Sample viewer

vx.netlux.org/Virus.DOS.IVP.Birgit.323

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:02:08.873352493Z 26 PC: 12b53 | Set disk transfer address
2018-12-17T23:02:08.876479514Z 53 PC: 12a6a | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:02:08.878168544Z 37 PC: 12a7c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:02:08.879822867Z 78 PC: 12aa7 | Find first file
2018-12-17T23:02:08.886886058Z 61 PC: 12b5c | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:02:08.895127736Z 63 PC: 12ac2 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T23:02:08.902474827Z 62 PC: 12ac6 | Close file
2018-12-17T23:02:08.904882984Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:08.924472756Z 61 PC: 12b5c | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:02:08.931803716Z 64 PC: 12b16 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:02:08.934880584Z 66 PC: 12b4e | Move file pointer
2018-12-17T23:02:08.937610001Z 64 PC: 12b28 | Write file or device (Write 323 bytes on handle 5)
2018-12-17T23:02:08.94678896Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T23:02:08.949094273Z 62 PC: 12b3b | Close file
2018-12-17T23:02:08.957831099Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:08.964417988Z 79 PC: 12aa7 | Find next file
2018-12-17T23:02:08.966199076Z 61 PC: 12b5c | Open file (Filename = 'PRINT.COM')
2018-12-17T23:02:08.970725843Z 63 PC: 12ac2 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T23:02:08.977938479Z 62 PC: 12ac6 | Close file
2018-12-17T23:02:08.979888458Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:08.994586917Z 61 PC: 12b5c | Open file (Filename = 'PRINT.COM')
2018-12-17T23:02:09.000795289Z 64 PC: 12b16 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:02:09.00344392Z 66 PC: 12b4e | Move file pointer
2018-12-17T23:02:09.004835482Z 64 PC: 12b28 | Write file or device (Write 323 bytes on handle 5)
2018-12-17T23:02:09.007979879Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T23:02:09.009250381Z 62 PC: 12b3b | Close file
2018-12-17T23:02:09.014714384Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:09.027262118Z 79 PC: 12aa7 | Find next file
2018-12-17T23:02:09.029296041Z 61 PC: 12b5c | Open file (Filename = 'HELLO.COM')
2018-12-17T23:02:09.033637822Z 63 PC: 12ac2 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T23:02:09.03970741Z 62 PC: 12ac6 | Close file
2018-12-17T23:02:09.041690542Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:09.05276675Z 61 PC: 12b5c | Open file (Filename = 'HELLO.COM')
2018-12-17T23:02:09.060772049Z 64 PC: 12b16 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:02:09.064219004Z 66 PC: 12b4e | Move file pointer
2018-12-17T23:02:09.06609883Z 64 PC: 12b28 | Write file or device (Write 323 bytes on handle 5)
2018-12-17T23:02:09.071088568Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T23:02:09.0728636Z 62 PC: 12b3b | Close file
2018-12-17T23:02:09.081271933Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:09.092972941Z 79 PC: 12aa7 | Find next file
2018-12-17T23:02:09.096479316Z 61 PC: 12b5c | Open file (Filename = 'PHANG.COM')
2018-12-17T23:02:09.104122903Z 63 PC: 12ac2 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T23:02:09.114937977Z 62 PC: 12ac6 | Close file
2018-12-17T23:02:09.118114918Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:09.127219097Z 61 PC: 12b5c | Open file (Filename = 'PHANG.COM')
2018-12-17T23:02:09.131727168Z 64 PC: 12b16 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:02:09.135451099Z 66 PC: 12b4e | Move file pointer
2018-12-17T23:02:09.136768842Z 64 PC: 12b28 | Write file or device (Write 323 bytes on handle 5)
2018-12-17T23:02:09.138716049Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T23:02:09.140438678Z 62 PC: 12b3b | Close file
2018-12-17T23:02:09.145601103Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:09.159997539Z 79 PC: 12aa7 | Find next file
2018-12-17T23:02:09.163630009Z 61 PC: 12b5c | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:02:09.171284737Z 63 PC: 12ac2 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T23:02:09.178532919Z 62 PC: 12ac6 | Close file
2018-12-17T23:02:09.180885014Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:09.186953324Z 61 PC: 12b5c | Open file (Filename = 'PRINTA~1.COM�')
2018-12-17T23:02:09.192448939Z 64 PC: 12b16 | Write file or device (Write 3 bytes on handle 2)
2018-12-17T23:02:09.197002273Z 66 PC: 12b4e | Move file pointer
2018-12-17T23:02:09.199541184Z 64 PC: 12b28 | Write file or device (Write 323 bytes on handle 2)
2018-12-17T23:02:09.207122122Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T23:02:09.209250707Z 62 PC: 12b3b | Close file
2018-12-17T23:02:09.213515472Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:09.219578674Z 79 PC: 12aa7 | Find next file
2018-12-17T23:02:09.223075866Z 61 PC: 12b5c | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:02:09.232012012Z 63 PC: 12ac2 | Read file or device (Read 26 bytes on handle 2)
2018-12-17T23:02:09.238396694Z 62 PC: 12ac6 | Close file
2018-12-17T23:02:09.240909027Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:09.253283847Z 61 PC: 12b5c | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:02:09.260767273Z 64 PC: 12b16 | Write file or device (Write 3 bytes on handle 2)
2018-12-17T23:02:09.263890698Z 66 PC: 12b4e | Move file pointer
2018-12-17T23:02:09.266493629Z 64 PC: 12b28 | Write file or device (Write 323 bytes on handle 2)
2018-12-17T23:02:09.275308544Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T23:02:09.276979948Z 62 PC: 12b3b | Close file
2018-12-17T23:02:09.287774709Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:09.299255328Z 79 PC: 12aa7 | Find next file
2018-12-17T23:02:09.302085279Z 61 PC: 12b5c | Open file (Filename = 'PAH.COM')
2018-12-17T23:02:09.309289749Z 63 PC: 12ac2 | Read file or device (Read 26 bytes on handle 2)
2018-12-17T23:02:09.316750782Z 62 PC: 12ac6 | Close file
2018-12-17T23:02:09.318702905Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:09.330720484Z 61 PC: 12b5c | Open file (Filename = 'PAH.COM')
2018-12-17T23:02:09.338861946Z 64 PC: 12b16 | Write file or device (Write 3 bytes on handle 2)
2018-12-17T23:02:09.34220128Z 66 PC: 12b4e | Move file pointer
2018-12-17T23:02:09.344169355Z 64 PC: 12b28 | Write file or device (Write 323 bytes on handle 2)
2018-12-17T23:02:09.348711945Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T23:02:09.350463832Z 62 PC: 12b3b | Close file
2018-12-17T23:02:09.35853105Z 67 PC: 12b67 | Get or set file attributes
2018-12-17T23:02:09.370025852Z 79 PC: 12aa7 | Find next file
2018-12-17T23:02:09.373557198Z 61 PC: 12b5c | Open file (Filename = 'TEST.COM')
2018-12-17T23:02:09.380938051Z 63 PC: 12ac2 | Read file or device (Read 26 bytes on handle 2)
2018-12-17T23:02:09.388804019Z 62 PC: 12ac6 | Close file
2018-12-17T23:02:09.390906382Z 79 PC: 12aa7 | Find next file
2018-12-17T23:02:09.39410314Z 9 PC: 12a8d | Display string (String= 'Birgit [IVP] ')
2018-12-17T23:02:09.402407145Z 37 PC: 12a97 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:02:09.403725528Z 26 PC: 12b53 | Set disk transfer address