | Open file (Filename = 'PAH.COM')
2018-12-17T21:56:34.922404318Z 64 PC: 12acd | Write file or device (Write 23 bytes on handle 5)
2018-12-17T21:56:34.927746388Z 64 PC: 12acd | Write file or device (Write 249 bytes on handle 5)
2018-12-17T21:56:34.930160503Z 62 PC: 12acd | Close file
2018-12-17T21:56:34.935448087Z 79 PC: 12acd | Find next file
2018-12-17T21:56:34.938104042Z 67 PC: 12acd | Get or set file attributes
2018-12-17T21:56:34.948453Z 61 PC: 12acd | Open file (Filename = 'TEST.COM')
2018-12-17T21:56:34.955207077Z 64 PC: 12acd | Write file or device (Write 23 bytes on handle 5)
2018-12-17T21:56:34.961824604Z 64 PC: 12acd | Write file or device (Write 249 bytes on handle 5)
2018-12-17T21:56:34.965054531Z 62 PC: 12acd | Close file
2018-12-17T21:56:34.972792513Z 79 PC: 12acd | Find next file
2018-12-17T21:56:34.975362242Z 59 PC: 12acd | Change current directory
2018-12-17T21:56:34.987070349Z 42 PC: 12acd | Get date 0x12acd: ret
0x12ace: or cl, byte ptr [di]
0x12ad0: and byte ptr [bx + si], ah
0x12ad2: and byte ptr [bx + si], ah
0x12ad4: and byte ptr [bx + si + 0x61], cl
0x12ad7: jo 0x12b49
0x12ad9: jns 0x12afb
0x12adb: inc dx
0x12adc: imul si, word ptr [bp + si + 0x74], 0x6468
0x12ae1: popaw
0x12ae2: jns 0x12b04
0x12ae4: inc bx
0x12ae5: push 0x6972
0x12ae8: jae 0x12b5e
0x12aea: imul bp, word ptr [bp + 0x65], 0x4d20
0x12aef: outsw dx, word ptr [si]
0x12af0: outsw dx, word ptr [si]
0x12af1: jb 0x12b58
0x12af3: and byte ptr [bp + si], ch
0x12af5: imul bp, word ptr [bx + di + 0x73], 0x73