Sample viewer

vx.netlux.org/Virus.DOS.SillyC.290.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:48:31.462635904Z 26 PC: 12a5e | Set disk transfer address
2018-12-17T22:48:31.464754847Z 78 PC: 12a67 | Find first file
2018-12-17T22:48:31.470591732Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.471975667Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.477415885Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.478957542Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:48:31.494802796Z 61 PC: 12a98 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:48:31.506383953Z 63 PC: 12ab1 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:48:31.513500886Z 66 PC: 12ac3 | Move file pointer
2018-12-17T22:48:31.514741406Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:48:31.516383867Z 64 PC: 12adb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:31.519659191Z 66 PC: 12ae4 | Move file pointer
2018-12-17T22:48:31.521449072Z 64 PC: 12aef | Write file or device (Write 290 bytes on handle 5)
2018-12-17T22:48:31.530115522Z 44 PC: 12af4 | Get time 0x12af4: mov cl, dl
0x12af6: mov al, cl
0x12af8: mov ax, 0x2c00
0x12afb: int 0x21
0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
2018-12-17T22:48:31.533185151Z 44 PC: 12afd | Get time 0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
0x12b24: mov ah, 0x3b
0x12b26: int 0x21
0x12b28: jb 0x12b2d
0x12b2a: jmp 0x12a5f
2018-12-17T22:48:31.536012302Z 64 PC: 12b0b | Write file or device (Write 159 bytes on handle 5)
2018-12-17T22:48:31.538707249Z 87 PC: 12b18 | Get or set file date and time
2018-12-17T22:48:31.540962917Z 62 PC: 12b1c | Close file
2018-12-17T22:48:31.548941077Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.552104693Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.554433641Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.557778668Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.559507969Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.56315371Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.564968065Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:48:31.575158618Z 61 PC: 12a98 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:48:31.583296033Z 63 PC: 12ab1 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:48:31.590299282Z 66 PC: 12ac3 | Move file pointer
2018-12-17T22:48:31.591952363Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:48:31.594894315Z 64 PC: 12adb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:31.597873727Z 66 PC: 12ae4 | Move file pointer
2018-12-17T22:48:31.599768082Z 64 PC: 12aef | Write file or device (Write 290 bytes on handle 5)
2018-12-17T22:48:31.603428668Z 44 PC: 12af4 | Get time 0x12af4: mov cl, dl
0x12af6: mov al, cl
0x12af8: mov ax, 0x2c00
0x12afb: int 0x21
0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
2018-12-17T22:48:31.605619645Z 44 PC: 12afd | Get time 0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
0x12b24: mov ah, 0x3b
0x12b26: int 0x21
0x12b28: jb 0x12b2d
0x12b2a: jmp 0x12a5f
2018-12-17T22:48:31.607651408Z 64 PC: 12b0b | Write file or device (Write 34 bytes on handle 5)
2018-12-17T22:48:31.610724972Z 87 PC: 12b18 | Get or set file date and time
2018-12-17T22:48:31.612671255Z 62 PC: 12b1c | Close file
2018-12-17T22:48:31.620773733Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.624276397Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.625763052Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.628598168Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.631214381Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:48:31.641156134Z 61 PC: 12a98 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:48:31.647606876Z 63 PC: 12ab1 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:48:31.655065709Z 66 PC: 12ac3 | Move file pointer
2018-12-17T22:48:31.656380507Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:48:31.657703379Z 64 PC: 12adb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:31.660880566Z 66 PC: 12ae4 | Move file pointer
2018-12-17T22:48:31.662499334Z 64 PC: 12aef | Write file or device (Write 290 bytes on handle 5)
2018-12-17T22:48:31.665609088Z 44 PC: 12af4 | Get time 0x12af4: mov cl, dl
0x12af6: mov al, cl
0x12af8: mov ax, 0x2c00
0x12afb: int 0x21
0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
2018-12-17T22:48:31.669518789Z 44 PC: 12afd | Get time 0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
0x12b24: mov ah, 0x3b
0x12b26: int 0x21
0x12b28: jb 0x12b2d
0x12b2a: jmp 0x12a5f
2018-12-17T22:48:31.672446326Z 64 PC: 12b0b | Write file or device (Write 37 bytes on handle 5)
2018-12-17T22:48:31.675584386Z 87 PC: 12b18 | Get or set file date and time
2018-12-17T22:48:31.677699522Z 62 PC: 12b1c | Close file
2018-12-17T22:48:31.686769723Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.689476368Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.690670309Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.693541232Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.694669998Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:48:31.704257482Z 61 PC: 12a98 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:48:31.711279613Z 63 PC: 12ab1 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:48:31.717413898Z 66 PC: 12ac3 | Move file pointer
2018-12-17T22:48:31.71876938Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:48:31.720482323Z 64 PC: 12adb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:31.72370654Z 66 PC: 12ae4 | Move file pointer
2018-12-17T22:48:31.724989842Z 64 PC: 12aef | Write file or device (Write 290 bytes on handle 5)
2018-12-17T22:48:31.7281221Z 44 PC: 12af4 | Get time 0x12af4: mov cl, dl
0x12af6: mov al, cl
0x12af8: mov ax, 0x2c00
0x12afb: int 0x21
0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
2018-12-17T22:48:31.730151896Z 44 PC: 12afd | Get time 0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
0x12b24: mov ah, 0x3b
0x12b26: int 0x21
0x12b28: jb 0x12b2d
0x12b2a: jmp 0x12a5f
2018-12-17T22:48:31.732163924Z 64 PC: 12b0b | Write file or device (Write 167 bytes on handle 5)
2018-12-17T22:48:31.73492417Z 87 PC: 12b18 | Get or set file date and time
2018-12-17T22:48:31.736747118Z 62 PC: 12b1c | Close file
2018-12-17T22:48:31.744262759Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.747014396Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.748144491Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.750543008Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.752142984Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.754434272Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.755440943Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:48:31.765418976Z 61 PC: 12a98 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:48:31.772065292Z 63 PC: 12ab1 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:48:31.77835305Z 66 PC: 12ac3 | Move file pointer
2018-12-17T22:48:31.780550951Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:48:31.78206704Z 64 PC: 12adb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:31.784753762Z 66 PC: 12ae4 | Move file pointer
2018-12-17T22:48:31.787355212Z 64 PC: 12aef | Write file or device (Write 290 bytes on handle 5)
2018-12-17T22:48:31.790043098Z 44 PC: 12af4 | Get time 0x12af4: mov cl, dl
0x12af6: mov al, cl
0x12af8: mov ax, 0x2c00
0x12afb: int 0x21
0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
2018-12-17T22:48:31.792124849Z 44 PC: 12afd | Get time 0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
0x12b24: mov ah, 0x3b
0x12b26: int 0x21
0x12b28: jb 0x12b2d
0x12b2a: jmp 0x12a5f
2018-12-17T22:48:31.79623091Z 64 PC: 12b0b | Write file or device (Write 42 bytes on handle 5)
2018-12-17T22:48:31.799154247Z 87 PC: 12b18 | Get or set file date and time
2018-12-17T22:48:31.800819179Z 62 PC: 12b1c | Close file
2018-12-17T22:48:31.808824792Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.811679203Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.813099169Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:48:31.822898699Z 61 PC: 12a98 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:48:31.829471026Z 63 PC: 12ab1 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:48:31.835700189Z 66 PC: 12ac3 | Move file pointer
2018-12-17T22:48:31.837730792Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:48:31.838978436Z 64 PC: 12adb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:31.841537925Z 66 PC: 12ae4 | Move file pointer
2018-12-17T22:48:31.843866052Z 64 PC: 12aef | Write file or device (Write 290 bytes on handle 5)
2018-12-17T22:48:31.851649047Z 44 PC: 12af4 | Get time 0x12af4: mov cl, dl
0x12af6: mov al, cl
0x12af8: mov ax, 0x2c00
0x12afb: int 0x21
0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
2018-12-17T22:48:31.853693461Z 44 PC: 12afd | Get time 0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
0x12b24: mov ah, 0x3b
0x12b26: int 0x21
0x12b28: jb 0x12b2d
0x12b2a: jmp 0x12a5f
2018-12-17T22:48:31.857079407Z 64 PC: 12b0b | Write file or device (Write 42 bytes on handle 5)
2018-12-17T22:48:31.859768073Z 87 PC: 12b18 | Get or set file date and time
2018-12-17T22:48:31.861180477Z 62 PC: 12b1c | Close file
2018-12-17T22:48:31.872185241Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.874771032Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.876065672Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:48:31.886027829Z 61 PC: 12a98 | Open file (Filename = 'PAH.COM')
2018-12-17T22:48:31.892540687Z 63 PC: 12ab1 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:48:31.898823431Z 66 PC: 12ac3 | Move file pointer
2018-12-17T22:48:31.90063727Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:48:31.902034272Z 64 PC: 12adb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:31.90446445Z 66 PC: 12ae4 | Move file pointer
2018-12-17T22:48:31.905930189Z 64 PC: 12aef | Write file or device (Write 290 bytes on handle 5)
2018-12-17T22:48:31.908789125Z 44 PC: 12af4 | Get time 0x12af4: mov cl, dl
0x12af6: mov al, cl
0x12af8: mov ax, 0x2c00
0x12afb: int 0x21
0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
2018-12-17T22:48:31.910736013Z 44 PC: 12afd | Get time 0x12afd: mov cl, dl
0x12aff: add cl, al
0x12b01: ror cl, 1
0x12b03: xor ch, ch
0x12b05: xor dx, dx
0x12b07: mov ah, 0x40
0x12b09: int 0x21
0x12b0b: mov cx, word ptr [0x212]
0x12b0f: mov dx, word ptr [0x210]
0x12b13: mov ax, 0x5701
0x12b16: int 0x21
0x12b18: mov ah, 0x3e
0x12b1a: int 0x21
0x12b1c: mov ah, 0x4f
0x12b1e: jmp 0x12a61
0x12b21: mov dx, 0x20d
0x12b24: mov ah, 0x3b
0x12b26: int 0x21
0x12b28: jb 0x12b2d
0x12b2a: jmp 0x12a5f
2018-12-17T22:48:31.913129065Z 64 PC: 12b0b | Write file or device (Write 45 bytes on handle 5)
2018-12-17T22:48:31.915631345Z 87 PC: 12b18 | Get or set file date and time
2018-12-17T22:48:31.916973624Z 62 PC: 12b1c | Close file
2018-12-17T22:48:31.925460173Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.928142673Z 47 PC: 12a73 | Get disk transfer address
2018-12-17T22:48:31.929697952Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:48:31.94048981Z 61 PC: 12a98 | Open file (Filename = 'TEST.COM')
2018-12-17T22:48:31.947108944Z 63 PC: 12ab1 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:48:31.953376938Z 62 PC: 12b1c | Close file
2018-12-17T22:48:31.955809069Z 79 PC: 12a67 | Find next file
2018-12-17T22:48:31.958306843Z 59 PC: 12b28 | Change current directory
2018-12-17T22:48:31.962223145Z 26 PC: 12b34 | Set disk transfer address