Sample viewer

vx.netlux.org/Virus.DOS.MtE.Darkstar

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:58:41.566551401Z 26 PC: 12aa9 | Set disk transfer address
2018-12-17T22:58:41.567985357Z 53 PC: 12aae | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:58:41.569362609Z 37 PC: 12ab8 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:58:41.571079219Z 78 PC: 12ad1 | Find first file
2018-12-17T22:58:41.578614868Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:58:41.592195513Z 61 PC: 12b21 | Open file (Filename = '��&��8ju�E��P3��� �t�.nXú���>s')
2018-12-17T22:58:41.596624998Z 63 PC: 12b2e | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:41.600998886Z 66 PC: 12b46 | Move file pointer
2018-12-17T22:58:41.602667393Z 87 PC: 12b5c | Get or set file date and time
2018-12-17T22:58:41.607273017Z 64 PC: 12b8f | Write file or device (Write 3177 bytes on handle 5)
2018-12-17T22:58:41.612674642Z 66 PC: 12b9e | Move file pointer
2018-12-17T22:58:41.6143791Z 64 PC: 12ba8 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:41.616285172Z 87 PC: 12baf | Get or set file date and time
2018-12-17T22:58:41.617698111Z 62 PC: 12bb3 | Close file
2018-12-17T22:58:41.623553902Z 79 PC: 12ad1 | Find next file
2018-12-17T22:58:41.625465932Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:58:41.632124279Z 61 PC: 12b21 | Open file (Filename = 'y���A���\ u郃���2H���Pm�� y4���U�D� �� Xy���X�������$������0���Y#sMP�2��l����6WR����')
2018-12-17T22:58:41.636932666Z 63 PC: 12b2e | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:41.641115625Z 66 PC: 12b46 | Move file pointer
2018-12-17T22:58:41.642140479Z 87 PC: 12b5c | Get or set file date and time
2018-12-17T22:58:41.648930575Z 64 PC: 12b8f | Write file or device (Write 3045 bytes on handle 5)
2018-12-17T22:58:41.654607885Z 66 PC: 12b9e | Move file pointer
2018-12-17T22:58:41.655562228Z 64 PC: 12ba8 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:41.657509814Z 87 PC: 12baf | Get or set file date and time
2018-12-17T22:58:41.659393188Z 62 PC: 12bb3 | Close file
2018-12-17T22:58:41.667627869Z 79 PC: 12ad1 | Find next file
2018-12-17T22:58:41.67019654Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:58:41.681223118Z 61 PC: 12b21 | Open file (Filename = '\����lF2�̟t�A�2$��E}�h�U뱄��C��-��8�C�:B�ټ�$�J(������0�͇Â������tU�s0��k;`���� _]Qkr���*:F�/�F��-�tI����/�I� �x3^k=��Â�����w�| $�M[�Y53�ڊ�*S,��|�2�G��?n��)U��F%n|�u �} ��n[�*}=�Iֆ!��h(�� }<.v�_`�PnR��(����D��mR��|�?�RG�\�|�')
2018-12-17T22:58:41.688619883Z 63 PC: 12b2e | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:41.69611249Z 66 PC: 12b46 | Move file pointer
2018-12-17T22:58:41.699048801Z 87 PC: 12b5c | Get or set file date and time
2018-12-17T22:58:41.707749124Z 64 PC: 12b8f | Write file or device (Write 2980 bytes on handle 5)
2018-12-17T22:58:41.717143932Z 66 PC: 12b9e | Move file pointer
2018-12-17T22:58:41.719368376Z 64 PC: 12ba8 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:41.722377299Z 87 PC: 12baf | Get or set file date and time
2018-12-17T22:58:41.723951586Z 62 PC: 12bb3 | Close file
2018-12-17T22:58:41.732699224Z 79 PC: 12ad1 | Find next file
2018-12-17T22:58:41.73656009Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:58:41.747715799Z 61 PC: 12b21 | Open file (Filename = '�������!���h�U�x�0:����i�y�˜�Y?���j� $7 l�I�Eׁ�٦.�L���*�Ιߢ��~')
2018-12-17T22:58:41.756223391Z 63 PC: 12b2e | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:41.763490644Z 66 PC: 12b46 | Move file pointer
2018-12-17T22:58:41.765330061Z 87 PC: 12b5c | Get or set file date and time
2018-12-17T22:58:41.773782441Z 64 PC: 12b8f | Write file or device (Write 3043 bytes on handle 5)
2018-12-17T22:58:41.783204928Z 66 PC: 12b9e | Move file pointer
2018-12-17T22:58:41.78656593Z 64 PC: 12ba8 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:41.790115987Z 87 PC: 12baf | Get or set file date and time
2018-12-17T22:58:41.792010866Z 62 PC: 12bb3 | Close file
2018-12-17T22:58:41.800645306Z 37 PC: 12b03 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:58:41.801838592Z 26 PC: 12b0c | Set disk transfer address