Sample viewer

vx.netlux.org/Virus.DOS.TPE.CivilWar.1994

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:49:04.180638459Z 26 PC: 12a55 | Set disk transfer address
2018-12-17T22:49:04.182681335Z 44 PC: 1318f | Get time 0x1318f: in al, 0x40
0x13191: mov ah, al
0x13193: in al, 0x40
0x13195: xor ax, cx
0x13197: xor dx, ax
0x13199: jmp 0x131c0
0x1319b: call 0x131a3
0x1319e: or ax, ax
0x131a0: je 0x1319b
0x131a2: ret
0x131a3: push dx
0x131a4: push cx
0x131a5: push bx
0x131a6: in al, 0x40
0x131a8: add ax, 0
0x131ab: mov dx, 0
0x131ae: mov cx, 7
0x131b1: shl ax, 1
0x131b3: rcl dx, 1
0x131b5: mov bl, al
2018-12-17T22:49:04.185448435Z 78 PC: 12a6e | Find first file
2018-12-17T22:49:04.192342988Z 61 PC: 12a76 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:49:04.200224864Z 87 PC: 12a80 | Get or set file date and time
2018-12-17T22:49:04.201967629Z 63 PC: 12a97 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T22:49:04.208578737Z 66 PC: 12b3c | Move file pointer
2018-12-17T22:49:04.210784471Z 64 PC: 12ad2 | Write file or device (Write 1 bytes on handle 5)
2018-12-17T22:49:04.21345533Z 64 PC: 12add | Write file or device (Write 2 bytes on handle 5)
2018-12-17T22:49:04.215942779Z 64 PC: 12ae8 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T22:49:04.220246886Z 66 PC: 12b3c | Move file pointer
2018-12-17T22:49:04.22410579Z 64 PC: 12b16 | Write file or device (Write 2031 bytes on handle 5)
2018-12-17T22:49:04.502035862Z 87 PC: 12b27 | Get or set file date and time