Sample viewer

vx.netlux.org/Virus.DOS.XDog.1500

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:01:31.379199127Z 67 PC: 12ca2 | Get or set file attributes
2018-12-17T23:01:31.391204591Z 61 PC: 12cb2 | Open file (Filename = 'C:\DOS\DISKCOPY.COM')
2018-12-17T23:01:31.398483355Z 67 PC: 12ca2 | Get or set file attributes
2018-12-17T23:01:31.405010298Z 61 PC: 12cb2 | Open file (Filename = 'C:\DOS\FORMAT.COM')
2018-12-17T23:01:31.411984362Z 63 PC: 12cc8 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:01:31.416549318Z 87 PC: 12cd5 | Get or set file date and time
2018-12-17T23:01:31.418016436Z 62 PC: 12ce8 | Close file
2018-12-17T23:01:31.419880023Z 53 PC: 12d25 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:31.421396056Z 67 PC: 12d56 | Get or set file attributes
2018-12-17T23:01:31.767443764Z 61 PC: 12d8d | Open file (Filename = '')
2018-12-17T23:01:31.77428288Z 66 PC: 12da6 | Move file pointer
2018-12-17T23:01:31.777172513Z 64 PC: 12dd0 | Write file or device (Write 1500 bytes on handle 5)
2018-12-17T23:01:31.792771974Z 66 PC: 12de3 | Move file pointer
2018-12-17T23:01:31.794342225Z 64 PC: 12df4 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:01:31.798445968Z 87 PC: 12e09 | Get or set file date and time
2018-12-17T23:01:31.800407172Z 62 PC: 12e14 | Close file
2018-12-17T23:01:31.80647113Z 67 PC: 12d6b | Get or set file attributes
2018-12-17T23:01:31.829413052Z 67 PC: 12ca2 | Get or set file attributes
2018-12-17T23:01:31.836312646Z 61 PC: 12cb2 | Open file (Filename = 'C:\WINDOWS\WIN.COM')
2018-12-17T23:01:31.84051222Z 63 PC: 12cc8 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:01:31.857423479Z 87 PC: 12cd5 | Get or set file date and time
2018-12-17T23:01:31.859237655Z 62 PC: 12ce8 | Close file
2018-12-17T23:01:31.861338244Z 53 PC: 12d25 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:31.863646958Z 67 PC: 12d56 | Get or set file attributes
2018-12-17T23:01:31.873442867Z 61 PC: 12d8d | Open file (Filename = '')
2018-12-17T23:01:31.8812608Z 66 PC: 12da6 | Move file pointer
2018-12-17T23:01:31.882958596Z 64 PC: 12dd0 | Write file or device (Write 1500 bytes on handle 5)
2018-12-17T23:01:31.893512676Z 66 PC: 12de3 | Move file pointer
2018-12-17T23:01:31.895138553Z 64 PC: 12df4 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:01:31.898145991Z 87 PC: 12e09 | Get or set file date and time
2018-12-17T23:01:31.90052538Z 62 PC: 12e14 | Close file
2018-12-17T23:01:31.907515566Z 67 PC: 12d6b | Get or set file attributes
2018-12-17T23:01:31.917283359Z 74 PC: 12b2a | Reallocate memory
2018-12-17T23:01:31.919578196Z 75 PC: 12b61 | Execute program
2018-12-17T23:01:31.926731861Z 49 PC: 12b7a | Terminate and stay resident (Return code = '0' | Memory size = '112')