Sample viewer

vx.netlux.org/Virus.DOS.Vienna.Bloodspill.695

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:51:14.147016656Z 53 PC: 1523f | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:51:14.149607422Z 37 PC: 1524c | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:51:14.151386795Z 53 PC: 1523f | Get interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T22:51:14.152785016Z 37 PC: 1524c | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T22:51:14.154425174Z 53 PC: 1523f | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:51:14.157270741Z 37 PC: 1524c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:51:14.159340486Z 47 PC: 1516f | Get disk transfer address
2018-12-17T22:51:14.161336355Z 26 PC: 1517d | Set disk transfer address
2018-12-17T22:51:14.163917326Z 78 PC: 152f0 | Find first file
2018-12-17T22:51:14.171179943Z 67 PC: 15327 | Get or set file attributes
2018-12-17T22:51:14.177776585Z 67 PC: 15335 | Get or set file attributes
2018-12-17T22:51:14.202429398Z 61 PC: 1533d | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:51:14.211623647Z 87 PC: 15349 | Get or set file date and time
2018-12-17T22:51:14.214206922Z 63 PC: 15359 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:51:14.222451586Z 66 PC: 15369 | Move file pointer
2018-12-17T22:51:14.22499261Z 64 PC: 1538c | Write file or device (Write 695 bytes on handle 5)
2018-12-17T22:51:14.234760956Z 66 PC: 15397 | Move file pointer
2018-12-17T22:51:14.240698998Z 64 PC: 153ad | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:51:14.255711872Z 87 PC: 153be | Get or set file date and time
2018-12-17T22:51:14.257751189Z 62 PC: 153c2 | Close file
2018-12-17T22:51:14.26906868Z 67 PC: 153cd | Get or set file attributes
2018-12-17T22:51:14.281151867Z 78 PC: 152f0 | Find first file
2018-12-17T22:51:14.288005547Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.291202643Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.294344048Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.297365123Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.300928872Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.305002675Z 67 PC: 15327 | Get or set file attributes
2018-12-17T22:51:14.31125873Z 67 PC: 15335 | Get or set file attributes
2018-12-17T22:51:14.322479015Z 61 PC: 1533d | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:51:14.330975636Z 87 PC: 15349 | Get or set file date and time
2018-12-17T22:51:14.333275058Z 63 PC: 15359 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:51:14.340949601Z 66 PC: 15369 | Move file pointer
2018-12-17T22:51:14.349299786Z 64 PC: 1538c | Write file or device (Write 695 bytes on handle 5)
2018-12-17T22:51:14.365950578Z 66 PC: 15397 | Move file pointer
2018-12-17T22:51:14.367926854Z 64 PC: 153ad | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:51:14.37584154Z 87 PC: 153be | Get or set file date and time
2018-12-17T22:51:14.378182773Z 62 PC: 153c2 | Close file
2018-12-17T22:51:14.387328465Z 67 PC: 153cd | Get or set file attributes
2018-12-17T22:51:14.399740292Z 78 PC: 152f0 | Find first file
2018-12-17T22:51:14.40689721Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.41092663Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.414706041Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.419179522Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.423050944Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.426257541Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.430472879Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.433757427Z 67 PC: 15327 | Get or set file attributes
2018-12-17T22:51:14.44041408Z 67 PC: 15335 | Get or set file attributes
2018-12-17T22:51:14.454031972Z 61 PC: 1533d | Open file (Filename = 'TEST.COM')
2018-12-17T22:51:14.461780379Z 87 PC: 15349 | Get or set file date and time
2018-12-17T22:51:14.463405395Z 63 PC: 15359 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:51:14.467227109Z 66 PC: 15369 | Move file pointer
2018-12-17T22:51:14.469349703Z 64 PC: 1538c | Write file or device (Write 695 bytes on handle 5)
2018-12-17T22:51:14.479852387Z 66 PC: 15397 | Move file pointer
2018-12-17T22:51:14.481823632Z 64 PC: 153ad | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:51:14.485514317Z 87 PC: 153be | Get or set file date and time
2018-12-17T22:51:14.487649447Z 62 PC: 153c2 | Close file
2018-12-17T22:51:14.496538588Z 67 PC: 153cd | Get or set file attributes
2018-12-17T22:51:14.508840138Z 78 PC: 152f0 | Find first file
2018-12-17T22:51:14.516515881Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.519226911Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.522773527Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.525651301Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.528541061Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.532121008Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.53580466Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.539506003Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.543637626Z 78 PC: 152f0 | Find first file
2018-12-17T22:51:14.554905384Z 67 PC: 15327 | Get or set file attributes
2018-12-17T22:51:14.561992408Z 67 PC: 15335 | Get or set file attributes
2018-12-17T22:51:14.903247911Z 61 PC: 1533d | Open file (Filename = 'C:\DOS\EDIT.COM')
2018-12-17T22:51:14.911694627Z 87 PC: 15349 | Get or set file date and time
2018-12-17T22:51:14.914461762Z 63 PC: 15359 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:51:14.921358805Z 66 PC: 15369 | Move file pointer
2018-12-17T22:51:14.924649031Z 64 PC: 1538c | Write file or device (Write 695 bytes on handle 5)
2018-12-17T22:51:14.932845578Z 66 PC: 15397 | Move file pointer
2018-12-17T22:51:14.934839737Z 64 PC: 153ad | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:51:14.94253216Z 87 PC: 153be | Get or set file date and time
2018-12-17T22:51:14.945064539Z 62 PC: 153c2 | Close file
2018-12-17T22:51:14.952967752Z 67 PC: 153cd | Get or set file attributes
2018-12-17T22:51:14.965254062Z 78 PC: 152f0 | Find first file
2018-12-17T22:51:14.972744781Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.975813887Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.979295358Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.982253449Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.985314161Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.988872692Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.992092312Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.995083658Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:14.997898401Z 78 PC: 152f0 | Find first file
2018-12-17T22:51:15.006012319Z 79 PC: 152f6 | Find next file
2018-12-17T22:51:15.009493368Z 67 PC: 15327 | Get or set file attributes
2018-12-17T22:51:15.017305058Z 67 PC: 15335 | Get or set file attributes
2018-12-17T22:51:15.029198594Z 61 PC: 1533d | Open file (Filename = 'C:\DOS\FORMAT.COM')
2018-12-17T22:51:15.036760168Z 87 PC: 15349 | Get or set file date and time
2018-12-17T22:51:15.038688459Z 63 PC: 15359 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:51:15.046335363Z 66 PC: 15369 | Move file pointer
2018-12-17T22:51:15.047915179Z 64 PC: 1538c | Write file or device (Write 695 bytes on handle 5)
2018-12-17T22:51:15.056536932Z 66 PC: 15397 | Move file pointer
2018-12-17T22:51:15.058894911Z 64 PC: 153ad | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:51:15.062236812Z 87 PC: 153be | Get or set file date and time
2018-12-17T22:51:15.063941741Z 62 PC: 153c2 | Close file
2018-12-17T22:51:15.072739522Z 67 PC: 153cd | Get or set file attributes
2018-12-17T22:51:15.084697659Z 26 PC: 1519f | Set disk transfer address
2018-12-17T22:51:15.086056531Z 37 PC: 1526d | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:51:15.088775551Z 37 PC: 1526d | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T22:51:15.091898683Z 37 PC: 1526d | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:51:15.096294862Z 9 PC: 12a5d | Display string (String= '')
2018-12-17T22:51:15.100167381Z 9 PC: 12a64 | Display string (Could not find end pointer)
2018-12-17T22:51:15.113255086Z 76 PC: 12a7a | Terminate with return code (Return code = '0')