Sample viewer

vx.netlux.org/Virus.DOS.YB.2277.e

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:54:25.285336397Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.287561346Z 26 PC: 12aa9 | Set disk transfer address
2018-12-17T22:54:25.289289512Z 78 PC: 12acc | Find first file
2018-12-17T22:54:25.296173683Z 67 PC: 12ae7 | Get or set file attributes
2018-12-17T22:54:25.313395041Z 61 PC: 12af1 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:54:25.321895849Z 63 PC: 12b02 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:54:25.329899683Z 66 PC: 12b2e | Move file pointer
2018-12-17T22:54:25.331939104Z 64 PC: 12b3a | Write file or device (Write 2277 bytes on handle 5)
2018-12-17T22:54:25.348623975Z 66 PC: 12b45 | Move file pointer
2018-12-17T22:54:25.350412334Z 64 PC: 12b5e | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:54:25.357998644Z 87 PC: 12b6e | Get or set file date and time
2018-12-17T22:54:25.360615389Z 62 PC: 12b75 | Close file
2018-12-17T22:54:25.369102191Z 67 PC: 12b87 | Get or set file attributes
2018-12-17T22:54:25.380113264Z 79 PC: 12acc | Find next file
2018-12-17T22:54:25.383672299Z 67 PC: 12ae7 | Get or set file attributes
2018-12-17T22:54:25.394807886Z 61 PC: 12af1 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:54:25.402179462Z 63 PC: 12b02 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:54:25.409688097Z 66 PC: 12b2e | Move file pointer
2018-12-17T22:54:25.411860948Z 64 PC: 12b3a | Write file or device (Write 2277 bytes on handle 5)
2018-12-17T22:54:25.422343989Z 66 PC: 12b45 | Move file pointer
2018-12-17T22:54:25.424183604Z 64 PC: 12b5e | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:54:25.432791113Z 87 PC: 12b6e | Get or set file date and time
2018-12-17T22:54:25.435040057Z 62 PC: 12b75 | Close file
2018-12-17T22:54:25.443881806Z 67 PC: 12b87 | Get or set file attributes
2018-12-17T22:54:25.455832684Z 79 PC: 12acc | Find next file
2018-12-17T22:54:25.459359478Z 67 PC: 12ae7 | Get or set file attributes
2018-12-17T22:54:25.470360643Z 61 PC: 12af1 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:54:25.479651134Z 63 PC: 12b02 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:54:25.489241719Z 66 PC: 12b2e | Move file pointer
2018-12-17T22:54:25.491218161Z 64 PC: 12b3a | Write file or device (Write 2277 bytes on handle 5)
2018-12-17T22:54:25.502119548Z 66 PC: 12b45 | Move file pointer
2018-12-17T22:54:25.503882941Z 64 PC: 12b5e | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:54:25.513504744Z 87 PC: 12b6e | Get or set file date and time
2018-12-17T22:54:25.515768967Z 62 PC: 12b75 | Close file
2018-12-17T22:54:25.545570706Z 67 PC: 12b87 | Get or set file attributes
2018-12-17T22:54:25.556838731Z 79 PC: 12acc | Find next file
2018-12-17T22:54:25.560368803Z 67 PC: 12ae7 | Get or set file attributes
2018-12-17T22:54:25.572664519Z 61 PC: 12af1 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:54:25.579952989Z 63 PC: 12b02 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:54:25.586937068Z 66 PC: 12b2e | Move file pointer
2018-12-17T22:54:25.589782413Z 64 PC: 12b3a | Write file or device (Write 2277 bytes on handle 5)
2018-12-17T22:54:25.612452075Z 66 PC: 12b45 | Move file pointer
2018-12-17T22:54:25.614347836Z 64 PC: 12b5e | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:54:25.622594537Z 87 PC: 12b6e | Get or set file date and time
2018-12-17T22:54:25.625042074Z 62 PC: 12b75 | Close file
2018-12-17T22:54:25.633877831Z 67 PC: 12b87 | Get or set file attributes
2018-12-17T22:54:25.645477229Z 79 PC: 12acc | Find next file
2018-12-17T22:54:25.649126984Z 67 PC: 12ae7 | Get or set file attributes
2018-12-17T22:54:25.659848443Z 61 PC: 12af1 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:54:25.668254603Z 63 PC: 12b02 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:54:25.676192994Z 66 PC: 12b2e | Move file pointer
2018-12-17T22:54:25.678117449Z 64 PC: 12b3a | Write file or device (Write 2277 bytes on handle 5)
2018-12-17T22:54:25.688101674Z 66 PC: 12b45 | Move file pointer
2018-12-17T22:54:25.691199342Z 64 PC: 12b5e | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:54:25.698583963Z 87 PC: 12b6e | Get or set file date and time
2018-12-17T22:54:25.700574432Z 62 PC: 12b75 | Close file
2018-12-17T22:54:25.710563996Z 67 PC: 12b87 | Get or set file attributes
2018-12-17T22:54:25.721431871Z 79 PC: 12acc | Find next file
2018-12-17T22:54:25.724598378Z 67 PC: 12ae7 | Get or set file attributes
2018-12-17T22:54:25.73692884Z 61 PC: 12af1 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:54:25.744367483Z 63 PC: 12b02 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:54:25.751583828Z 66 PC: 12b2e | Move file pointer
2018-12-17T22:54:25.75435313Z 64 PC: 12b3a | Write file or device (Write 2277 bytes on handle 5)
2018-12-17T22:54:25.76669898Z 66 PC: 12b45 | Move file pointer
2018-12-17T22:54:25.76857834Z 64 PC: 12b5e | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:54:25.776227859Z 87 PC: 12b6e | Get or set file date and time
2018-12-17T22:54:25.779227663Z 62 PC: 12b75 | Close file
2018-12-17T22:54:25.788015511Z 67 PC: 12b87 | Get or set file attributes
2018-12-17T22:54:25.79922718Z 79 PC: 12acc | Find next file
2018-12-17T22:54:25.803675516Z 67 PC: 12ae7 | Get or set file attributes
2018-12-17T22:54:25.814513474Z 61 PC: 12af1 | Open file (Filename = 'PAH.COM')
2018-12-17T22:54:25.821877286Z 63 PC: 12b02 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:54:25.829792934Z 66 PC: 12b2e | Move file pointer
2018-12-17T22:54:25.832577104Z 64 PC: 12b3a | Write file or device (Write 2277 bytes on handle 5)
2018-12-17T22:54:25.842850131Z 66 PC: 12b45 | Move file pointer
2018-12-17T22:54:25.84542609Z 64 PC: 12b5e | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:54:25.852544019Z 87 PC: 12b6e | Get or set file date and time
2018-12-17T22:54:25.854231529Z 62 PC: 12b75 | Close file
2018-12-17T22:54:25.863668125Z 67 PC: 12b87 | Get or set file attributes
2018-12-17T22:54:25.874910873Z 79 PC: 12acc | Find next file
2018-12-17T22:54:25.877758281Z 67 PC: 12ae7 | Get or set file attributes
2018-12-17T22:54:25.889314889Z 61 PC: 12af1 | Open file (Filename = 'TEST.COM')
2018-12-17T22:54:25.897346115Z 63 PC: 12b02 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:54:25.900416051Z 66 PC: 12b2e | Move file pointer
2018-12-17T22:54:25.903356084Z 64 PC: 12b3a | Write file or device (Write 2277 bytes on handle 5)
2018-12-17T22:54:25.912875655Z 66 PC: 12b45 | Move file pointer
2018-12-17T22:54:25.914679173Z 64 PC: 12b5e | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:54:25.917958644Z 87 PC: 12b6e | Get or set file date and time
2018-12-17T22:54:25.921137284Z 62 PC: 12b75 | Close file
2018-12-17T22:54:25.930037432Z 67 PC: 12b87 | Get or set file attributes
2018-12-17T22:54:25.941361904Z 79 PC: 12acc | Find next file
2018-12-17T22:54:25.945144619Z 26 PC: 12ab3 | Set disk transfer address
2018-12-17T22:54:25.946932387Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.948486997Z 172 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.950584517Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.95170936Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.952712164Z 250 PC: 11b | UNKNOWN!
2018-12-17T22:54:25.954794976Z 182 PC: 173 | UNKNOWN!
2018-12-17T22:54:25.95573408Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.956549161Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.958095696Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.959187006Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.960528776Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.962295485Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.963680537Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.964621715Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.965453617Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.967733019Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.96904318Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.970892373Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.973312669Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.974682643Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.975922061Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.978066549Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.979171074Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.980272453Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.98248042Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.983895808Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.985139875Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.987949042Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.989295431Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.990804426Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.992192142Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.994728727Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:25.996145167Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:25.997645676Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.000050954Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.001513572Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.00339195Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.005745551Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.007103672Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.008567301Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.010991214Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.012695996Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.014243654Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.016944296Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.030407966Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.032035894Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.034636369Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.036300875Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.037827443Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.040425984Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.04196762Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.04357544Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.044652082Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.046710899Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.047693675Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.048769086Z 182 PC: 12ab3 | UNKNOWN!
2018-12-17T22:54:26.050510597Z 250 PC: 12a5b | UNKNOWN!
2018-12-17T22:54:26.051564587Z 182 PC: 12ab3 | UNKNOWN!