Sample viewer

vx.netlux.org/Virus.DOS.Beda.1724

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:43:58.285594806Z 42 PC: 1fae0 | Get date 0x1fae0: mov al, dh
0x1fae2: mov cl, 0x1e
0x1fae4: mul cl
0x1fae6: xor dh, dh
0x1fae8: add ax, dx
0x1faea: mov word ptr [0x77e], ax
0x1faed: mov ax, 0xbeda
0x1faf0: int 0x21
0x1faf2: cmp ax, 0xc0fe
0x1faf5: jne 0x1fafa
0x1faf7: jmp 0x1fb81
0x1fafa: mov ah, 0x52
0x1fafc: int 0x21
0x1fafe: mov ax, word ptr es:[bx - 2]
0x1fb02: mov es, ax
0x1fb04: xor bx, bx
0x1fb06: cmp byte ptr es:[bx], 0x5a
0x1fb0a: je 0x1fb13
0x1fb0c: add ax, word ptr es:[bx + 3]
0x1fb10: inc ax
2018-12-17T22:43:58.289304523Z 190 PC: 1faf2 | UNKNOWN!
2018-12-17T22:43:58.290414719Z 82 PC: 1fafe | Get DOS internal pointers (SYSVARS)
2018-12-17T22:43:58.29208743Z 53 PC: 1fb31 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:43:58.294193887Z 53 PC: 1fb54 | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:43:58.296738846Z 37 PC: 1fb78 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:43:58.298617946Z 37 PC: 1fb80 | Set interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:43:58.310469765Z 48 PC: 12a4c | Get DOS version
2018-12-17T22:43:58.312766108Z 53 PC: 12b7c | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:43:58.314621473Z 53 PC: 12b89 | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:43:58.316806777Z 53 PC: 12b96 | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:43:58.319618949Z 53 PC: 12ba3 | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:43:58.321684088Z 37 PC: 12bb7 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:43:58.32369275Z 74 PC: 12acf | Reallocate memory
2018-12-17T22:43:58.329426759Z 68 PC: 16284 | I/O control for devices (Set for = '��$')
2018-12-17T22:43:58.333129384Z 74 PC: 16a66 | Reallocate memory
2018-12-17T22:43:58.335702296Z 74 PC: 16a66 | Reallocate memory
2018-12-17T22:43:58.339279485Z 68 PC: 16284 | I/O control for devices (Set for = 'Turbo C++ - Copyright 1990 Borland Intl.')
2018-12-17T22:43:58.344554432Z 43 PC: 2df53 | Set date
2018-12-17T22:43:58.347477752Z 74 PC: 16a66 | Reallocate memory
2018-12-17T22:43:58.353985375Z 51 PC: 1463a | Get or set Ctrl-Break
2018-12-17T22:43:58.355556225Z 25 PC: 15a17 | Get default drive
2018-12-17T22:43:58.357297235Z 25 PC: 15a17 | Get default drive
2018-12-17T22:43:58.359825093Z 71 PC: 15f88 | Get current directory
2018-12-17T22:43:58.365632159Z 37 PC: 1609c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:43:58.380716611Z 14 PC: 15a23 | Set default drive (Drive = 'A')
2018-12-17T22:43:58.384802124Z 59 PC: 15a06 | Change current directory
2018-12-17T22:43:58.390232172Z 25 PC: 15a17 | Get default drive
2018-12-17T22:43:58.392361982Z 71 PC: 15f88 | Get current directory
2018-12-17T22:43:58.399007003Z 47 PC: 15d06 | Get disk transfer address
2018-12-17T22:43:58.401803726Z 26 PC: 15d0f | Set disk transfer address
2018-12-17T22:43:58.403344329Z 78 PC: 9f477 | Find first file
2018-12-17T22:43:58.411037407Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.424838679Z 26 PC: 15d21 | Set disk transfer address
2018-12-17T22:43:58.426679736Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.428569816Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.431193083Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.435283055Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.437269275Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.4398543Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.442244199Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.443894589Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.452271933Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.453957208Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.455791222Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.457821125Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.459831471Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.462928207Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.464840068Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.46769515Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.469457531Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.471190024Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.476116707Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.478100813Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.479981766Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.489191304Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.490896777Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.493930324Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.496643399Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.49832643Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.499964968Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.502313128Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.505654564Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.507621378Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.510376383Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.511911566Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.513293391Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.520310701Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.521945742Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.523948222Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.537917759Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.539355389Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.542338593Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.544993288Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.54789053Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.549707874Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.552529112Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.556127801Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.558069968Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.56024827Z 47 PC: 15d06 | Get disk transfer address
2018-12-17T22:43:58.562683113Z 26 PC: 15d0f | Set disk transfer address
2018-12-17T22:43:58.564483935Z 78 PC: 9f477 | Find first file
2018-12-17T22:43:58.571682325Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.57402765Z 26 PC: 15d21 | Set disk transfer address
2018-12-17T22:43:58.576521213Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.578165531Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.581312201Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.587224976Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.589905992Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.592178991Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.593418178Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.594754638Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.598776913Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.600102242Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.602030534Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.604885856Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.606057537Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.608442456Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.610325032Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.612291936Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.613663041Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.615812598Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.618723025Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.62032828Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.623352029Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.62466269Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.62622795Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.630669322Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.632258366Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.635179643Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.647427667Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.658671895Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.661824667Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.679996867Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.682524254Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.684211843Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.687172454Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.690633975Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.692493498Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.696065697Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.697772823Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.699407373Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.703483368Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.705314958Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.708784575Z 47 PC: 15d38 | Get disk transfer address
2018-12-17T22:43:58.71081073Z 26 PC: 15d41 | Set disk transfer address
2018-12-17T22:43:58.712525461Z 79 PC: 9f477 | Find next file
2018-12-17T22:43:58.719844648Z 47 PC: 9f47f | Get disk transfer address
2018-12-17T22:43:58.722095786Z 26 PC: 15d4d | Set disk transfer address
2018-12-17T22:43:58.737326432Z 14 PC: 15a23 | Set default drive (Drive = 'A')
2018-12-17T22:43:58.754504735Z 59 PC: 15a06 | Change current directory
2018-12-17T22:43:58.764877907Z 74 PC: 16a66 | Reallocate memory
2018-12-17T22:43:58.771986168Z 74 PC: 16a66 | Reallocate memory