Sample viewer

vx.netlux.org/Virus.DOS.Grog.Crackers

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:58:10.450188219Z 53 PC: 12c59 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:58:10.452889276Z 37 PC: 12c66 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:58:10.454320285Z 26 PC: 12c6e | Set disk transfer address
2018-12-17T22:58:10.455560306Z 78 PC: 12c76 | Find first file
2018-12-17T22:58:10.463235814Z 61 PC: 12cab | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:58:10.470505078Z 63 PC: 12d12 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:10.477722003Z 66 PC: 12d2d | Move file pointer
2018-12-17T22:58:10.479862306Z 64 PC: 12d39 | Write file or device (Write 798 bytes on handle 5)
2018-12-17T22:58:10.494866981Z 66 PC: 12d4f | Move file pointer
2018-12-17T22:58:10.496400754Z 64 PC: 12d5a | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:10.503282319Z 62 PC: 12d5e | Close file
2018-12-17T22:58:10.512994225Z 79 PC: 12c76 | Find next file
2018-12-17T22:58:10.515732311Z 61 PC: 12cab | Open file (Filename = 'PRINT.COM')
2018-12-17T22:58:10.522992267Z 63 PC: 12d12 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:10.530774766Z 66 PC: 12d2d | Move file pointer
2018-12-17T22:58:10.532440367Z 64 PC: 12d39 | Write file or device (Write 798 bytes on handle 5)
2018-12-17T22:58:10.540917682Z 66 PC: 12d4f | Move file pointer
2018-12-17T22:58:10.543346477Z 64 PC: 12d5a | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:10.550180593Z 62 PC: 12d5e | Close file
2018-12-17T22:58:10.558978701Z 79 PC: 12c76 | Find next file
2018-12-17T22:58:10.562600118Z 61 PC: 12cab | Open file (Filename = 'HELLO.COM')
2018-12-17T22:58:10.570972926Z 63 PC: 12d12 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:10.57793359Z 66 PC: 12d2d | Move file pointer
2018-12-17T22:58:10.579416658Z 64 PC: 12d39 | Write file or device (Write 798 bytes on handle 5)
2018-12-17T22:58:10.588200459Z 66 PC: 12d4f | Move file pointer
2018-12-17T22:58:10.590056377Z 64 PC: 12d5a | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:10.597360747Z 62 PC: 12d5e | Close file
2018-12-17T22:58:10.606900439Z 79 PC: 12c76 | Find next file
2018-12-17T22:58:10.610087159Z 61 PC: 12cab | Open file (Filename = 'PHANG.COM')
2018-12-17T22:58:10.61757873Z 63 PC: 12d12 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:10.625810273Z 66 PC: 12d2d | Move file pointer
2018-12-17T22:58:10.627430399Z 64 PC: 12d39 | Write file or device (Write 798 bytes on handle 5)
2018-12-17T22:58:10.636427159Z 66 PC: 12d4f | Move file pointer
2018-12-17T22:58:10.638798026Z 64 PC: 12d5a | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:10.64605661Z 62 PC: 12d5e | Close file
2018-12-17T22:58:10.655171313Z 79 PC: 12c76 | Find next file
2018-12-17T22:58:10.658565814Z 61 PC: 12cab | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:58:10.666912603Z 63 PC: 12d12 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:10.674074295Z 66 PC: 12d2d | Move file pointer
2018-12-17T22:58:10.675899385Z 64 PC: 12d39 | Write file or device (Write 798 bytes on handle 5)
2018-12-17T22:58:10.685471527Z 66 PC: 12d4f | Move file pointer
2018-12-17T22:58:10.68732961Z 64 PC: 12d5a | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:10.693045524Z 62 PC: 12d5e | Close file
2018-12-17T22:58:10.705841496Z 79 PC: 12c76 | Find next file
2018-12-17T22:58:10.709747449Z 61 PC: 12cab | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:58:10.717379555Z 63 PC: 12d12 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:10.725343685Z 66 PC: 12d2d | Move file pointer
2018-12-17T22:58:10.727305272Z 64 PC: 12d39 | Write file or device (Write 798 bytes on handle 5)
2018-12-17T22:58:10.736923702Z 66 PC: 12d4f | Move file pointer
2018-12-17T22:58:10.739611915Z 64 PC: 12d5a | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:10.747350381Z 62 PC: 12d5e | Close file
2018-12-17T22:58:10.756302608Z 79 PC: 12c76 | Find next file
2018-12-17T22:58:10.759638178Z 61 PC: 12cab | Open file (Filename = 'PAH.COM')
2018-12-17T22:58:10.767802324Z 63 PC: 12d12 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:10.775379487Z 66 PC: 12d2d | Move file pointer
2018-12-17T22:58:10.77749903Z 64 PC: 12d39 | Write file or device (Write 798 bytes on handle 5)
2018-12-17T22:58:10.787048381Z 66 PC: 12d4f | Move file pointer
2018-12-17T22:58:10.789009587Z 64 PC: 12d5a | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:10.796430316Z 62 PC: 12d5e | Close file
2018-12-17T22:58:10.80684938Z 79 PC: 12c76 | Find next file
2018-12-17T22:58:10.810499882Z 61 PC: 12cab | Open file (Filename = 'TEST.COM')
2018-12-17T22:58:10.822134952Z 63 PC: 12d12 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:10.82795405Z 62 PC: 12d5e | Close file
2018-12-17T22:58:10.831765665Z 79 PC: 12c76 | Find next file
2018-12-17T22:58:10.835975739Z 26 PC: 12c86 | Set disk transfer address
2018-12-17T22:58:10.837659804Z 37 PC: 12c8d | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')