Sample viewer

vx.netlux.org/Virus.DOS.Torm.136.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:01:22.870389577Z 78 PC: 12a5e | Find first file
2018-12-17T23:01:22.877063215Z 61 PC: 12a68 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:01:22.883512246Z 63 PC: 12a77 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:01:22.889689913Z 66 PC: 12a89 | Move file pointer
2018-12-17T23:01:22.891948307Z 64 PC: 12a98 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T23:01:22.907033952Z 66 PC: 12aa3 | Move file pointer
2018-12-17T23:01:22.913168004Z 64 PC: 12aaf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:01:22.920124675Z 62 PC: 12ab5 | Close file
2018-12-17T23:01:22.928765608Z 79 PC: 12a5e | Find next file
2018-12-17T23:01:22.931449032Z 61 PC: 12a68 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:01:22.937893345Z 63 PC: 12a77 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:01:22.944249177Z 66 PC: 12a89 | Move file pointer
2018-12-17T23:01:22.945515812Z 64 PC: 12a98 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T23:01:22.948425882Z 66 PC: 12aa3 | Move file pointer
2018-12-17T23:01:22.950446834Z 64 PC: 12aaf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:01:22.95295936Z 62 PC: 12ab5 | Close file
2018-12-17T23:01:22.961379273Z 79 PC: 12a5e | Find next file
2018-12-17T23:01:22.965103097Z 61 PC: 12a68 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:01:22.971881362Z 63 PC: 12a77 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:01:22.978458016Z 66 PC: 12a89 | Move file pointer
2018-12-17T23:01:22.980849865Z 64 PC: 12a98 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T23:01:22.983753984Z 66 PC: 12aa3 | Move file pointer
2018-12-17T23:01:22.985428673Z 64 PC: 12aaf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:01:22.989016963Z 62 PC: 12ab5 | Close file
2018-12-17T23:01:22.997494494Z 79 PC: 12a5e | Find next file
2018-12-17T23:01:23.000077078Z 61 PC: 12a68 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:01:23.017296811Z 63 PC: 12a77 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:01:23.02383267Z 66 PC: 12a89 | Move file pointer
2018-12-17T23:01:23.025367268Z 64 PC: 12a98 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T23:01:23.029200137Z 66 PC: 12aa3 | Move file pointer
2018-12-17T23:01:23.030902956Z 64 PC: 12aaf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:01:23.033515516Z 62 PC: 12ab5 | Close file
2018-12-17T23:01:23.041228605Z 79 PC: 12a5e | Find next file
2018-12-17T23:01:23.044474886Z 61 PC: 12a68 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:01:23.050971059Z 63 PC: 12a77 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:01:23.057555746Z 66 PC: 12a89 | Move file pointer
2018-12-17T23:01:23.059355645Z 64 PC: 12a98 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T23:01:23.062066934Z 66 PC: 12aa3 | Move file pointer
2018-12-17T23:01:23.063956182Z 64 PC: 12aaf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:01:23.066645003Z 62 PC: 12ab5 | Close file
2018-12-17T23:01:23.074687739Z 79 PC: 12a5e | Find next file
2018-12-17T23:01:23.077669714Z 61 PC: 12a68 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:01:23.09626376Z 63 PC: 12a77 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:01:23.103250043Z 66 PC: 12a89 | Move file pointer
2018-12-17T23:01:23.104907797Z 64 PC: 12a98 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T23:01:23.11427308Z 66 PC: 12aa3 | Move file pointer
2018-12-17T23:01:23.1157597Z 64 PC: 12aaf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:01:23.122319684Z 62 PC: 12ab5 | Close file
2018-12-17T23:01:23.131221777Z 79 PC: 12a5e | Find next file
2018-12-17T23:01:23.134142834Z 61 PC: 12a68 | Open file (Filename = 'PAH.COM')
2018-12-17T23:01:23.140870104Z 63 PC: 12a77 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:01:23.148770019Z 66 PC: 12a89 | Move file pointer
2018-12-17T23:01:23.150443728Z 64 PC: 12a98 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T23:01:23.153311302Z 66 PC: 12aa3 | Move file pointer
2018-12-17T23:01:23.155767725Z 64 PC: 12aaf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:01:23.158313495Z 62 PC: 12ab5 | Close file
2018-12-17T23:01:23.168556116Z 79 PC: 12a5e | Find next file
2018-12-17T23:01:23.179447574Z 61 PC: 12a68 | Open file (Filename = 'TEST.COM')
2018-12-17T23:01:23.185758865Z 63 PC: 12a77 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:01:23.188200174Z 79 PC: 12a5e | Find next file