Sample viewer

vx.netlux.org/Virus.DOS.Occido.305

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:59:08.275078752Z 78 PC: 12a7b | Find first file
2018-12-17T22:59:08.282625425Z 61 PC: 12a88 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:59:08.28976301Z 63 PC: 12a94 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:59:08.300497875Z 66 PC: 12ab1 | Move file pointer
2018-12-17T22:59:08.302493797Z 64 PC: 12abc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:59:08.30650761Z 66 PC: 12ac4 | Move file pointer
2018-12-17T22:59:08.308548987Z 64 PC: 12af6 | Write file or device (Write 305 bytes on handle 5)
2018-12-17T22:59:08.324299239Z 62 PC: 12afd | Close file
2018-12-17T22:59:08.336241794Z 79 PC: 12a7b | Find next file
2018-12-17T22:59:08.339895761Z 61 PC: 12a88 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:59:08.347288486Z 63 PC: 12a94 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:59:08.356702649Z 66 PC: 12ab1 | Move file pointer
2018-12-17T22:59:08.362308715Z 64 PC: 12abc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:59:08.36530655Z 66 PC: 12ac4 | Move file pointer
2018-12-17T22:59:08.367317429Z 64 PC: 12af6 | Write file or device (Write 305 bytes on handle 5)
2018-12-17T22:59:08.371902396Z 62 PC: 12afd | Close file
2018-12-17T22:59:08.383755373Z 79 PC: 12a7b | Find next file
2018-12-17T22:59:08.387211369Z 61 PC: 12a88 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:59:08.395952817Z 63 PC: 12a94 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:59:08.402994121Z 66 PC: 12ab1 | Move file pointer
2018-12-17T22:59:08.404818149Z 64 PC: 12abc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:59:08.408900001Z 66 PC: 12ac4 | Move file pointer
2018-12-17T22:59:08.411530875Z 64 PC: 12af6 | Write file or device (Write 305 bytes on handle 5)
2018-12-17T22:59:08.414718125Z 62 PC: 12afd | Close file
2018-12-17T22:59:08.424248137Z 79 PC: 12a7b | Find next file
2018-12-17T22:59:08.427588074Z 61 PC: 12a88 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:59:08.434872254Z 63 PC: 12a94 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:59:08.442955276Z 66 PC: 12ab1 | Move file pointer
2018-12-17T22:59:08.445188363Z 64 PC: 12abc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:59:08.448343001Z 66 PC: 12ac4 | Move file pointer
2018-12-17T22:59:08.450905928Z 64 PC: 12af6 | Write file or device (Write 305 bytes on handle 5)
2018-12-17T22:59:08.461050845Z 62 PC: 12afd | Close file
2018-12-17T22:59:08.470313143Z 79 PC: 12a7b | Find next file
2018-12-17T22:59:08.47425975Z 61 PC: 12a88 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:59:08.482443502Z 63 PC: 12a94 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:59:08.48985484Z 66 PC: 12ab1 | Move file pointer
2018-12-17T22:59:08.491400956Z 64 PC: 12abc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:59:08.495390695Z 66 PC: 12ac4 | Move file pointer
2018-12-17T22:59:08.497563569Z 64 PC: 12af6 | Write file or device (Write 305 bytes on handle 5)
2018-12-17T22:59:08.501023762Z 62 PC: 12afd | Close file