Sample viewer

vx.netlux.org/Virus.DOS.Vienna.450

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:53:48.027201801Z 48 PC: 13035 | Get DOS version
2018-12-17T22:53:48.02973355Z 26 PC: 13047 | Set disk transfer address
2018-12-17T22:53:48.044921123Z 78 PC: 13057 | Find first file
2018-12-17T22:53:48.051176835Z 67 PC: 130b4 | Get or set file attributes
2018-12-17T22:53:48.057034127Z 67 PC: 130c7 | Get or set file attributes
2018-12-17T22:53:48.078807108Z 61 PC: 130d2 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:53:48.087654039Z 87 PC: 130de | Get or set file date and time
2018-12-17T22:53:48.089368485Z 63 PC: 130f3 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:53:48.107482015Z 66 PC: 13107 | Move file pointer
2018-12-17T22:53:48.123079754Z 64 PC: 13138 | Write file or device (Write 543 bytes on handle 5)
2018-12-17T22:53:48.131532908Z 66 PC: 1314c | Move file pointer
2018-12-17T22:53:48.134040268Z 64 PC: 1315b | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:53:48.141888413Z 87 PC: 13170 | Get or set file date and time
2018-12-17T22:53:48.149925377Z 62 PC: 13174 | Close file
2018-12-17T22:53:48.172885467Z 67 PC: 1317d | Get or set file attributes
2018-12-17T22:53:48.177210062Z 26 PC: 13184 | Set disk transfer address
2018-12-17T22:53:48.178786773Z 2 PC: 12bae | Character output (Char = '0d')
2018-12-17T22:53:48.190405207Z 2 PC: 12bae | Character output (Char = '0a')
2018-12-17T22:53:48.19424141Z 2 PC: 12bae | Character output (Char = '09')
2018-12-17T22:53:48.196732799Z 2 PC: 12bae | Character output (Char = '09')
2018-12-17T22:53:48.209593894Z 2 PC: 12bae | Character output (Char = '49')
2018-12-17T22:53:48.211899939Z 2 PC: 12bae | Character output (Char = '6e')
2018-12-17T22:53:48.214216337Z 2 PC: 12bae | Character output (Char = '74')
2018-12-17T22:53:48.217380766Z 2 PC: 12bae | Character output (Char = '65')
2018-12-17T22:53:48.220115091Z 2 PC: 12bae | Character output (Char = '6c')
2018-12-17T22:53:48.222637501Z 2 PC: 12bae | Character output (Char = '6c')
2018-12-17T22:53:48.237424095Z 2 PC: 12bae | Character output (Char = '69')
2018-12-17T22:53:48.242268711Z 2 PC: 12bae | Character output (Char = '67')
2018-12-17T22:53:48.245439179Z 2 PC: 12bae | Character output (Char = '65')
2018-12-17T22:53:48.248122846Z 2 PC: 12bae | Character output (Char = '6e')
2018-12-17T22:53:48.251047468Z 2 PC: 12bae | Character output (Char = '74')
2018-12-17T22:53:48.253482027Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.256129149Z 2 PC: 12bae | Character output (Char = '56')
2018-12-17T22:53:48.259156103Z 2 PC: 12bae | Character output (Char = '69')
2018-12-17T22:53:48.261554297Z 2 PC: 12bae | Character output (Char = '72')
2018-12-17T22:53:48.264143764Z 2 PC: 12bae | Character output (Char = '75')
2018-12-17T22:53:48.279542845Z 2 PC: 12bae | Character output (Char = '73')
2018-12-17T22:53:48.281880591Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.284275031Z 2 PC: 12bae | Character output (Char = '42')
2018-12-17T22:53:48.287547089Z 2 PC: 12bae | Character output (Char = '61')
2018-12-17T22:53:48.289873751Z 2 PC: 12bae | Character output (Char = '69')
2018-12-17T22:53:48.292185338Z 2 PC: 12bae | Character output (Char = '74')
2018-12-17T22:53:48.295439325Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.29776426Z 2 PC: 12bae | Character output (Char = '53')
2018-12-17T22:53:48.299888491Z 2 PC: 12bae | Character output (Char = '79')
2018-12-17T22:53:48.311471516Z 2 PC: 12bae | Character output (Char = '73')
2018-12-17T22:53:48.314144594Z 2 PC: 12bae | Character output (Char = '74')
2018-12-17T22:53:48.31659086Z 2 PC: 12bae | Character output (Char = '65')
2018-12-17T22:53:48.319709385Z 2 PC: 12bae | Character output (Char = '6d')
2018-12-17T22:53:48.32230577Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.324687022Z 2 PC: 12bae | Character output (Char = '28')
2018-12-17T22:53:48.32705419Z 2 PC: 12bae | Character output (Char = '74')
2018-12-17T22:53:48.33028347Z 2 PC: 12bae | Character output (Char = '6d')
2018-12-17T22:53:48.333558499Z 2 PC: 12bae | Character output (Char = '29')
2018-12-17T22:53:48.335927243Z 2 PC: 12bae | Character output (Char = '2e')
2018-12-17T22:53:48.339545898Z 2 PC: 12bae | Character output (Char = '0d')
2018-12-17T22:53:48.341768714Z 2 PC: 12bae | Character output (Char = '0a')
2018-12-17T22:53:48.345556238Z 2 PC: 12bae | Character output (Char = '09')
2018-12-17T22:53:48.349981218Z 2 PC: 12bae | Character output (Char = '43')
2018-12-17T22:53:48.352557636Z 2 PC: 12bae | Character output (Char = '6f')
2018-12-17T22:53:48.354909808Z 2 PC: 12bae | Character output (Char = '70')
2018-12-17T22:53:48.35790712Z 2 PC: 12bae | Character output (Char = '79')
2018-12-17T22:53:48.360498253Z 2 PC: 12bae | Character output (Char = '72')
2018-12-17T22:53:48.362816119Z 2 PC: 12bae | Character output (Char = '69')
2018-12-17T22:53:48.370144684Z 2 PC: 12bae | Character output (Char = '67')
2018-12-17T22:53:48.373222452Z 2 PC: 12bae | Character output (Char = '68')
2018-12-17T22:53:48.375536752Z 2 PC: 12bae | Character output (Char = '74')
2018-12-17T22:53:48.377818808Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.381089511Z 2 PC: 12bae | Character output (Char = '28')
2018-12-17T22:53:48.383406237Z 2 PC: 12bae | Character output (Char = '63')
2018-12-17T22:53:48.385718157Z 2 PC: 12bae | Character output (Char = '29')
2018-12-17T22:53:48.388916525Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.391257463Z 2 PC: 12bae | Character output (Char = '43')
2018-12-17T22:53:48.401411194Z 2 PC: 12bae | Character output (Char = '6f')
2018-12-17T22:53:48.405628205Z 2 PC: 12bae | Character output (Char = '6d')
2018-12-17T22:53:48.407653391Z 2 PC: 12bae | Character output (Char = '70')
2018-12-17T22:53:48.409652899Z 2 PC: 12bae | Character output (Char = '2d')
2018-12-17T22:53:48.412884931Z 2 PC: 12bae | Character output (Char = '56')
2018-12-17T22:53:48.415039029Z 2 PC: 12bae | Character output (Char = '49')
2018-12-17T22:53:48.416988422Z 2 PC: 12bae | Character output (Char = '52')
2018-12-17T22:53:48.419709237Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.422219689Z 2 PC: 12bae | Character output (Char = '49')
2018-12-17T22:53:48.424338248Z 2 PC: 12bae | Character output (Char = '6e')
2018-12-17T22:53:48.427252958Z 2 PC: 12bae | Character output (Char = '63')
2018-12-17T22:53:48.429273206Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.431258937Z 2 PC: 12bae | Character output (Char = '31')
2018-12-17T22:53:48.433430204Z 2 PC: 12bae | Character output (Char = '39')
2018-12-17T22:53:48.436223034Z 2 PC: 12bae | Character output (Char = '39')
2018-12-17T22:53:48.438522042Z 2 PC: 12bae | Character output (Char = '36')
2018-12-17T22:53:48.440892038Z 2 PC: 12bae | Character output (Char = '2c')
2018-12-17T22:53:48.444183731Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.44664101Z 2 PC: 12bae | Character output (Char = '41')
2018-12-17T22:53:48.448974866Z 2 PC: 12bae | Character output (Char = '6c')
2018-12-17T22:53:48.452298211Z 2 PC: 12bae | Character output (Char = '6c')
2018-12-17T22:53:48.455715878Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.458081206Z 2 PC: 12bae | Character output (Char = '72')
2018-12-17T22:53:48.461392144Z 2 PC: 12bae | Character output (Char = '69')
2018-12-17T22:53:48.463803691Z 2 PC: 12bae | Character output (Char = '67')
2018-12-17T22:53:48.466160581Z 2 PC: 12bae | Character output (Char = '68')
2018-12-17T22:53:48.46927962Z 2 PC: 12bae | Character output (Char = '74')
2018-12-17T22:53:48.471942464Z 2 PC: 12bae | Character output (Char = '73')
2018-12-17T22:53:48.47429579Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.477343639Z 2 PC: 12bae | Character output (Char = '72')
2018-12-17T22:53:48.480003226Z 2 PC: 12bae | Character output (Char = '65')
2018-12-17T22:53:48.483096052Z 2 PC: 12bae | Character output (Char = '73')
2018-12-17T22:53:48.486804671Z 2 PC: 12bae | Character output (Char = '65')
2018-12-17T22:53:48.489524608Z 2 PC: 12bae | Character output (Char = '76')
2018-12-17T22:53:48.491879998Z 2 PC: 12bae | Character output (Char = '65')
2018-12-17T22:53:48.495333537Z 2 PC: 12bae | Character output (Char = '72')
2018-12-17T22:53:48.497995331Z 2 PC: 12bae | Character output (Char = '65')
2018-12-17T22:53:48.500334272Z 2 PC: 12bae | Character output (Char = '64')
2018-12-17T22:53:48.502880842Z 2 PC: 12bae | Character output (Char = '21')
2018-12-17T22:53:48.506404064Z 2 PC: 12bae | Character output (Char = '0d')
2018-12-17T22:53:48.508625732Z 2 PC: 12bae | Character output (Char = '0a')
2018-12-17T22:53:48.512513211Z 2 PC: 12bae | Character output (Char = '09')
2018-12-17T22:53:48.51926912Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.521288662Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.523482536Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.526463797Z 2 PC: 12bae | Character output (Char = '42')
2018-12-17T22:53:48.528795521Z 2 PC: 12bae | Character output (Char = '61')
2018-12-17T22:53:48.531123855Z 2 PC: 12bae | Character output (Char = '69')
2018-12-17T22:53:48.534350712Z 2 PC: 12bae | Character output (Char = '74')
2018-12-17T22:53:48.536708277Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.539167807Z 2 PC: 12bae | Character output (Char = '66')
2018-12-17T22:53:48.542264911Z 2 PC: 12bae | Character output (Char = '69')
2018-12-17T22:53:48.545011313Z 2 PC: 12bae | Character output (Char = '6c')
2018-12-17T22:53:48.547320699Z 2 PC: 12bae | Character output (Char = '65')
2018-12-17T22:53:48.550341241Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.552842769Z 2 PC: 12bae | Character output (Char = '23')
2018-12-17T22:53:48.555117446Z 2 PC: 12bae | Character output (Char = '31')
2018-12-17T22:53:48.558852105Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.561384006Z 2 PC: 12bae | Character output (Char = '28')
2018-12-17T22:53:48.563686634Z 2 PC: 12bae | Character output (Char = '2e')
2018-12-17T22:53:48.566643444Z 2 PC: 12bae | Character output (Char = '43')
2018-12-17T22:53:48.569590532Z 2 PC: 12bae | Character output (Char = '4f')
2018-12-17T22:53:48.571845076Z 2 PC: 12bae | Character output (Char = '4d')
2018-12-17T22:53:48.574504468Z 2 PC: 12bae | Character output (Char = '29')
2018-12-17T22:53:48.577962249Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.580710948Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.582977061Z 2 PC: 12bae | Character output (Char = '4f')
2018-12-17T22:53:48.586166581Z 2 PC: 12bae | Character output (Char = '72')
2018-12-17T22:53:48.588418391Z 2 PC: 12bae | Character output (Char = '67')
2018-12-17T22:53:48.590686752Z 2 PC: 12bae | Character output (Char = '69')
2018-12-17T22:53:48.593785837Z 2 PC: 12bae | Character output (Char = '6e')
2018-12-17T22:53:48.596061557Z 2 PC: 12bae | Character output (Char = '61')
2018-12-17T22:53:48.598324425Z 2 PC: 12bae | Character output (Char = '6c')
2018-12-17T22:53:48.601496164Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.603983634Z 2 PC: 12bae | Character output (Char = '73')
2018-12-17T22:53:48.60625138Z 2 PC: 12bae | Character output (Char = '69')
2018-12-17T22:53:48.609289942Z 2 PC: 12bae | Character output (Char = '7a')
2018-12-17T22:53:48.611886148Z 2 PC: 12bae | Character output (Char = '65')
2018-12-17T22:53:48.614153001Z 2 PC: 12bae | Character output (Char = '3a')
2018-12-17T22:53:48.617178491Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.619475071Z 2 PC: 12bae | Character output (Char = '31')
2018-12-17T22:53:48.621617158Z 2 PC: 12bae | Character output (Char = '35')
2018-12-17T22:53:48.624499688Z 2 PC: 12bae | Character output (Char = '30')
2018-12-17T22:53:48.626595638Z 2 PC: 12bae | Character output (Char = '30')
2018-12-17T22:53:48.628594563Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.631423087Z 2 PC: 12bae | Character output (Char = '62')
2018-12-17T22:53:48.634722332Z 2 PC: 12bae | Character output (Char = '79')
2018-12-17T22:53:48.637728913Z 2 PC: 12bae | Character output (Char = '74')
2018-12-17T22:53:48.640317378Z 2 PC: 12bae | Character output (Char = '65')
2018-12-17T22:53:48.643160214Z 2 PC: 12bae | Character output (Char = '73')
2018-12-17T22:53:48.64544173Z 2 PC: 12bae | Character output (Char = '0d')
2018-12-17T22:53:48.647577735Z 2 PC: 12bae | Character output (Char = '0a')
2018-12-17T22:53:48.652123977Z 2 PC: 12bae | Character output (Char = '0a')
2018-12-17T22:53:48.655997437Z 61 PC: 12a69 | Open file (Filename = 'A:\TEST.COM')
2018-12-17T22:53:48.667732498Z 63 PC: 12a69 | Read file or device (Read 24 bytes on handle 5)
2018-12-17T22:53:48.671188495Z 62 PC: 12a69 | Close file
2018-12-17T22:53:48.673264804Z 2 PC: 12bae | Character output (Char = '56')
2018-12-17T22:53:48.675573894Z 2 PC: 12bae | Character output (Char = '49')
2018-12-17T22:53:48.678706287Z 2 PC: 12bae | Character output (Char = '52')
2018-12-17T22:53:48.681028229Z 2 PC: 12bae | Character output (Char = '55')
2018-12-17T22:53:48.683335995Z 2 PC: 12bae | Character output (Char = '53')
2018-12-17T22:53:48.686053754Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.688352414Z 2 PC: 12bae | Character output (Char = '52')
2018-12-17T22:53:48.691914427Z 2 PC: 12bae | Character output (Char = '45')
2018-12-17T22:53:48.695272826Z 2 PC: 12bae | Character output (Char = '4c')
2018-12-17T22:53:48.697600367Z 2 PC: 12bae | Character output (Char = '45')
2018-12-17T22:53:48.699909716Z 2 PC: 12bae | Character output (Char = '41')
2018-12-17T22:53:48.703076703Z 2 PC: 12bae | Character output (Char = '53')
2018-12-17T22:53:48.705458804Z 2 PC: 12bae | Character output (Char = '45')
2018-12-17T22:53:48.708460735Z 2 PC: 12bae | Character output (Char = '44')
2018-12-17T22:53:48.711581141Z 2 PC: 12bae | Character output (Char = '21')
2018-12-17T22:53:48.714081121Z 2 PC: 12bae | Character output (Char = '21')
2018-12-17T22:53:48.716385293Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.719362883Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.721644311Z 2 PC: 12bae | Character output (Char = '49')
2018-12-17T22:53:48.732073715Z 2 PC: 12bae | Character output (Char = '74')
2018-12-17T22:53:48.735113687Z 2 PC: 12bae | Character output (Char = '27')
2018-12-17T22:53:48.737532157Z 2 PC: 12bae | Character output (Char = '73')
2018-12-17T22:53:48.739788202Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.74268534Z 2 PC: 12bae | Character output (Char = '6e')
2018-12-17T22:53:48.745391833Z 2 PC: 12bae | Character output (Char = '61')
2018-12-17T22:53:48.747699999Z 2 PC: 12bae | Character output (Char = '6d')
2018-12-17T22:53:48.750762945Z 2 PC: 12bae | Character output (Char = '65')
2018-12-17T22:53:48.753455891Z 2 PC: 12bae | Character output (Char = '20')
2018-12-17T22:53:48.755786738Z 2 PC: 12bae | Character output (Char = '69')
2018-12-17T22:53:48.758807654Z 2 PC: 12bae | Character output (Char = '73')
2018-12-17T22:53:48.761258066Z 2 PC: 12bae | Character output (Char = '3a')
2018-12-17T22:53:48.763557957Z 2 PC: 12bae | Character output (Char = '0d')
2018-12-17T22:53:48.765937899Z 2 PC: 12bae | Character output (Char = '0a')
2018-12-17T22:53:48.770311048Z 2 PC: 12bae | Character output (Char = '0a')
2018-12-17T22:53:48.774036997Z 2 PC: 12bae | Character output (Char = '07')
2018-12-17T22:53:48.776391793Z 9 PC: 12b93 | Display string (String= 'This file has not had the INJECT.EXE run on it to load the Virus name into it ')
2018-12-17T22:53:48.786511721Z 76 PC: 12a69 | Terminate with return code (Return code = '1')