Sample viewer

vx.netlux.org/Virus.DOS.Nuke.Howard.952

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:57:08.882343304Z 47 PC: 12a91 | Get disk transfer address
2018-12-17T21:57:08.884200582Z 26 PC: 12a9b | Set disk transfer address
2018-12-17T21:57:08.885254873Z 71 PC: 12b3c | Get current directory
2018-12-17T21:57:08.888073651Z 59 PC: 12b5b | Change current directory
2018-12-17T21:57:08.893581313Z 47 PC: 12bd9 | Get disk transfer address
2018-12-17T21:57:08.895175317Z 26 PC: 12bec | Set disk transfer address
2018-12-17T21:57:08.896217403Z 78 PC: 12bf6 | Find first file
2018-12-17T21:57:08.902164382Z 47 PC: 12cca | Get disk transfer address
2018-12-17T21:57:08.904470658Z 61 PC: 12ce3 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:57:08.914302077Z 63 PC: 12cef | Read file or device (Read 3 bytes on handle 5)
2018-12-17T21:57:08.918581138Z 66 PC: 12cff | Move file pointer
2018-12-17T21:57:08.920919759Z 62 PC: 12d04 | Close file
2018-12-17T21:57:08.9221849Z 67 PC: 12d26 | Get or set file attributes
2018-12-17T21:57:08.937527685Z 61 PC: 12d2d | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:57:08.945798796Z 64 PC: 12d39 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T21:57:08.952418766Z 66 PC: 12d47 | Move file pointer
2018-12-17T21:57:08.953712811Z 64 PC: 12d54 | Write file or device (Write 952 bytes on handle 5)
2018-12-17T21:57:08.963201837Z 87 PC: 12d65 | Get or set file date and time
2018-12-17T21:57:08.964919842Z 62 PC: 12d69 | Close file
2018-12-17T21:57:08.972615757Z 67 PC: 12d78 | Get or set file attributes
2018-12-17T21:57:08.989862152Z 26 PC: 12c0c | Set disk transfer address
2018-12-17T21:57:08.991573642Z 59 PC: 12b74 | Change current directory
2018-12-17T21:57:08.995444032Z 71 PC: 12b3c | Get current directory
2018-12-17T21:57:09.012086052Z 59 PC: 12b5b | Change current directory
2018-12-17T21:57:09.014290451Z 47 PC: 12bd9 | Get disk transfer address
2018-12-17T21:57:09.015468332Z 26 PC: 12bec | Set disk transfer address
2018-12-17T21:57:09.016561815Z 78 PC: 12bf6 | Find first file
2018-12-17T21:57:09.021890964Z 26 PC: 12c0c | Set disk transfer address
2018-12-17T21:57:09.023043069Z 59 PC: 12b74 | Change current directory
2018-12-17T21:57:09.026873269Z 44 PC: 12d89 | Get time 0x12d89: mov al, ch
0x12d8b: cwde
0x12d8c: ret
0x12d8d: and byte ptr [bx + di], dh
0x12d8f: xor dh, byte ptr [bp + di]
0x12d91: xor al, 0x35
0x12d93: aaa
0x12d95: cmp byte ptr [bx + di], bh
0x12d97: xor byte ptr [bx + di], ah
0x12d99: inc ax
0x12d9a: and sp, word ptr [si]
0x12d9c: and ax, 0x265e
0x12d9f: sub ch, byte ptr [bx + si]
0x12da1: sub word ptr [bx + di + 0x73], sp
0x12da4: arpl word ptr [bx + di + 0x69], bp
0x12da7: and byte ptr [bx + si], ah
0x12da9: sub byte ptr [bp + di + 0x29], ah
0x12dac: and byte ptr [bp + si + 0x61], al
0x12daf: and byte ptr [bp + si + 0x61], al
0x12db2: and byte ptr [bp + di + 0x74], dl
2018-12-17T21:57:09.030126768Z 26 PC: 12af5 | Set disk transfer address