Sample viewer

vx.netlux.org/Virus.DOS.Mini.75

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:00:58.521147637Z 78 PC: 12a5a | Find first file
2018-12-17T22:00:58.527201746Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:00:58.53404513Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:00:58.540648452Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:00:58.542055508Z 64 PC: 12a82 | Write file or device (Write 482 bytes on handle 5)
2018-12-17T22:00:58.545730558Z 79 PC: 12a5a | Find next file
2018-12-17T22:00:58.548695426Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:00:58.555318632Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 6)
2018-12-17T22:00:58.562409106Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:00:58.563634757Z 64 PC: 12a82 | Write file or device (Write 102 bytes on handle 6)
2018-12-17T22:00:58.566769582Z 79 PC: 12a5a | Find next file
2018-12-17T22:00:58.569806854Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:00:58.575982039Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 7)
2018-12-17T22:00:58.582698316Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:00:58.584637974Z 64 PC: 12a82 | Write file or device (Write 167 bytes on handle 7)
2018-12-17T22:00:58.587295584Z 79 PC: 12a5a | Find next file
2018-12-17T22:00:58.590602489Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:00:58.597440272Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 8)
2018-12-17T22:00:58.605903222Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:00:58.607228801Z 64 PC: 12a82 | Write file or device (Write 104 bytes on handle 8)
2018-12-17T22:00:58.610156756Z 79 PC: 12a5a | Find next file
2018-12-17T22:00:58.612986953Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:00:58.619278592Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 9)
2018-12-17T22:00:58.626142924Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:00:58.627464621Z 64 PC: 12a82 | Write file or device (Write 104 bytes on handle 9)
2018-12-17T22:00:58.63029468Z 79 PC: 12a5a | Find next file
2018-12-17T22:00:58.634049759Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:00:58.640756317Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 10)
2018-12-17T22:00:58.647168123Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:00:58.648989765Z 64 PC: 12a82 | Write file or device (Write 576 bytes on handle 10)
2018-12-17T22:00:58.663587076Z 79 PC: 12a5a | Find next file
2018-12-17T22:00:58.666350226Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:00:58.672646909Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 11)
2018-12-17T22:00:58.681372019Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:00:58.682812777Z 64 PC: 12a82 | Write file or device (Write 104 bytes on handle 11)
2018-12-17T22:00:58.685421982Z 79 PC: 12a5a | Find next file
2018-12-17T22:00:58.688592325Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:00:58.694881133Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 12)
2018-12-17T22:00:58.697358645Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:00:58.703004439Z 64 PC: 12a82 | Write file or device (Write 151 bytes on handle 12)
2018-12-17T22:00:58.705948669Z 79 PC: 12a5a | Find next file
2018-12-17T22:00:58.714975155Z 77 PC: 11fe0 | Get program return code
2018-12-17T22:00:58.717256003Z 72 PC: 12174 | Allocate memory
2018-12-17T22:00:58.718988452Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:00:58.720778982Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:00:58.724615021Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:00:58.726632892Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:00:58.728617885Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:00:58.73259803Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:00:58.734838499Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:00:58.737166951Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:00:58.740227559Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:00:58.742878592Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:00:58.745243974Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:00:58.747608777Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:00:58.750883891Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:00:58.75324973Z 2 PC: 1268d | Character output (Char = '63')
2018-12-17T22:00:58.755564582Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:00:58.758767714Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:00:58.761084001Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T22:00:58.763448867Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:00:58.766330952Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:00:58.768582913Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:00:58.770556204Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:00:58.773033804Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:00:58.775030711Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:00:58.777123009Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:00:58.779511625Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:00:58.781538283Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:00:58.78404152Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:00:58.788261214Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:00:58.790829754Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:00:58.792803352Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:00:58.795359502Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:00:58.797898376Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:00:58.799676801Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:00:58.802212718Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:00:58.804082413Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:00:58.805960188Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:00:58.808083922Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:00:58.810926232Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:00:58.813128726Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:00:58.815038395Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:00:58.817161401Z 2 PC: 1268d | Character output (Char = '4f')
2018-12-17T22:00:58.819041651Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:00:58.820938624Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:00:58.824274673Z 2 PC: 1268d | Character output (Char = '41')
2018-12-17T22:00:58.826199947Z 2 PC: 1268d | Character output (Char = '4e')
2018-12-17T22:00:58.828431649Z 2 PC: 1268d | Character output (Char = '44')
2018-12-17T22:00:58.831719422Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T22:00:58.833901289Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:00:58.835894027Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:00:58.838464539Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:00:58.840374531Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:00:58.842324664Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:00:58.845026199Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:00:58.847234573Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:00:58.849308906Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:00:58.851853843Z 2 PC: 1268d | Character output (Char = '68')
2018-12-17T22:00:58.853812829Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:00:58.857761857Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:00:58.860477782Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:00:58.862776996Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:00:58.865057027Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:00:58.8675923Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:00:58.870523587Z 2 PC: 1268d | Character output (Char = '0a')