Sample viewer

vx.netlux.org/Virus.DOS.Childsplay.430

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:49:21.402063805Z 44 PC: 12b1e | Get time 0x12b1e: mov word ptr ds:[bp + 0x111], dx
0x12b23: cmp cx, 0x81e
0x12b27: je 0x12b0c
0x12b29: mov ah, 0x1a
0x12b2b: lea dx, word ptr [bp + 0x2b4]
0x12b2f: int 0x21
0x12b31: mov di, 0x100
0x12b34: push di
0x12b35: lea si, word ptr [bp + 0x2ad]
0x12b39: movsb byte ptr es:[di], byte ptr [si]
0x12b3a: movsw word ptr es:[di], word ptr [si]
0x12b3b: mov byte ptr ds:[bp + 0x2b3], 0
0x12b41: nop
0x12b42: mov ah, 0x47
0x12b44: xor dl, dl
0x12b46: lea si, word ptr [bp + 0x2df]
0x12b4a: int 0x21
0x12b4c: mov ah, 0x4e
0x12b4e: mov cx, 7
0x12b51: lea dx, word ptr [bp + 0x2a2]
2018-12-17T22:49:21.404887521Z 26 PC: 12b31 | Set disk transfer address
2018-12-17T22:49:21.418228907Z 71 PC: 12b4c | Get current directory
2018-12-17T22:49:21.421672276Z 78 PC: 12b57 | Find first file
2018-12-17T22:49:21.428382344Z 67 PC: 12ba0 | Get or set file attributes
2018-12-17T22:49:21.446256897Z 61 PC: 12ba5 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:49:21.454268749Z 63 PC: 12bb1 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:49:21.461790902Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:49:21.46590928Z 64 PC: 12acc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:49:21.472076868Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:49:21.473685821Z 64 PC: 12ae1 | Write file or device (Write 430 bytes on handle 5)
2018-12-17T22:49:21.492981324Z 87 PC: 12bd4 | Get or set file date and time
2018-12-17T22:49:21.494760546Z 62 PC: 12bd8 | Close file
2018-12-17T22:49:21.502929454Z 67 PC: 12be8 | Get or set file attributes
2018-12-17T22:49:21.514171967Z 79 PC: 12b57 | Find next file
2018-12-17T22:49:21.517583847Z 67 PC: 12ba0 | Get or set file attributes
2018-12-17T22:49:21.52862415Z 61 PC: 12ba5 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:49:21.537581069Z 63 PC: 12bb1 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:49:21.544832293Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:49:21.546801863Z 64 PC: 12acc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:49:21.550868574Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:49:21.553030015Z 64 PC: 12ae1 | Write file or device (Write 430 bytes on handle 5)
2018-12-17T22:49:21.556508109Z 87 PC: 12bd4 | Get or set file date and time
2018-12-17T22:49:21.559005271Z 62 PC: 12bd8 | Close file
2018-12-17T22:49:21.567369857Z 67 PC: 12be8 | Get or set file attributes
2018-12-17T22:49:21.57814441Z 79 PC: 12b57 | Find next file
2018-12-17T22:49:21.581711021Z 67 PC: 12ba0 | Get or set file attributes
2018-12-17T22:49:21.592970245Z 61 PC: 12ba5 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:49:21.600478832Z 63 PC: 12bb1 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:49:21.608271584Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:49:21.610924438Z 64 PC: 12acc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:49:21.614129159Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:49:21.616098549Z 64 PC: 12ae1 | Write file or device (Write 430 bytes on handle 5)
2018-12-17T22:49:21.625332148Z 87 PC: 12bd4 | Get or set file date and time
2018-12-17T22:49:21.636225504Z 62 PC: 12bd8 | Close file
2018-12-17T22:49:21.648511338Z 67 PC: 12be8 | Get or set file attributes
2018-12-17T22:49:21.659966028Z 79 PC: 12b57 | Find next file
2018-12-17T22:49:21.663089607Z 67 PC: 12ba0 | Get or set file attributes
2018-12-17T22:49:21.674788127Z 61 PC: 12ba5 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:49:21.682892734Z 63 PC: 12bb1 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:49:21.690523721Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:49:21.692587479Z 64 PC: 12acc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:49:21.696787269Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:49:21.69966164Z 64 PC: 12ae1 | Write file or device (Write 430 bytes on handle 5)
2018-12-17T22:49:21.703256805Z 87 PC: 12bd4 | Get or set file date and time
2018-12-17T22:49:21.705637207Z 62 PC: 12bd8 | Close file
2018-12-17T22:49:21.714822014Z 67 PC: 12be8 | Get or set file attributes
2018-12-17T22:49:21.725139148Z 26 PC: 12bfc | Set disk transfer address
2018-12-17T22:49:21.726544348Z 59 PC: 12c04 | Change current directory
2018-12-17T22:49:21.732361006Z 59 PC: 12c0c | Change current directory