Sample viewer

vx.netlux.org/Virus.DOS.Vienna.648.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:45:30.071482376Z 48 PC: 12a72 | Get DOS version
2018-12-17T22:45:30.072862569Z 47 PC: 12a7e | Get disk transfer address
2018-12-17T22:45:30.073844403Z 26 PC: 12a91 | Set disk transfer address
2018-12-17T22:45:30.074832665Z 78 PC: 12b1d | Find first file
2018-12-17T22:45:30.08067302Z 67 PC: 12b5b | Get or set file attributes
2018-12-17T22:45:30.0863669Z 67 PC: 12b6e | Get or set file attributes
2018-12-17T22:45:30.102312519Z 61 PC: 12b79 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:45:30.109183131Z 87 PC: 12b85 | Get or set file date and time
2018-12-17T22:45:30.110560199Z 44 PC: 12b91 | Get time 0x12b91: and dh, 7
0x12b94: jmp 0x12ba6
0x12b96: mov ah, 0x40
0x12b98: mov cx, 5
0x12b9b: mov dx, si
0x12b9d: add dx, 0x8a
0x12ba1: int 0x21
0x12ba3: jmp 0x12c0a
0x12ba5: nop
0x12ba6: mov ah, 0x3f
0x12ba8: mov cx, 3
0x12bab: mov dx, 0xa
0x12bae: nop
0x12baf: add dx, si
0x12bb1: int 0x21
0x12bb3: jb 0x12c0a
0x12bb5: cmp ax, 3
0x12bb8: jne 0x12c0a
0x12bba: mov ax, 0x4202
0x12bbd: mov cx, 0
2018-12-17T22:45:30.112530756Z 63 PC: 12bb3 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:45:30.118838663Z 66 PC: 12bc5 | Move file pointer
2018-12-17T22:45:30.120880369Z 64 PC: 12be9 | Write file or device (Write 648 bytes on handle 5)
2018-12-17T22:45:30.129115141Z 66 PC: 12bfb | Move file pointer
2018-12-17T22:45:30.13038669Z 64 PC: 12c0a | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:45:30.13723363Z 87 PC: 12c1f | Get or set file date and time
2018-12-17T22:45:30.138565616Z 62 PC: 12c23 | Close file
2018-12-17T22:45:30.146292346Z 67 PC: 12c32 | Get or set file attributes
2018-12-17T22:45:30.152472768Z 26 PC: 12c3f | Set disk transfer address
2018-12-17T22:45:30.153553483Z 9 PC: 12a57 | Display string (String= 'Hello, world!')