Sample viewer

vx.netlux.org/Virus.DOS.Inaw.4122

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:44:27.33515383Z 224 PC: 13c71 | UNKNOWN!
2018-12-17T22:44:27.338084737Z 74 PC: 12ad1 | Reallocate memory
2018-12-17T22:44:27.340341245Z 42 PC: 12ad5 | Get date 0x12ad5: mov byte ptr cs:[0xe90], 0
0x12adb: nop
0x12adc: cmp cx, 0x7ce
0x12ae0: jle 0x12b0a
0x12ae2: mov byte ptr cs:[0xe90], 1
0x12ae8: nop
0x12ae9: mov byte ptr cs:[0xe9b], al
0x12aed: mov byte ptr cs:[0xe9a], dl
0x12af2: mov byte ptr cs:[0xe9c], dh
0x12af7: mov ah, 0x2c
0x12af9: int 0x21
0x12afb: mov byte ptr cs:[0xe9d], ch
0x12b00: mov byte ptr cs:[0xe9e], cl
0x12b05: mov byte ptr cs:[0xe9f], dh
0x12b0a: mov byte ptr cs:[0xe91], 0
0x12b10: nop
0x12b11: mov ax, 0x1500
0x12b14: xor bx, bx
0x12b16: int 0x2f
0x12b18: cmp bx, 0
2018-12-17T22:44:27.342690984Z 44 PC: 12afb | Get time 0x12afb: mov byte ptr cs:[0xe9d], ch
0x12b00: mov byte ptr cs:[0xe9e], cl
0x12b05: mov byte ptr cs:[0xe9f], dh
0x12b0a: mov byte ptr cs:[0xe91], 0
0x12b10: nop
0x12b11: mov ax, 0x1500
0x12b14: xor bx, bx
0x12b16: int 0x2f
0x12b18: cmp bx, 0
0x12b1b: je 0x12b2e
0x12b1d: mov byte ptr cs:[0xe91], 1
0x12b23: nop
0x12b24: mov word ptr cs:[0xe92], cx
0x12b29: mov word ptr cs:[0xf40], cs
0x12b2e: mov word ptr cs:[0xe72], 0
0x12b35: mov word ptr cs:[0xe38], 0
0x12b3c: mov ax, 0
0x12b3f: mov es, ax
0x12b41: mov al, byte ptr es:[0x46c]
0x12b45: mov byte ptr cs:[0xe99], al
2018-12-17T22:44:27.345505003Z 48 PC: 12b54 | Get DOS version
2018-12-17T22:44:27.347875993Z 73 PC: 12be9 | Release memory
2018-12-17T22:44:27.349731041Z 47 PC: 12d3d | Get disk transfer address
2018-12-17T22:44:27.351109706Z 26 PC: 12d55 | Set disk transfer address
2018-12-17T22:44:27.353319593Z 67 PC: 12d8b | Get or set file attributes
2018-12-17T22:44:27.359570259Z 61 PC: 12db4 | Open file (Filename = '�')
2018-12-17T22:44:27.368502643Z 63 PC: 12dd1 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T22:44:27.378886991Z 66 PC: 12df3 | Move file pointer
2018-12-17T22:44:27.38174361Z 63 PC: 12e03 | Read file or device (Read 22 bytes on handle 5)
2018-12-17T22:44:27.385087592Z 66 PC: 12e2f | Move file pointer
2018-12-17T22:44:27.389026807Z 63 PC: 12e3e | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:44:27.396614391Z 62 PC: 1311c | Close file
2018-12-17T22:44:27.398945605Z 67 PC: 13135 | Get or set file attributes
2018-12-17T22:44:27.417800094Z 26 PC: 1315e | Set disk transfer address
2018-12-17T22:44:27.419679674Z 75 PC: 12c17 | Execute program
2018-12-17T22:44:27.455145172Z 9 PC: 141dc | Display string (Could not find end pointer)
2018-12-17T22:44:27.463914682Z 76 PC: 141e1 | Terminate with return code (Return code = '0')
2018-12-17T22:44:27.468010122Z 49 PC: 12c40 | Terminate and stay resident (Return code = '0' | Memory size = '306')