Sample viewer

vx.netlux.org/Virus.DOS.Substitution.653

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:52:57.759409587Z 26 PC: 12b7e | Set disk transfer address
2018-12-17T22:52:57.760861865Z 78 PC: 12b95 | Find first file
2018-12-17T22:52:57.769098547Z 61 PC: 12ba8 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:52:57.77621209Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:52:57.782991815Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:57.785547907Z 64 PC: 12c5c | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:52:57.788718212Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:57.791742002Z 64 PC: 12c5c | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:52:57.810342683Z 64 PC: 12c5c | Write file or device (Write 361 bytes on handle 5)
2018-12-17T22:52:57.820783836Z 62 PC: 12bfb | Close file
2018-12-17T22:52:57.837898555Z 79 PC: 12b95 | Find next file
2018-12-17T22:52:57.841388792Z 61 PC: 12ba8 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:52:57.85069913Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:52:57.860140205Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:57.861860737Z 64 PC: 12c5c | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:52:57.867459755Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:57.870564587Z 64 PC: 12c5c | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:52:57.875922562Z 64 PC: 12c5c | Write file or device (Write 361 bytes on handle 5)
2018-12-17T22:52:57.889633487Z 62 PC: 12bfb | Close file
2018-12-17T22:52:57.89951002Z 79 PC: 12b95 | Find next file
2018-12-17T22:52:57.90427959Z 61 PC: 12ba8 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:52:57.91476728Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:52:57.924769369Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:57.926914829Z 64 PC: 12c5c | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:52:57.937986326Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:57.940983517Z 64 PC: 12c5c | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:52:57.944752196Z 64 PC: 12c5c | Write file or device (Write 361 bytes on handle 5)
2018-12-17T22:52:57.953945525Z 62 PC: 12bfb | Close file
2018-12-17T22:52:57.965073549Z 79 PC: 12b95 | Find next file
2018-12-17T22:52:57.968314186Z 61 PC: 12ba8 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:52:57.974368679Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:52:57.980531446Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:57.982006476Z 64 PC: 12c5c | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:52:57.985094127Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:57.987689973Z 64 PC: 12c5c | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:52:57.99068561Z 64 PC: 12c5c | Write file or device (Write 361 bytes on handle 5)
2018-12-17T22:52:57.997516141Z 62 PC: 12bfb | Close file
2018-12-17T22:52:58.007377565Z 79 PC: 12b95 | Find next file
2018-12-17T22:52:58.011056025Z 61 PC: 12ba8 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:52:58.01820302Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:52:58.026256268Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:58.028132733Z 64 PC: 12c5c | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:52:58.031292198Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:58.034341396Z 64 PC: 12c5c | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:52:58.038306384Z 64 PC: 12c5c | Write file or device (Write 361 bytes on handle 5)
2018-12-17T22:52:58.047043326Z 62 PC: 12bfb | Close file
2018-12-17T22:52:58.055955076Z 79 PC: 12b95 | Find next file
2018-12-17T22:52:58.059888766Z 61 PC: 12ba8 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:52:58.067287373Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:52:58.074448385Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:58.077407744Z 64 PC: 12c5c | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:52:58.080585944Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:58.083371056Z 64 PC: 12c5c | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:52:58.094052Z 64 PC: 12c5c | Write file or device (Write 361 bytes on handle 5)
2018-12-17T22:52:58.103197389Z 62 PC: 12bfb | Close file
2018-12-17T22:52:58.112110983Z 79 PC: 12b95 | Find next file
2018-12-17T22:52:58.1158734Z 61 PC: 12ba8 | Open file (Filename = 'PAH.COM')
2018-12-17T22:52:58.123747451Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:52:58.131163062Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:58.132946321Z 64 PC: 12c5c | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:52:58.137022077Z 66 PC: 12c57 | Move file pointer
2018-12-17T22:52:58.139878172Z 64 PC: 12c5c | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:52:58.143537577Z 64 PC: 12c5c | Write file or device (Write 361 bytes on handle 5)
2018-12-17T22:52:58.153125557Z 62 PC: 12bfb | Close file
2018-12-17T22:52:58.162877676Z 79 PC: 12b95 | Find next file
2018-12-17T22:52:58.166100871Z 61 PC: 12ba8 | Open file (Filename = 'TEST.COM')
2018-12-17T22:52:58.174592341Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:52:58.177447114Z 62 PC: 12bfb | Close file
2018-12-17T22:52:58.179417095Z 79 PC: 12b95 | Find next file
2018-12-17T22:52:58.182835166Z 26 PC: 12b88 | Set disk transfer address