Sample viewer

vx.netlux.org/Virus.DOS.Search.360

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:46:00.089577125Z 42 PC: 12aa8 | Get date 0x12aa8: cmp dl, 0xd
0x12aab: jne 0x12aaf
0x12aad: jmp 0x12aad
0x12aaf: mov ah, 0x1a
0x12ab1: mov dx, 0x268
0x12ab4: int 0x21
0x12ab6: mov dx, 0x216
0x12ab9: mov ah, 0x4e
0x12abb: int 0x21
0x12abd: jae 0x12ac2
0x12abf: jmp 0x12b79
0x12ac2: mov dx, 0x286
0x12ac5: mov ax, 0x4300
0x12ac8: int 0x21
0x12aca: mov es, cx
0x12acc: mov ax, 0x4301
0x12acf: xor cx, cx
0x12ad1: int 0x21
0x12ad3: mov ax, 0x3d02
0x12ad6: int 0x21
2018-12-17T22:46:00.092774666Z 26 PC: 12ab6 | Set disk transfer address
2018-12-17T22:46:00.094528318Z 78 PC: 12abd | Find first file

{"DateBased":true,"Day":13,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":8736,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:21:48.49679699Z 42 PC: 12aa8 | Get date 0x12aa8: cmp dl, 0xd
0x12aab: jne 0x12aaf
0x12aad: jmp 0x12aad
0x12aaf: mov ah, 0x1a
0x12ab1: mov dx, 0x268
0x12ab4: int 0x21
0x12ab6: mov dx, 0x216
0x12ab9: mov ah, 0x4e
0x12abb: int 0x21
0x12abd: jae 0x12ac2
0x12abf: jmp 0x12b79
0x12ac2: mov dx, 0x286
0x12ac5: mov ax, 0x4300
0x12ac8: int 0x21
0x12aca: mov es, cx
0x12acc: mov ax, 0x4301
0x12acf: xor cx, cx
0x12ad1: int 0x21
0x12ad3: mov ax, 0x3d02
0x12ad6: int 0x21

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":8736,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:21:48.610549427Z 42 PC: 12aa8 | Get date 0x12aa8: cmp dl, 0xd
0x12aab: jne 0x12aaf
0x12aad: jmp 0x12aad
0x12aaf: mov ah, 0x1a
0x12ab1: mov dx, 0x268
0x12ab4: int 0x21
0x12ab6: mov dx, 0x216
0x12ab9: mov ah, 0x4e
0x12abb: int 0x21
0x12abd: jae 0x12ac2
0x12abf: jmp 0x12b79
0x12ac2: mov dx, 0x286
0x12ac5: mov ax, 0x4300
0x12ac8: int 0x21
0x12aca: mov es, cx
0x12acc: mov ax, 0x4301
0x12acf: xor cx, cx
0x12ad1: int 0x21
0x12ad3: mov ax, 0x3d02
0x12ad6: int 0x21
2018-12-25T12:21:48.613459777Z 26 PC: 12ab6 | Set disk transfer address
2018-12-25T12:21:48.615184066Z 78 PC: 12abd | Find first file