Sample viewer

vx.netlux.org/Virus.DOS.Mirror.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:57:48.610696869Z 52 PC: 12b66 | Get InDOS flag pointer
2018-12-17T22:57:48.612511019Z 82 PC: 12b73 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:57:48.614867236Z 63 PC: 9ddd5 | Read file or device (Read 1 bytes on handle 0)
2018-12-17T22:57:48.617337217Z 64 PC: 9ddda | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:57:48.620360768Z 61 PC: 9de0f | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T22:57:48.629917461Z 63 PC: 9de1b | Read file or device (Read 0 bytes on handle 5)
2018-12-17T22:57:48.981985722Z 62 PC: 9de1f | Close file
2018-12-17T22:57:48.993863968Z 77 PC: 11fe0 | Get program return code
2018-12-17T22:57:48.996500842Z 72 PC: 12174 | Allocate memory
2018-12-17T22:57:49.0009287Z 72 PC: 1218d | Allocate memory
2018-12-17T22:57:49.004536907Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:57:49.008244636Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:57:49.012582038Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:57:49.015380873Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:57:49.018550836Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:57:49.021113068Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:57:49.023573444Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:57:49.027036018Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:57:49.029889143Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:57:49.032785649Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:57:49.037267722Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:57:49.046674004Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:57:49.04971368Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:57:49.053258773Z 2 PC: 1268d | Character output (Char = '63')
2018-12-17T22:57:49.056551288Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:57:49.059702635Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:57:49.063698648Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T22:57:49.06681377Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:57:49.070213894Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:57:49.074264804Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:57:49.077275397Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:57:49.079950107Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:57:49.082664933Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:57:49.085930533Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:57:49.088579681Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:57:49.091369842Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:57:49.094856428Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:57:49.100283933Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:57:49.10339672Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:57:49.107336491Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:57:49.110989421Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:57:49.114370545Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:57:49.118486554Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:57:49.122727197Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:57:49.125653564Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:57:49.134819132Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:57:49.137276839Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:57:49.140013298Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:57:49.143243456Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:57:49.145724993Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:57:49.148288352Z 2 PC: 1268d | Character output (Char = '4f')
2018-12-17T22:57:49.150053398Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:57:49.152486163Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:57:49.154480866Z 2 PC: 1268d | Character output (Char = '41')
2018-12-17T22:57:49.156359027Z 2 PC: 1268d | Character output (Char = '4e')
2018-12-17T22:57:49.159061009Z 2 PC: 1268d | Character output (Char = '44')
2018-12-17T22:57:49.161161557Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T22:57:49.163228196Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:57:49.165779941Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:57:49.167799502Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:57:49.169715824Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:57:49.172508175Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:57:49.174486712Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:57:49.177184714Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:57:49.182036868Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:57:49.184296319Z 2 PC: 1268d | Character output (Char = '68')
2018-12-17T22:57:49.187793848Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:57:49.192449086Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:57:49.195101175Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:57:49.197654672Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:57:49.20051829Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:57:49.203153572Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:57:49.205924251Z 2 PC: 1268d | Character output (Char = '0a')