Sample viewer

vx.netlux.org/Virus.DOS.Lame.435

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:46:43.888709421Z 44 PC: 12bea | Get time 0x12bea: in al, 0x40
0x12bec: mov ah, al
0x12bee: in al, 0x40
0x12bf0: xor ax, cx
0x12bf2: xor dx, ax
0x12bf4: jmp 0x12c12
0x12bf6: push dx
0x12bf7: push cx
0x12bf8: push bx
0x12bf9: in al, 0x40
0x12bfb: add ax, 0x5b48
0x12bfe: mov dx, 0x3e69
0x12c01: mov cx, 7
0x12c04: shl ax, 1
0x12c06: rcl dx, 1
0x12c08: mov bl, al
0x12c0a: xor bl, dh
0x12c0c: jns 0x12c10
0x12c0e: inc al
0x12c10: loop 0x12c04
2018-12-17T22:46:43.891652486Z 26 PC: 12b48 | Set disk transfer address
2018-12-17T22:46:43.894294527Z 78 PC: 12b52 | Find first file
2018-12-17T22:46:43.902340337Z 61 PC: 12b5d | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:46:43.909968403Z 63 PC: 12b73 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:43.918059103Z 66 PC: 12c4c | Move file pointer
2018-12-17T22:46:43.91986476Z 64 PC: 12c41 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:43.923470013Z 66 PC: 12c4c | Move file pointer
2018-12-17T22:46:43.926049656Z 64 PC: 12c41 | Write file or device (Write 25 bytes on handle 5)
2018-12-17T22:46:43.929224512Z 64 PC: 12c41 | Write file or device (Write 410 bytes on handle 5)
2018-12-17T22:46:43.945518555Z 62 PC: 12bb5 | Close file
2018-12-17T22:46:43.95677079Z 79 PC: 12b52 | Find next file
2018-12-17T22:46:43.959943677Z 61 PC: 12b5d | Open file (Filename = 'PRINT.COM')
2018-12-17T22:46:43.967736214Z 63 PC: 12b73 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:43.976289222Z 66 PC: 12c4c | Move file pointer
2018-12-17T22:46:43.977938149Z 64 PC: 12c41 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:43.981165852Z 66 PC: 12c4c | Move file pointer
2018-12-17T22:46:43.983139295Z 64 PC: 12c41 | Write file or device (Write 25 bytes on handle 5)
2018-12-17T22:46:43.987415955Z 64 PC: 12c41 | Write file or device (Write 410 bytes on handle 5)
2018-12-17T22:46:43.990598656Z 62 PC: 12bb5 | Close file
2018-12-17T22:46:43.999788292Z 79 PC: 12b52 | Find next file
2018-12-17T22:46:44.005492584Z 61 PC: 12b5d | Open file (Filename = 'HELLO.COM')
2018-12-17T22:46:44.020339881Z 63 PC: 12b73 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:44.028993365Z 66 PC: 12c4c | Move file pointer
2018-12-17T22:46:44.031871263Z 64 PC: 12c41 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:44.034969519Z 66 PC: 12c4c | Move file pointer
2018-12-17T22:46:44.037001263Z 64 PC: 12c41 | Write file or device (Write 25 bytes on handle 5)
2018-12-17T22:46:44.041168033Z 64 PC: 12c41 | Write file or device (Write 410 bytes on handle 5)
2018-12-17T22:46:44.066435013Z 62 PC: 12bb5 | Close file
2018-12-17T22:46:44.075858471Z 26 PC: 12bc7 | Set disk transfer address
2018-12-17T22:46:44.077385876Z 9 PC: 12a47 | Display string (String= '(C) 1993 American Eagle Poblications Inc., All Rights Reserved. Unauthorized use will be prosecuted under applicable copyright and software piracy laws. HOST #1 - You have just released a virus!')
2018-12-17T22:46:44.085615439Z 76 PC: 12a4c | Terminate with return code (Return code = '0')