Sample viewer

vx.netlux.org/Virus.DOS.Grog.557

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:01:54.968842397Z 46 PC: 12a76 | Set verify flag
2018-12-17T23:01:54.970917135Z 26 PC: 12a9f | Set disk transfer address
2018-12-17T23:01:54.97368701Z 78 PC: 12ab7 | Find first file
2018-12-17T23:01:54.981782482Z 61 PC: 12ac2 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:01:54.989007136Z 63 PC: 12acf | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:01:55.003581571Z 66 PC: 12b9f | Move file pointer
2018-12-17T23:01:55.008373756Z 64 PC: 12bd8 | Write file or device (Write 557 bytes on handle 5)
2018-12-17T23:01:55.41830716Z 62 PC: 12bdd | Close file
2018-12-17T23:01:55.428856642Z 79 PC: 12ae1 | Find next file
2018-12-17T23:01:55.432232545Z 61 PC: 12ac2 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:01:55.439766752Z 63 PC: 12acf | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:01:55.447576997Z 66 PC: 12b9f | Move file pointer
2018-12-17T23:01:55.450115797Z 64 PC: 12bd8 | Write file or device (Write 557 bytes on handle 5)
2018-12-17T23:01:55.459865367Z 62 PC: 12bdd | Close file
2018-12-17T23:01:55.469410653Z 79 PC: 12ae1 | Find next file
2018-12-17T23:01:55.474124699Z 61 PC: 12ac2 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:01:55.482694853Z 63 PC: 12acf | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:01:55.490333316Z 66 PC: 12b9f | Move file pointer
2018-12-17T23:01:55.493687769Z 64 PC: 12bd8 | Write file or device (Write 557 bytes on handle 5)
2018-12-17T23:01:55.503407101Z 62 PC: 12bdd | Close file
2018-12-17T23:01:55.513150458Z 79 PC: 12ae1 | Find next file
2018-12-17T23:01:55.51761664Z 61 PC: 12ac2 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:01:55.525461851Z 63 PC: 12acf | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:01:55.532896911Z 66 PC: 12b9f | Move file pointer
2018-12-17T23:01:55.535081857Z 64 PC: 12bd8 | Write file or device (Write 557 bytes on handle 5)
2018-12-17T23:01:55.545437885Z 62 PC: 12bdd | Close file
2018-12-17T23:01:55.55446139Z 79 PC: 12ae1 | Find next file
2018-12-17T23:01:55.557660902Z 61 PC: 12ac2 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:01:55.56624983Z 63 PC: 12acf | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:01:55.574122533Z 66 PC: 12b9f | Move file pointer
2018-12-17T23:01:55.576220345Z 64 PC: 12bd8 | Write file or device (Write 557 bytes on handle 5)
2018-12-17T23:01:55.586487266Z 62 PC: 12bdd | Close file
2018-12-17T23:01:55.595937072Z 79 PC: 12ae1 | Find next file
2018-12-17T23:01:55.599491581Z 61 PC: 12ac2 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:01:55.608740009Z 63 PC: 12acf | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:01:55.616505309Z 66 PC: 12b9f | Move file pointer
2018-12-17T23:01:55.618408696Z 64 PC: 12bd8 | Write file or device (Write 557 bytes on handle 5)
2018-12-17T23:01:55.628845627Z 62 PC: 12bdd | Close file
2018-12-17T23:01:55.63831042Z 79 PC: 12ae1 | Find next file
2018-12-17T23:01:55.641392672Z 61 PC: 12ac2 | Open file (Filename = 'PAH.COM')
2018-12-17T23:01:55.64890078Z 63 PC: 12acf | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:01:55.657089295Z 66 PC: 12b9f | Move file pointer
2018-12-17T23:01:55.658823374Z 64 PC: 12bd8 | Write file or device (Write 557 bytes on handle 5)
2018-12-17T23:01:55.668036485Z 62 PC: 12bdd | Close file
2018-12-17T23:01:55.678428001Z 79 PC: 12ae1 | Find next file
2018-12-17T23:01:55.681671935Z 61 PC: 12ac2 | Open file (Filename = 'TEST.COM')
2018-12-17T23:01:55.690879046Z 63 PC: 12acf | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:01:55.69488897Z 62 PC: 12add | Close file
2018-12-17T23:01:55.696940906Z 79 PC: 12ae1 | Find next file
2018-12-17T23:01:55.700496958Z 78 PC: 12ab7 | Find first file
2018-12-17T23:01:55.710062942Z 61 PC: 12ac2 | Open file (Filename = 'TEST.COM')
2018-12-17T23:01:55.71823673Z 63 PC: 12acf | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:01:55.721448956Z 62 PC: 12add | Close file
2018-12-17T23:01:55.724705545Z 79 PC: 12ae1 | Find next file
2018-12-17T23:01:55.728024651Z 2 PC: 12a94 | Character output (Char = '49')
2018-12-17T23:01:55.730797501Z 2 PC: 12a94 | Character output (Char = '6c')
2018-12-17T23:01:55.733618041Z 2 PC: 12a94 | Character output (Char = '6c')
2018-12-17T23:01:55.736666499Z 2 PC: 12a94 | Character output (Char = '65')
2018-12-17T23:01:55.739204368Z 2 PC: 12a94 | Character output (Char = '67')
2018-12-17T23:01:55.741630777Z 2 PC: 12a94 | Character output (Char = '61')
2018-12-17T23:01:55.744987635Z 2 PC: 12a94 | Character output (Char = '6c')
2018-12-17T23:01:55.748207083Z 2 PC: 12a94 | Character output (Char = '20')
2018-12-17T23:01:55.751745051Z 2 PC: 12a94 | Character output (Char = '63')
2018-12-17T23:01:55.755442398Z 2 PC: 12a94 | Character output (Char = '6f')
2018-12-17T23:01:55.758481619Z 2 PC: 12a94 | Character output (Char = '70')
2018-12-17T23:01:55.761327917Z 2 PC: 12a94 | Character output (Char = '79')
2018-12-17T23:01:55.765159026Z 2 PC: 12a94 | Character output (Char = '07')