Sample viewer

vx.netlux.org/Virus.DOS.DHeart.553

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:02:54.058944787Z 26 PC: 12a99 | Set disk transfer address
2018-12-17T23:02:54.06084423Z 25 PC: 12a9d | Get default drive
2018-12-17T23:02:54.06199353Z 14 PC: 12aa6 | Set default drive (Drive = 'A')
2018-12-17T23:02:54.063236451Z 14 PC: 12ac8 | Set default drive (Drive = 'E')
2018-12-17T23:02:54.06462762Z 78 PC: 12ad2 | Find first file
2018-12-17T23:02:54.078583804Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T23:02:54.43203254Z 61 PC: 12b4f | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:02:54.438934863Z 63 PC: 12b62 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T23:02:54.446561467Z 66 PC: 12b86 | Move file pointer
2018-12-17T23:02:54.448586726Z 64 PC: 12b97 | Write file or device (Write 553 bytes on handle 5)
2018-12-17T23:02:54.759261712Z 66 PC: 12ba7 | Move file pointer
2018-12-17T23:02:54.762522369Z 64 PC: 12bbd | Write file or device (Write 6 bytes on handle 5)
2018-12-17T23:02:54.769540441Z 62 PC: 12bc5 | Close file
2018-12-17T23:02:54.777383032Z 14 PC: 12ac8 | Set default drive (Drive = 'D')
2018-12-17T23:02:54.779263724Z 78 PC: 12ad2 | Find first file
2018-12-17T23:02:54.785632749Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T23:02:54.796046937Z 61 PC: 12b4f | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:02:54.805232484Z 63 PC: 12b62 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T23:02:54.807937302Z 62 PC: 12adc | Close file
2018-12-17T23:02:54.809687819Z 79 PC: 12ae0 | Find next file
2018-12-17T23:02:54.812926066Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T23:02:54.824831702Z 61 PC: 12b4f | Open file (Filename = 'PRINT.COM')
2018-12-17T23:02:54.832030382Z 63 PC: 12b62 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T23:02:54.836484645Z 66 PC: 12b86 | Move file pointer
2018-12-17T23:02:54.837752462Z 64 PC: 12b97 | Write file or device (Write 553 bytes on handle 5)
2018-12-17T23:02:54.845551418Z 66 PC: 12ba7 | Move file pointer
2018-12-17T23:02:54.847618324Z 64 PC: 12bbd | Write file or device (Write 6 bytes on handle 5)
2018-12-17T23:02:54.853645108Z 62 PC: 12bc5 | Close file
2018-12-17T23:02:54.861060519Z 14 PC: 12ac8 | Set default drive (Drive = 'C')
2018-12-17T23:02:54.862702165Z 78 PC: 12ad2 | Find first file
2018-12-17T23:02:54.86628394Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T23:02:55.205463251Z 61 PC: 12b4f | Open file (Filename = 'COMMAND.COM')
2018-12-17T23:02:55.214609832Z 63 PC: 12b62 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T23:02:55.218374373Z 66 PC: 12b86 | Move file pointer
2018-12-17T23:02:55.220446761Z 64 PC: 12b97 | Write file or device (Write 553 bytes on handle 5)
2018-12-17T23:02:55.228867537Z 66 PC: 12ba7 | Move file pointer
2018-12-17T23:02:55.231197615Z 64 PC: 12bbd | Write file or device (Write 6 bytes on handle 5)
2018-12-17T23:02:55.234981644Z 62 PC: 12bc5 | Close file
2018-12-17T23:02:55.242644651Z 14 PC: 12ac8 | Set default drive (Drive = 'A')
2018-12-17T23:02:55.244385553Z 78 PC: 12ad2 | Find first file
2018-12-17T23:02:55.251676777Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T23:02:55.261797522Z 61 PC: 12b4f | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:02:55.268828559Z 63 PC: 12b62 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T23:02:55.276342198Z 62 PC: 12adc | Close file
2018-12-17T23:02:55.27841178Z 79 PC: 12ae0 | Find next file
2018-12-17T23:02:55.282531437Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T23:02:55.293604233Z 61 PC: 12b4f | Open file (Filename = 'PRINT.COM')
2018-12-17T23:02:55.306167173Z 63 PC: 12b62 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T23:02:55.309675592Z 62 PC: 12adc | Close file
2018-12-17T23:02:55.311454784Z 79 PC: 12ae0 | Find next file
2018-12-17T23:02:55.31421038Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T23:02:55.324597329Z 61 PC: 12b4f | Open file (Filename = 'HELLO.COM')
2018-12-17T23:02:55.332302967Z 63 PC: 12b62 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T23:02:55.339206088Z 66 PC: 12b86 | Move file pointer
2018-12-17T23:02:55.342609335Z 64 PC: 12b97 | Write file or device (Write 553 bytes on handle 5)
2018-12-17T23:02:55.351125986Z 66 PC: 12ba7 | Move file pointer
2018-12-17T23:02:55.353032131Z 64 PC: 12bbd | Write file or device (Write 6 bytes on handle 5)
2018-12-17T23:02:55.361349551Z 62 PC: 12bc5 | Close file
2018-12-17T23:02:55.370404624Z 14 PC: 12c03 | Set default drive (Drive = 'A')
2018-12-17T23:02:55.372141285Z 9 PC: 12c0a | Display string (String= '  From Russia with love !!!  ')
2018-12-17T23:02:55.378662451Z 26 PC: 12c13 | Set disk transfer address
2018-12-17T23:02:55.380677019Z 76 PC: 12a45 | Terminate with return code (Return code = '0')