Sample viewer

vx.netlux.org/Virus.DOS.Vienna.638

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:46:50.130390148Z 48 PC: 12b6e | Get DOS version
2018-12-17T22:46:50.132315576Z 47 PC: 12b7a | Get disk transfer address
2018-12-17T22:46:50.133613856Z 26 PC: 12b8c | Set disk transfer address
2018-12-17T22:46:50.134730963Z 78 PC: 12c17 | Find first file
2018-12-17T22:46:50.140733571Z 67 PC: 12c54 | Get or set file attributes
2018-12-17T22:46:50.147035658Z 67 PC: 12c65 | Get or set file attributes
2018-12-17T22:46:50.432145479Z 61 PC: 12c6f | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:46:50.444261116Z 87 PC: 12c7b | Get or set file date and time
2018-12-17T22:46:50.446421877Z 44 PC: 12c87 | Get time 0x12c87: and dh, 7
0x12c8a: jmp 0x12c9c
0x12c8c: mov ah, 0x40
0x12c8e: mov cx, 5
0x12c91: mov dx, si
0x12c93: add dx, 0x8a
0x12c97: int 0x21
0x12c99: jmp 0x12cff
0x12c9b: nop
0x12c9c: mov ah, 0x3f
0x12c9e: mov cx, 3
0x12ca1: mov dx, 0xa
0x12ca4: add dx, si
0x12ca6: int 0x21
0x12ca8: jb 0x12cff
0x12caa: cmp ax, 3
0x12cad: jne 0x12cff
0x12caf: mov ax, 0x4202
0x12cb2: mov cx, 0
0x12cb5: mov dx, 0
2018-12-17T22:46:50.448795372Z 63 PC: 12ca8 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:46:50.452925464Z 66 PC: 12cba | Move file pointer
2018-12-17T22:46:50.455203002Z 64 PC: 12cde | Write file or device (Write 638 bytes on handle 5)
2018-12-17T22:46:50.460680114Z 66 PC: 12cf0 | Move file pointer
2018-12-17T22:46:50.46179169Z 64 PC: 12cff | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:46:50.466401535Z 87 PC: 12d12 | Get or set file date and time
2018-12-17T22:46:50.467523262Z 62 PC: 12d16 | Close file
2018-12-17T22:46:50.473028052Z 67 PC: 12d24 | Get or set file attributes
2018-12-17T22:46:50.483144756Z 26 PC: 12d31 | Set disk transfer address