Sample viewer

vx.netlux.org/Virus.DOS.Mini.76

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:58:51.969621807Z 78 PC: 12a5a | Find first file
2018-12-17T22:58:51.97621051Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:58:51.984257681Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:58:51.991192654Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:58:51.99262173Z 64 PC: 12a82 | Write file or device (Write 483 bytes on handle 5)
2018-12-17T22:58:51.996178559Z 79 PC: 12a5a | Find next file
2018-12-17T22:58:51.999655644Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:58:52.007432441Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 6)
2018-12-17T22:58:52.014359985Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:58:52.016136485Z 64 PC: 12a82 | Write file or device (Write 103 bytes on handle 6)
2018-12-17T22:58:52.019099725Z 79 PC: 12a5a | Find next file
2018-12-17T22:58:52.022033766Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:58:52.029586379Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 7)
2018-12-17T22:58:52.03442089Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:58:52.035469363Z 64 PC: 12a82 | Write file or device (Write 168 bytes on handle 7)
2018-12-17T22:58:52.037791986Z 79 PC: 12a5a | Find next file
2018-12-17T22:58:52.040797976Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:58:52.048015254Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 8)
2018-12-17T22:58:52.055380205Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:58:52.056987172Z 64 PC: 12a82 | Write file or device (Write 105 bytes on handle 8)
2018-12-17T22:58:52.059925966Z 79 PC: 12a5a | Find next file
2018-12-17T22:58:52.063252303Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:58:52.071133394Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 9)
2018-12-17T22:58:52.078405543Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:58:52.079879732Z 64 PC: 12a82 | Write file or device (Write 105 bytes on handle 9)
2018-12-17T22:58:52.083030396Z 79 PC: 12a5a | Find next file
2018-12-17T22:58:52.08586394Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:58:52.093081493Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 10)
2018-12-17T22:58:52.101284479Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:58:52.10293868Z 64 PC: 12a82 | Write file or device (Write 577 bytes on handle 10)
2018-12-17T22:58:52.11819866Z 79 PC: 12a5a | Find next file
2018-12-17T22:58:52.122436853Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:58:52.13071846Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 11)
2018-12-17T22:58:52.138190679Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:58:52.140509227Z 64 PC: 12a82 | Write file or device (Write 105 bytes on handle 11)
2018-12-17T22:58:52.14368423Z 79 PC: 12a5a | Find next file
2018-12-17T22:58:52.146599137Z 61 PC: 12a65 | Open file (Filename = '')
2018-12-17T22:58:52.155219214Z 63 PC: 12a6f | Read file or device (Read 65530 bytes on handle 12)
2018-12-17T22:58:52.158249914Z 66 PC: 12a7b | Move file pointer
2018-12-17T22:58:52.159999345Z 64 PC: 12a82 | Write file or device (Write 153 bytes on handle 12)
2018-12-17T22:58:52.163082292Z 79 PC: 12a5a | Find next file
2018-12-17T22:58:52.17407934Z 77 PC: 11fe0 | Get program return code
2018-12-17T22:58:52.175414877Z 72 PC: 12174 | Allocate memory
2018-12-17T22:58:52.177428994Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:58:52.18019622Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:58:52.184707894Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:58:52.187503521Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:58:52.190928555Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:58:52.19497901Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:58:52.197965503Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:58:52.201705062Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:58:52.204480633Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:58:52.207234766Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:58:52.210055579Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:58:52.212550185Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:58:52.214266157Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:58:52.216300726Z 2 PC: 1268d | Character output (Char = '63')
2018-12-17T22:58:52.21790174Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:58:52.219440984Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:58:52.220967254Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T22:58:52.223279831Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:58:52.225657565Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:58:52.228054551Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:58:52.230866047Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:58:52.233268061Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:58:52.235673321Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:58:52.238712526Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:58:52.241362153Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:58:52.243895189Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:58:52.246724666Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:58:52.251761591Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:58:52.254146313Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:58:52.258785311Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:58:52.262135949Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:58:52.264828491Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:58:52.26822725Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:58:52.270854342Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:58:52.273585055Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:58:52.276580986Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:58:52.279531978Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:58:52.282332388Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:58:52.289931514Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:58:52.294039275Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:58:52.297062976Z 2 PC: 1268d | Character output (Char = '4f')
2018-12-17T22:58:52.299032434Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:58:52.301480451Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:58:52.303137775Z 2 PC: 1268d | Character output (Char = '41')
2018-12-17T22:58:52.304895114Z 2 PC: 1268d | Character output (Char = '4e')
2018-12-17T22:58:52.307194811Z 2 PC: 1268d | Character output (Char = '44')
2018-12-17T22:58:52.308957334Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T22:58:52.310625751Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:58:52.313177221Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:58:52.315615415Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:58:52.317580867Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:58:52.322300643Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:58:52.325039689Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:58:52.327458357Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:58:52.329483088Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:58:52.337365191Z 2 PC: 1268d | Character output (Char = '68')
2018-12-17T22:58:52.340197631Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:58:52.345274558Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:58:52.347890604Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:58:52.350408206Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:58:52.354436238Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:58:52.35710118Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:58:52.359718327Z 2 PC: 1268d | Character output (Char = '0a')