Sample viewer

vx.netlux.org/Virus.DOS.Vienna.DearUser.1407

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:46:02.8370024Z 47 PC: 151dc | Get disk transfer address
2018-12-17T22:46:02.83898608Z 26 PC: 151eb | Set disk transfer address
2018-12-17T22:46:02.840026597Z 78 PC: 15272 | Find first file
2018-12-17T22:46:02.845793688Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.848752552Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.851143287Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.853473495Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.856489221Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.859688972Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.862502226Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.86588942Z 67 PC: 152ce | Get or set file attributes
2018-12-17T22:46:02.872793294Z 67 PC: 152de | Get or set file attributes
2018-12-17T22:46:02.888910775Z 61 PC: 152e8 | Open file (Filename = 'TEST.COM')
2018-12-17T22:46:02.895910596Z 87 PC: 152f7 | Get or set file date and time
2018-12-17T22:46:02.897233794Z 44 PC: 15301 | Get time 0x15301: mov cx, 3
0x15304: mov ah, 0x3f
0x15306: mov dx, 0xa
0x15309: add dx, si
0x1530b: push dx
0x1530c: int 0x21
0x1530e: pop bp
0x1530f: jb 0x15335
0x15311: cmp byte ptr [bp], 0x4d
0x15315: jne 0x15323
0x15317: cmp byte ptr [bp + 1], 0x5a
0x1531b: je 0x15335
0x1531d: jmp 0x15323
0x1531f: jmp 0x15371
0x15321: jmp 0x1536f
0x15323: cmp ax, 3
0x15326: jne 0x15373
0x15328: xor cx, cx
0x1532a: mov ax, 0x4202
0x1532d: xor dx, dx
2018-12-17T22:46:02.899216417Z 63 PC: 1530e | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:46:02.905173022Z 66 PC: 15331 | Move file pointer
2018-12-17T22:46:02.90836823Z 64 PC: 1538a | Write file or device (Write 1407 bytes on handle 5)
2018-12-17T22:46:02.916811239Z 66 PC: 1539a | Move file pointer
2018-12-17T22:46:02.918615687Z 64 PC: 153a8 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:46:02.920482849Z 87 PC: 153b9 | Get or set file date and time
2018-12-17T22:46:02.921663033Z 62 PC: 153bd | Close file
2018-12-17T22:46:02.930028395Z 67 PC: 153ca | Get or set file attributes
2018-12-17T22:46:02.939708887Z 26 PC: 153d4 | Set disk transfer address
2018-12-17T22:46:02.940814154Z 47 PC: 151dc | Get disk transfer address
2018-12-17T22:46:02.942166681Z 26 PC: 151eb | Set disk transfer address
2018-12-17T22:46:02.943591811Z 78 PC: 15272 | Find first file
2018-12-17T22:46:02.950569276Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.953275537Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.957555669Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.960124875Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.962921916Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.966687081Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.969714577Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.972301116Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.974904768Z 78 PC: 15272 | Find first file
2018-12-17T22:46:02.983567413Z 79 PC: 1527d | Find next file
2018-12-17T22:46:02.986498479Z 67 PC: 152ce | Get or set file attributes
2018-12-17T22:46:02.992719305Z 67 PC: 152de | Get or set file attributes
2018-12-17T22:46:04.036251304Z 61 PC: 152e8 | Open file (Filename = 'C:\DOS\FORMAT.COM')
2018-12-17T22:46:04.043432619Z 87 PC: 152f7 | Get or set file date and time
2018-12-17T22:46:04.046367093Z 44 PC: 15301 | Get time 0x15301: mov cx, 3
0x15304: mov ah, 0x3f
0x15306: mov dx, 0xa
0x15309: add dx, si
0x1530b: push dx
0x1530c: int 0x21
0x1530e: pop bp
0x1530f: jb 0x15335
0x15311: cmp byte ptr [bp], 0x4d
0x15315: jne 0x15323
0x15317: cmp byte ptr [bp + 1], 0x5a
0x1531b: je 0x15335
0x1531d: jmp 0x15323
0x1531f: jmp 0x15371
0x15321: jmp 0x1536f
0x15323: cmp ax, 3
0x15326: jne 0x15373
0x15328: xor cx, cx
0x1532a: mov ax, 0x4202
0x1532d: xor dx, dx
2018-12-17T22:46:04.049130921Z 63 PC: 1530e | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:46:04.055509661Z 66 PC: 15331 | Move file pointer
2018-12-17T22:46:04.058672938Z 64 PC: 1538a | Write file or device (Write 1407 bytes on handle 5)
2018-12-17T22:46:04.067921758Z 66 PC: 1539a | Move file pointer
2018-12-17T22:46:04.069861947Z 64 PC: 153a8 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:46:04.074107367Z 87 PC: 153b9 | Get or set file date and time
2018-12-17T22:46:04.075888031Z 62 PC: 153bd | Close file
2018-12-17T22:46:04.082452276Z 67 PC: 153ca | Get or set file attributes
2018-12-17T22:46:04.093248452Z 26 PC: 153d4 | Set disk transfer address
2018-12-17T22:46:04.094949938Z 47 PC: 151dc | Get disk transfer address
2018-12-17T22:46:04.096302662Z 26 PC: 151eb | Set disk transfer address
2018-12-17T22:46:04.098558215Z 78 PC: 15272 | Find first file
2018-12-17T22:46:04.104670528Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.107244814Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.110880105Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.113845062Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.116710949Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.120340549Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.123226899Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.126029991Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.129487983Z 78 PC: 15272 | Find first file
2018-12-17T22:46:04.137065868Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.140344748Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.143848686Z 67 PC: 152ce | Get or set file attributes
2018-12-17T22:46:04.150666733Z 67 PC: 152de | Get or set file attributes
2018-12-17T22:46:04.160354559Z 61 PC: 152e8 | Open file (Filename = 'C:\DOS\KEYB.COM')
2018-12-17T22:46:04.167192337Z 87 PC: 152f7 | Get or set file date and time
2018-12-17T22:46:04.169079742Z 44 PC: 15301 | Get time 0x15301: mov cx, 3
0x15304: mov ah, 0x3f
0x15306: mov dx, 0xa
0x15309: add dx, si
0x1530b: push dx
0x1530c: int 0x21
0x1530e: pop bp
0x1530f: jb 0x15335
0x15311: cmp byte ptr [bp], 0x4d
0x15315: jne 0x15323
0x15317: cmp byte ptr [bp + 1], 0x5a
0x1531b: je 0x15335
0x1531d: jmp 0x15323
0x1531f: jmp 0x15371
0x15321: jmp 0x1536f
0x15323: cmp ax, 3
0x15326: jne 0x15373
0x15328: xor cx, cx
0x1532a: mov ax, 0x4202
0x1532d: xor dx, dx
2018-12-17T22:46:04.170636234Z 63 PC: 1530e | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:46:04.174167862Z 66 PC: 15331 | Move file pointer
2018-12-17T22:46:04.175867198Z 64 PC: 1538a | Write file or device (Write 1407 bytes on handle 5)
2018-12-17T22:46:04.181882686Z 66 PC: 1539a | Move file pointer
2018-12-17T22:46:04.182763914Z 64 PC: 153a8 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:46:04.185120603Z 87 PC: 153b9 | Get or set file date and time
2018-12-17T22:46:04.186073207Z 62 PC: 153bd | Close file
2018-12-17T22:46:04.190872099Z 67 PC: 153ca | Get or set file attributes
2018-12-17T22:46:04.197300008Z 26 PC: 153d4 | Set disk transfer address
2018-12-17T22:46:04.198039128Z 47 PC: 151dc | Get disk transfer address
2018-12-17T22:46:04.198748553Z 26 PC: 151eb | Set disk transfer address
2018-12-17T22:46:04.200344286Z 78 PC: 15272 | Find first file
2018-12-17T22:46:04.206734876Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.209035154Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.21194774Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.214276983Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.216584438Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.219613412Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.221936608Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.224280994Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.227069047Z 78 PC: 15272 | Find first file
2018-12-17T22:46:04.233086076Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.235937752Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.239112579Z 79 PC: 1527d | Find next file
2018-12-17T22:46:04.24495542Z 67 PC: 152ce | Get or set file attributes
2018-12-17T22:46:04.250802149Z 67 PC: 152de | Get or set file attributes
2018-12-17T22:46:04.260413986Z 61 PC: 152e8 | Open file (Filename = 'C:\DOS\SYS.COM')
2018-12-17T22:46:04.267760174Z 87 PC: 152f7 | Get or set file date and time
2018-12-17T22:46:04.26891003Z 44 PC: 15301 | Get time 0x15301: mov cx, 3
0x15304: mov ah, 0x3f
0x15306: mov dx, 0xa
0x15309: add dx, si
0x1530b: push dx
0x1530c: int 0x21
0x1530e: pop bp
0x1530f: jb 0x15335
0x15311: cmp byte ptr [bp], 0x4d
0x15315: jne 0x15323
0x15317: cmp byte ptr [bp + 1], 0x5a
0x1531b: je 0x15335
0x1531d: jmp 0x15323
0x1531f: jmp 0x15371
0x15321: jmp 0x1536f
0x15323: cmp ax, 3
0x15326: jne 0x15373
0x15328: xor cx, cx
0x1532a: mov ax, 0x4202
0x1532d: xor dx, dx
2018-12-17T22:46:04.271204068Z 63 PC: 1530e | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:46:04.276388063Z 66 PC: 15331 | Move file pointer
2018-12-17T22:46:04.277872719Z 64 PC: 1538a | Write file or device (Write 1407 bytes on handle 5)
2018-12-17T22:46:04.286041234Z 66 PC: 1539a | Move file pointer
2018-12-17T22:46:04.287274711Z 64 PC: 153a8 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:46:04.289857536Z 87 PC: 153b9 | Get or set file date and time
2018-12-17T22:46:04.291561907Z 62 PC: 153bd | Close file
2018-12-17T22:46:04.298556398Z 67 PC: 153ca | Get or set file attributes
2018-12-17T22:46:04.308097664Z 26 PC: 153d4 | Set disk transfer address
2018-12-17T22:46:04.309397658Z 7 PC: 1543b | Direct console input without echo