Sample viewer

vx.netlux.org/Virus.DOS.Mini.80.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:00:32.341851472Z 78 PC: 12a5e | Find first file
2018-12-17T23:00:32.348400162Z 61 PC: 12a69 | Open file (Filename = '')
2018-12-17T23:00:32.354903958Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T23:00:32.361048114Z 66 PC: 12a7f | Move file pointer
2018-12-17T23:00:32.362587277Z 64 PC: 12a86 | Write file or device (Write 487 bytes on handle 5)
2018-12-17T23:00:32.365542893Z 79 PC: 12a5e | Find next file
2018-12-17T23:00:32.368420705Z 61 PC: 12a69 | Open file (Filename = '')
2018-12-17T23:00:32.375049546Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 6)
2018-12-17T23:00:32.38176052Z 66 PC: 12a7f | Move file pointer
2018-12-17T23:00:32.383071777Z 64 PC: 12a86 | Write file or device (Write 107 bytes on handle 6)
2018-12-17T23:00:32.386044982Z 79 PC: 12a5e | Find next file
2018-12-17T23:00:32.389929003Z 61 PC: 12a69 | Open file (Filename = '')
2018-12-17T23:00:32.396648492Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 7)
2018-12-17T23:00:32.403444026Z 66 PC: 12a7f | Move file pointer
2018-12-17T23:00:32.40624633Z 64 PC: 12a86 | Write file or device (Write 172 bytes on handle 7)
2018-12-17T23:00:32.408872378Z 79 PC: 12a5e | Find next file
2018-12-17T23:00:32.411401678Z 61 PC: 12a69 | Open file (Filename = '')
2018-12-17T23:00:32.424641115Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 8)
2018-12-17T23:00:32.43090134Z 66 PC: 12a7f | Move file pointer
2018-12-17T23:00:32.432490899Z 64 PC: 12a86 | Write file or device (Write 109 bytes on handle 8)
2018-12-17T23:00:32.436451754Z 79 PC: 12a5e | Find next file
2018-12-17T23:00:32.439273206Z 61 PC: 12a69 | Open file (Filename = '')
2018-12-17T23:00:32.445608502Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 9)
2018-12-17T23:00:32.451791671Z 66 PC: 12a7f | Move file pointer
2018-12-17T23:00:32.453346323Z 64 PC: 12a86 | Write file or device (Write 109 bytes on handle 9)
2018-12-17T23:00:32.45604313Z 79 PC: 12a5e | Find next file
2018-12-17T23:00:32.458521564Z 61 PC: 12a69 | Open file (Filename = '')
2018-12-17T23:00:32.465200411Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 10)
2018-12-17T23:00:32.471693563Z 66 PC: 12a7f | Move file pointer
2018-12-17T23:00:32.472945918Z 64 PC: 12a86 | Write file or device (Write 581 bytes on handle 10)
2018-12-17T23:00:32.487485981Z 79 PC: 12a5e | Find next file
2018-12-17T23:00:32.491256096Z 61 PC: 12a69 | Open file (Filename = '')
2018-12-17T23:00:32.497995472Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 11)
2018-12-17T23:00:32.505199917Z 66 PC: 12a7f | Move file pointer
2018-12-17T23:00:32.506836475Z 64 PC: 12a86 | Write file or device (Write 109 bytes on handle 11)
2018-12-17T23:00:32.509910566Z 79 PC: 12a5e | Find next file
2018-12-17T23:00:32.513506885Z 61 PC: 12a69 | Open file (Filename = '')
2018-12-17T23:00:32.518962905Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 12)
2018-12-17T23:00:32.520990418Z 66 PC: 12a7f | Move file pointer
2018-12-17T23:00:32.523094551Z 64 PC: 12a86 | Write file or device (Write 161 bytes on handle 12)
2018-12-17T23:00:32.525949341Z 79 PC: 12a5e | Find next file
2018-12-17T23:00:32.534619863Z 77 PC: 11fe0 | Get program return code
2018-12-17T23:00:32.536630202Z 72 PC: 12174 | Allocate memory
2018-12-17T23:00:32.539780806Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T23:00:32.542667353Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T23:00:32.547543308Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T23:00:32.551029721Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T23:00:32.553677504Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T23:00:32.556032861Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T23:00:32.55916173Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T23:00:32.56149991Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T23:00:32.564295062Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:32.567772543Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T23:00:32.569914523Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T23:00:32.571821931Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T23:00:32.573973628Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T23:00:32.577444947Z 2 PC: 1268d | Character output (Char = '63')
2018-12-17T23:00:32.579414884Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T23:00:32.581504946Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T23:00:32.584178706Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T23:00:32.586125773Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T23:00:32.587976495Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T23:00:32.591348892Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:32.593708868Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T23:00:32.595965307Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T23:00:32.599187661Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T23:00:32.602720018Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T23:00:32.605044833Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T23:00:32.607861319Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T23:00:32.609753436Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T23:00:32.61319387Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T23:00:32.615868508Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T23:00:32.617918187Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T23:00:32.619823234Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T23:00:32.622476884Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T23:00:32.624476684Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T23:00:32.627336019Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:32.629758921Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T23:00:32.63180565Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T23:00:32.633932291Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T23:00:32.63648078Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T23:00:32.638465436Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:32.640491295Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T23:00:32.642987751Z 2 PC: 1268d | Character output (Char = '4f')
2018-12-17T23:00:32.645374705Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T23:00:32.655262255Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T23:00:32.658014129Z 2 PC: 1268d | Character output (Char = '41')
2018-12-17T23:00:32.660786071Z 2 PC: 1268d | Character output (Char = '4e')
2018-12-17T23:00:32.664463438Z 2 PC: 1268d | Character output (Char = '44')
2018-12-17T23:00:32.666866408Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T23:00:32.669212755Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:32.671668343Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T23:00:32.675457022Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T23:00:32.67858402Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T23:00:32.680960074Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T23:00:32.684351869Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T23:00:32.686911744Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T23:00:32.689311798Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:32.691406868Z 2 PC: 1268d | Character output (Char = '68')
2018-12-17T23:00:32.694091423Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T23:00:32.697384978Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T23:00:32.700208054Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T23:00:32.70450816Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T23:00:32.706626938Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T23:00:32.708652566Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T23:00:32.710854319Z 2 PC: 1268d | Character output (Char = '0a')