Sample viewer

vx.netlux.org/Virus.DOS.SillyC.446

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:41:29.183378654Z 26 PC: 12c0f | Set disk transfer address
2018-12-17T22:41:29.184918465Z 78 PC: 12c1b | Find first file
2018-12-17T22:41:29.190895353Z 67 PC: 12c74 | Get or set file attributes
2018-12-17T22:41:29.196487525Z 67 PC: 12c7f | Get or set file attributes
2018-12-17T22:41:29.222288457Z 61 PC: 12c8e | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:41:29.22920869Z 87 PC: 12c9a | Get or set file date and time
2018-12-17T22:41:29.230907901Z 66 PC: 12cab | Move file pointer
2018-12-17T22:41:29.232991681Z 63 PC: 12cb7 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:41:29.23951303Z 66 PC: 12cc0 | Move file pointer
2018-12-17T22:41:29.241110956Z 64 PC: 12ccd | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:41:29.244444031Z 66 PC: 12cd9 | Move file pointer
2018-12-17T22:41:29.246333879Z 44 PC: 12cdd | Get time 0x12cdd: mov byte ptr [si - 0x13], dl
0x12ce0: mov cx, 0x43
0x12ce3: push si
0x12ce4: mov di, si
0x12ce6: add di, 0x191
0x12cea: mov dx, 0x14e
0x12ced: add si, dx
0x12cef: rep movsb byte ptr es:[di], byte ptr [si]
0x12cf1: pop si
0x12cf2: mov dx, word ptr [si - 0x13]
0x12cf5: mov ax, si
0x12cf7: add ax, 0x191
0x12cfa: jmp ax
0x12cfc: push si
0x12cfd: mov di, si
0x12cff: mov cx, 0x193
0x12d02: xor ax, ax
0x12d04: lodsb al, byte ptr [si]
0x12d05: xor al, ah
0x12d07: rol ah, 5
2018-12-17T22:41:29.248950366Z 64 PC: 12d60 | Write file or device (Write 449 bytes on handle 5)
2018-12-17T22:41:29.273568825Z 87 PC: 12d73 | Get or set file date and time
2018-12-17T22:41:29.275325492Z 62 PC: 12d77 | Close file
2018-12-17T22:41:29.28281815Z 2 PC: 12a49 | Character output (Char = '03')