Sample viewer

vx.netlux.org/Virus.DOS.Sochi.703

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:01:28.275112671Z 78 PC: 12c05 | Find first file
2018-12-17T23:01:28.282384172Z 61 PC: 12c17 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:01:28.291255885Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.292947903Z 63 PC: 12c2b | Read file or device (Read 1 bytes on handle 5)
2018-12-17T23:01:28.299976211Z 66 PC: 12c60 | Move file pointer
2018-12-17T23:01:28.301778379Z 64 PC: 12c6d | Write file or device (Write 703 bytes on handle 5)
2018-12-17T23:01:28.316094347Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.318368986Z 63 PC: 12c8c | Read file or device (Read 395 bytes on handle 5)
2018-12-17T23:01:28.324739135Z 66 PC: 12c60 | Move file pointer
2018-12-17T23:01:28.326477392Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.328749835Z 64 PC: 12c6d | Write file or device (Write 395 bytes on handle 5)
2018-12-17T23:01:28.336332791Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.337744498Z 64 PC: 12c6d | Write file or device (Write 395 bytes on handle 5)
2018-12-17T23:01:28.342048458Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.343745458Z 64 PC: 12c6d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:01:28.346735829Z 66 PC: 12c60 | Move file pointer
2018-12-17T23:01:28.349489604Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.35101568Z 64 PC: 12c6d | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:01:28.354245968Z 62 PC: 12cf2 | Close file
2018-12-17T23:01:28.362666389Z 79 PC: 12c05 | Find next file
2018-12-17T23:01:28.365945323Z 61 PC: 12c17 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:01:28.372503454Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.374601088Z 63 PC: 12c2b | Read file or device (Read 1 bytes on handle 5)
2018-12-17T23:01:28.381613774Z 66 PC: 12c60 | Move file pointer
2018-12-17T23:01:28.384036079Z 62 PC: 12cf2 | Close file
2018-12-17T23:01:28.386133278Z 79 PC: 12c05 | Find next file
2018-12-17T23:01:28.389416654Z 61 PC: 12c17 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:01:28.395934534Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.397628272Z 63 PC: 12c2b | Read file or device (Read 1 bytes on handle 5)
2018-12-17T23:01:28.404569876Z 66 PC: 12c60 | Move file pointer
2018-12-17T23:01:28.40626407Z 62 PC: 12cf2 | Close file
2018-12-17T23:01:28.408189934Z 79 PC: 12c05 | Find next file
2018-12-17T23:01:28.411578156Z 61 PC: 12c17 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:01:28.418242235Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.419883308Z 63 PC: 12c2b | Read file or device (Read 1 bytes on handle 5)
2018-12-17T23:01:28.427526163Z 66 PC: 12c60 | Move file pointer
2018-12-17T23:01:28.431044027Z 62 PC: 12cf2 | Close file
2018-12-17T23:01:28.436273209Z 79 PC: 12c05 | Find next file
2018-12-17T23:01:28.441626952Z 61 PC: 12c17 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:01:28.450665908Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.453892434Z 63 PC: 12c2b | Read file or device (Read 1 bytes on handle 5)
2018-12-17T23:01:28.46704319Z 66 PC: 12c60 | Move file pointer
2018-12-17T23:01:28.469951766Z 62 PC: 12cf2 | Close file
2018-12-17T23:01:28.474482677Z 79 PC: 12c05 | Find next file
2018-12-17T23:01:28.480982758Z 61 PC: 12c17 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:01:28.489142899Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.491009482Z 63 PC: 12c2b | Read file or device (Read 1 bytes on handle 5)
2018-12-17T23:01:28.497727556Z 66 PC: 12c60 | Move file pointer
2018-12-17T23:01:28.499838585Z 64 PC: 12c6d | Write file or device (Write 703 bytes on handle 5)
2018-12-17T23:01:28.509407715Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.511465494Z 63 PC: 12c8c | Read file or device (Read 395 bytes on handle 5)
2018-12-17T23:01:28.518766486Z 66 PC: 12c60 | Move file pointer
2018-12-17T23:01:28.520631518Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.522019347Z 64 PC: 12c6d | Write file or device (Write 395 bytes on handle 5)
2018-12-17T23:01:28.529981692Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.531782451Z 64 PC: 12c6d | Write file or device (Write 395 bytes on handle 5)
2018-12-17T23:01:28.534544051Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.536516195Z 64 PC: 12c6d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:01:28.539516258Z 66 PC: 12c60 | Move file pointer
2018-12-17T23:01:28.541257823Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.543455892Z 64 PC: 12c6d | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:01:28.547004712Z 62 PC: 12cf2 | Close file
2018-12-17T23:01:28.555299931Z 79 PC: 12c05 | Find next file
2018-12-17T23:01:28.558690627Z 61 PC: 12c17 | Open file (Filename = 'PAH.COM')
2018-12-17T23:01:28.566083541Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.567906885Z 63 PC: 12c2b | Read file or device (Read 1 bytes on handle 5)
2018-12-17T23:01:28.575495672Z 66 PC: 12c60 | Move file pointer
2018-12-17T23:01:28.577396868Z 62 PC: 12cf2 | Close file
2018-12-17T23:01:28.579503014Z 79 PC: 12c05 | Find next file
2018-12-17T23:01:28.583324825Z 61 PC: 12c17 | Open file (Filename = 'TEST.COM')
2018-12-17T23:01:28.591394477Z 66 PC: 12c68 | Move file pointer
2018-12-17T23:01:28.593050266Z 63 PC: 12c2b | Read file or device (Read 1 bytes on handle 5)
2018-12-17T23:01:28.596781313Z 62 PC: 12cf2 | Close file
2018-12-17T23:01:28.599480729Z 79 PC: 12c05 | Find next file