Sample viewer

vx.netlux.org/Virus.DOS.CyberShadow.184

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:52:21.462081612Z 78 PC: 16d64 | Find first file
2018-12-17T22:52:21.46933147Z 61 PC: 16d76 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:52:21.475929084Z 63 PC: 16d82 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:52:21.482716595Z 87 PC: 16d92 | Get or set file date and time
2018-12-17T22:52:21.485682226Z 66 PC: 16def | Move file pointer
2018-12-17T22:52:21.487761662Z 64 PC: 16da9 | Write file or device (Write 184 bytes on handle 5)
2018-12-17T22:52:21.503506839Z 64 PC: 16db6 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:52:21.506930561Z 87 PC: 16dbd | Get or set file date and time
2018-12-17T22:52:21.50950668Z 62 PC: 16dc5 | Close file
2018-12-17T22:52:21.517856034Z 79 PC: 16dcb | Find next file
2018-12-17T22:52:21.520785998Z 61 PC: 16d76 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:52:21.528680708Z 63 PC: 16d82 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:52:21.537066311Z 87 PC: 16d92 | Get or set file date and time
2018-12-17T22:52:21.539258419Z 66 PC: 16def | Move file pointer
2018-12-17T22:52:21.542331071Z 64 PC: 16da9 | Write file or device (Write 184 bytes on handle 5)
2018-12-17T22:52:21.545990264Z 64 PC: 16db6 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:52:21.54949619Z 87 PC: 16dbd | Get or set file date and time
2018-12-17T22:52:21.57012972Z 62 PC: 16dc5 | Close file
2018-12-17T22:52:21.578063073Z 79 PC: 16dcb | Find next file
2018-12-17T22:52:21.580869164Z 61 PC: 16d76 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:52:21.589297688Z 63 PC: 16d82 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:52:21.596132817Z 87 PC: 16d92 | Get or set file date and time
2018-12-17T22:52:21.597654846Z 66 PC: 16def | Move file pointer
2018-12-17T22:52:21.599512987Z 64 PC: 16da9 | Write file or device (Write 184 bytes on handle 5)
2018-12-17T22:52:21.60353368Z 64 PC: 16db6 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:52:21.607001113Z 87 PC: 16dbd | Get or set file date and time
2018-12-17T22:52:21.609200174Z 62 PC: 16dc5 | Close file
2018-12-17T22:52:21.618457534Z 79 PC: 16dcb | Find next file
2018-12-17T22:52:21.622419326Z 61 PC: 16d76 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:52:21.630942076Z 63 PC: 16d82 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:52:21.641744339Z 87 PC: 16d92 | Get or set file date and time
2018-12-17T22:52:21.643347631Z 66 PC: 16def | Move file pointer
2018-12-17T22:52:21.645214598Z 64 PC: 16da9 | Write file or device (Write 184 bytes on handle 5)
2018-12-17T22:52:21.648887046Z 64 PC: 16db6 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:52:21.652310517Z 87 PC: 16dbd | Get or set file date and time
2018-12-17T22:52:21.653977879Z 62 PC: 16dc5 | Close file
2018-12-17T22:52:21.666524328Z 79 PC: 16dcb | Find next file
2018-12-17T22:52:21.669919586Z 61 PC: 16d76 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:52:21.67766767Z 63 PC: 16d82 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:52:21.68539152Z 87 PC: 16d92 | Get or set file date and time
2018-12-17T22:52:21.687461849Z 66 PC: 16def | Move file pointer
2018-12-17T22:52:21.688972788Z 64 PC: 16da9 | Write file or device (Write 184 bytes on handle 5)
2018-12-17T22:52:21.692005184Z 64 PC: 16db6 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:52:21.695270708Z 87 PC: 16dbd | Get or set file date and time
2018-12-17T22:52:21.696717285Z 62 PC: 16dc5 | Close file
2018-12-17T22:52:21.705800428Z 79 PC: 16dcb | Find next file
2018-12-17T22:52:21.710062474Z 61 PC: 16d76 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:52:21.717711173Z 63 PC: 16d82 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:52:21.725959827Z 87 PC: 16d92 | Get or set file date and time
2018-12-17T22:52:21.729014896Z 66 PC: 16def | Move file pointer
2018-12-17T22:52:21.730992962Z 64 PC: 16da9 | Write file or device (Write 184 bytes on handle 5)
2018-12-17T22:52:21.739956781Z 64 PC: 16db6 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:52:21.744061232Z 87 PC: 16dbd | Get or set file date and time
2018-12-17T22:52:21.746561258Z 62 PC: 16dc5 | Close file
2018-12-17T22:52:21.75508019Z 79 PC: 16dcb | Find next file
2018-12-17T22:52:21.758977712Z 61 PC: 16d76 | Open file (Filename = 'PAH.COM')
2018-12-17T22:52:21.767516663Z 63 PC: 16d82 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:52:21.774783453Z 87 PC: 16d92 | Get or set file date and time
2018-12-17T22:52:21.776579617Z 66 PC: 16def | Move file pointer
2018-12-17T22:52:21.77953029Z 64 PC: 16da9 | Write file or device (Write 184 bytes on handle 5)
2018-12-17T22:52:21.782789312Z 64 PC: 16db6 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:52:21.785986909Z 87 PC: 16dbd | Get or set file date and time
2018-12-17T22:52:21.788993697Z 62 PC: 16dc5 | Close file
2018-12-17T22:52:21.797144799Z 79 PC: 16dcb | Find next file
2018-12-17T22:52:21.800566817Z 61 PC: 16d76 | Open file (Filename = 'TEST.COM')
2018-12-17T22:52:21.808855327Z 63 PC: 16d82 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:52:21.812373206Z 62 PC: 16dc5 | Close file
2018-12-17T22:52:21.814662737Z 79 PC: 16dcb | Find next file
2018-12-17T22:52:21.818372786Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=00004304h/0000017156d bytes. ')
2018-12-17T22:52:21.82333594Z 76 PC: 12a86 | Terminate with return code (Return code = '36')