Sample viewer

vx.netlux.org/Virus.DOS.Vgpsi.193.c

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:52:20.54737424Z 78 PC: 12a7c | Find first file
2018-12-17T22:52:20.553863329Z 61 PC: 12af9 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:52:20.563057671Z 63 PC: 12a95 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:52:20.570300768Z 62 PC: 12a99 | Close file
2018-12-17T22:52:20.572677242Z 61 PC: 12af9 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:52:20.587292186Z 63 PC: 12ac5 | Read file or device (Read 193 bytes on handle 5)
2018-12-17T22:52:20.594715571Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.596292623Z 64 PC: 12ad4 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.599478478Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.607109773Z 64 PC: 12ae2 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.622941243Z 62 PC: 12ae6 | Close file
2018-12-17T22:52:20.631781529Z 79 PC: 12a7c | Find next file
2018-12-17T22:52:20.635249624Z 61 PC: 12af9 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:52:20.64213579Z 63 PC: 12a95 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:52:20.648847107Z 62 PC: 12a99 | Close file
2018-12-17T22:52:20.652098114Z 61 PC: 12af9 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:52:20.659733978Z 63 PC: 12ac5 | Read file or device (Read 193 bytes on handle 5)
2018-12-17T22:52:20.662508259Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.665637337Z 64 PC: 12ad4 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.668510284Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.670017025Z 64 PC: 12ae2 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.673531477Z 62 PC: 12ae6 | Close file
2018-12-17T22:52:20.681717915Z 79 PC: 12a7c | Find next file
2018-12-17T22:52:20.6847817Z 61 PC: 12af9 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:52:20.692707339Z 63 PC: 12a95 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:52:20.700803447Z 62 PC: 12a99 | Close file
2018-12-17T22:52:20.703591044Z 61 PC: 12af9 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:52:20.711290798Z 63 PC: 12ac5 | Read file or device (Read 193 bytes on handle 5)
2018-12-17T22:52:20.731856Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.733683633Z 64 PC: 12ad4 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.736838228Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.739827774Z 64 PC: 12ae2 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.742970037Z 62 PC: 12ae6 | Close file
2018-12-17T22:52:20.752172755Z 79 PC: 12a7c | Find next file
2018-12-17T22:52:20.755975989Z 61 PC: 12af9 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:52:20.763079804Z 63 PC: 12a95 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:52:20.770146588Z 62 PC: 12a99 | Close file
2018-12-17T22:52:20.773750529Z 61 PC: 12af9 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:52:20.781310641Z 63 PC: 12ac5 | Read file or device (Read 193 bytes on handle 5)
2018-12-17T22:52:20.784508648Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.78707532Z 64 PC: 12ad4 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.790506225Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.79228727Z 64 PC: 12ae2 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.795607306Z 62 PC: 12ae6 | Close file
2018-12-17T22:52:20.80495144Z 79 PC: 12a7c | Find next file
2018-12-17T22:52:20.807998454Z 61 PC: 12af9 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:52:20.81618418Z 63 PC: 12a95 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:52:20.824154573Z 62 PC: 12a99 | Close file
2018-12-17T22:52:20.826314089Z 61 PC: 12af9 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:52:20.834284502Z 63 PC: 12ac5 | Read file or device (Read 193 bytes on handle 5)
2018-12-17T22:52:20.837872052Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.839439797Z 64 PC: 12ad4 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.842529501Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.845063741Z 64 PC: 12ae2 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.848261468Z 62 PC: 12ae6 | Close file
2018-12-17T22:52:20.857335323Z 79 PC: 12a7c | Find next file
2018-12-17T22:52:20.861569527Z 61 PC: 12af9 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:52:20.868709791Z 63 PC: 12a95 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:52:20.876096606Z 62 PC: 12a99 | Close file
2018-12-17T22:52:20.878338608Z 61 PC: 12af9 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:52:20.892379073Z 63 PC: 12ac5 | Read file or device (Read 193 bytes on handle 5)
2018-12-17T22:52:20.89543842Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.89723782Z 64 PC: 12ad4 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.904042543Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.908096538Z 64 PC: 12ae2 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.917064655Z 62 PC: 12ae6 | Close file
2018-12-17T22:52:20.927037859Z 79 PC: 12a7c | Find next file
2018-12-17T22:52:20.9305992Z 61 PC: 12af9 | Open file (Filename = 'PAH.COM')
2018-12-17T22:52:20.93828102Z 63 PC: 12a95 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:52:20.947010359Z 62 PC: 12a99 | Close file
2018-12-17T22:52:20.94967306Z 61 PC: 12af9 | Open file (Filename = 'PAH.COM')
2018-12-17T22:52:20.957877492Z 63 PC: 12ac5 | Read file or device (Read 193 bytes on handle 5)
2018-12-17T22:52:20.961035534Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.964271123Z 64 PC: 12ad4 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.967669396Z 66 PC: 12aee | Move file pointer
2018-12-17T22:52:20.969681586Z 64 PC: 12ae2 | Write file or device (Write 193 bytes on handle 5)
2018-12-17T22:52:20.973839798Z 62 PC: 12ae6 | Close file
2018-12-17T22:52:20.98265697Z 79 PC: 12a7c | Find next file
2018-12-17T22:52:20.98598408Z 61 PC: 12af9 | Open file (Filename = 'TEST.COM')
2018-12-17T22:52:20.994438883Z 63 PC: 12a95 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:52:21.001516028Z 62 PC: 12a99 | Close file
2018-12-17T22:52:21.00376913Z 79 PC: 12a7c | Find next file
2018-12-17T22:52:21.007860094Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=00000128h/0000000296d bytes. ')
2018-12-17T22:52:21.012566736Z 76 PC: 12a86 | Terminate with return code (Return code = '36')