Sample viewer

vx.netlux.org/Virus.DOS.Leprosy.350

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:57:22.344685284Z 44 PC: 12aa7 | Get time 0x12aa7: jmp 0x12aaf
0x12aa9: nop
0x12aaa: cmp dh, 0xf
0x12aad: jg 0x12ab8
0x12aaf: cmp dl, 0
0x12ab2: je 0x12aa3
0x12ab4: mov byte ptr [0x103], dl
0x12ab8: mov byte ptr [0x158], 0
0x12abd: mov byte ptr [0x159], 4
0x12ac2: mov byte ptr [0x162], 0
0x12ac7: mov cx, 0x27
0x12aca: mov dx, 0x13b
0x12acd: mov ah, 0x4e
0x12acf: int 0x21
0x12ad1: cmp ax, 0x12
0x12ad4: je 0x12ad9
0x12ad6: call 0x12ae9
0x12ad9: mov dx, 0x141
0x12adc: mov ah, 0x3b
0x12ade: int 0x21
2018-12-17T21:57:22.348445224Z 78 PC: 12ad1 | Find first file
2018-12-17T21:57:22.354285529Z 67 PC: 12b0a | Get or set file attributes
2018-12-17T21:57:22.369673664Z 61 PC: 12b10 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:57:22.376274403Z 63 PC: 12b1f | Read file or device (Read 20 bytes on handle 5)
2018-12-17T21:57:22.398050857Z 62 PC: 12b53 | Close file
2018-12-17T21:57:22.39977573Z 61 PC: 12b5c | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:57:22.407284225Z 64 PC: 12a75 | Write file or device (Write 350 bytes on handle 5)
2018-12-17T21:57:22.410704363Z 87 PC: 12b84 | Get or set file date and time
2018-12-17T21:57:22.412143643Z 62 PC: 12b8c | Close file
2018-12-17T21:57:22.420356009Z 67 PC: 12b99 | Get or set file attributes
2018-12-17T21:57:22.428479963Z 79 PC: 12b43 | Find next file
2018-12-17T21:57:22.431431769Z 67 PC: 12b0a | Get or set file attributes
2018-12-17T21:57:22.442704839Z 61 PC: 12b10 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:57:22.45105218Z 63 PC: 12b1f | Read file or device (Read 20 bytes on handle 5)
2018-12-17T21:57:22.45726985Z 62 PC: 12b53 | Close file
2018-12-17T21:57:22.458865988Z 61 PC: 12b5c | Open file (Filename = 'PRINT.COM')
2018-12-17T21:57:22.466689383Z 64 PC: 12a75 | Write file or device (Write 350 bytes on handle 5)
2018-12-17T21:57:22.470726982Z 87 PC: 12b84 | Get or set file date and time
2018-12-17T21:57:22.472551475Z 62 PC: 12b8c | Close file
2018-12-17T21:57:22.482682303Z 67 PC: 12b99 | Get or set file attributes
2018-12-17T21:57:22.487331132Z 79 PC: 12b43 | Find next file
2018-12-17T21:57:22.489798401Z 67 PC: 12b0a | Get or set file attributes
2018-12-17T21:57:22.513185327Z 61 PC: 12b10 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:57:22.51965385Z 63 PC: 12b1f | Read file or device (Read 20 bytes on handle 5)
2018-12-17T21:57:22.52647719Z 62 PC: 12b53 | Close file
2018-12-17T21:57:22.528495858Z 61 PC: 12b5c | Open file (Filename = 'HELLO.COM')
2018-12-17T21:57:22.53584907Z 64 PC: 12a75 | Write file or device (Write 350 bytes on handle 5)
2018-12-17T21:57:22.539654269Z 87 PC: 12b84 | Get or set file date and time
2018-12-17T21:57:22.541278858Z 62 PC: 12b8c | Close file
2018-12-17T21:57:22.548696263Z 67 PC: 12b99 | Get or set file attributes
2018-12-17T21:57:22.553319801Z 79 PC: 12b43 | Find next file
2018-12-17T21:57:22.555956153Z 67 PC: 12b0a | Get or set file attributes
2018-12-17T21:57:22.565781719Z 61 PC: 12b10 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:57:22.572595139Z 63 PC: 12b1f | Read file or device (Read 20 bytes on handle 5)
2018-12-17T21:57:22.57915338Z 62 PC: 12b53 | Close file
2018-12-17T21:57:22.582063114Z 61 PC: 12b5c | Open file (Filename = 'PHANG.COM')
2018-12-17T21:57:22.589484838Z 64 PC: 12a75 | Write file or device (Write 350 bytes on handle 5)
2018-12-17T21:57:22.592608362Z 87 PC: 12b84 | Get or set file date and time
2018-12-17T21:57:22.595742547Z 62 PC: 12b8c | Close file
2018-12-17T21:57:22.604061414Z 67 PC: 12b99 | Get or set file attributes
2018-12-17T21:57:22.608672211Z 76 PC: 12b9e | Terminate with return code (Return code = '5')