Sample viewer

vx.netlux.org/Virus.DOS.KF.1361

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:04:17.531180162Z 71 PC: 12eff | Get current directory
2018-12-17T23:04:17.534743554Z 53 PC: 12a97 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:04:17.5383642Z 26 PC: 12aaa | Set disk transfer address
2018-12-17T23:04:17.539743979Z 53 PC: 12ab1 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:04:17.541249169Z 37 PC: 12ac3 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:04:17.543993775Z 53 PC: 12acc | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:04:17.545824147Z 37 PC: 12ad5 | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T23:04:17.547592004Z 78 PC: 12ef0 | Find first file
2018-12-17T23:04:17.555562132Z 78 PC: 12ef0 | Find first file
2018-12-17T23:04:17.562213315Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:04:17.579762031Z 61 PC: 12c8b | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:04:17.601210775Z 63 PC: 12ef0 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:17.60888433Z 66 PC: 12cbe | Move file pointer
2018-12-17T23:04:17.610897079Z 64 PC: 12ef0 | Write file or device (Write 1361 bytes on handle 5)
2018-12-17T23:04:17.62056809Z 66 PC: 12ef0 | Move file pointer
2018-12-17T23:04:17.627009212Z 64 PC: 12ef0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:04:17.637242434Z 87 PC: 12e2b | Get or set file date and time
2018-12-17T23:04:17.639014932Z 62 PC: 12d18 | Close file
2018-12-17T23:04:17.648249958Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:04:17.659854844Z 79 PC: 12d2b | Find next file
2018-12-17T23:04:17.663029775Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:04:17.688237333Z 61 PC: 12c8b | Open file (Filename = 'PRINT.COM')
2018-12-17T23:04:17.69604421Z 63 PC: 12ef0 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:17.703606428Z 66 PC: 12cbe | Move file pointer
2018-12-17T23:04:17.706714814Z 64 PC: 12ef0 | Write file or device (Write 1361 bytes on handle 5)
2018-12-17T23:04:17.716814277Z 66 PC: 12ef0 | Move file pointer
2018-12-17T23:04:17.718842557Z 64 PC: 12ef0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:04:17.727722217Z 87 PC: 12e2b | Get or set file date and time
2018-12-17T23:04:17.730175921Z 62 PC: 12d18 | Close file
2018-12-17T23:04:17.739275273Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:04:17.751203122Z 79 PC: 12d2b | Find next file
2018-12-17T23:04:17.754903008Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:04:17.775970542Z 61 PC: 12c8b | Open file (Filename = 'HELLO.COM')
2018-12-17T23:04:17.78409994Z 63 PC: 12ef0 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:17.791510933Z 66 PC: 12cbe | Move file pointer
2018-12-17T23:04:17.793354062Z 64 PC: 12ef0 | Write file or device (Write 1361 bytes on handle 5)
2018-12-17T23:04:17.803840225Z 66 PC: 12ef0 | Move file pointer
2018-12-17T23:04:17.810441556Z 64 PC: 12ef0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:04:17.817615611Z 87 PC: 12e2b | Get or set file date and time
2018-12-17T23:04:17.819124651Z 62 PC: 12d18 | Close file
2018-12-17T23:04:17.828155116Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:04:17.838591925Z 79 PC: 12d2b | Find next file
2018-12-17T23:04:17.841240483Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:04:17.852624975Z 61 PC: 12c8b | Open file (Filename = 'PHANG.COM')
2018-12-17T23:04:17.859677384Z 63 PC: 12ef0 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:17.866531411Z 66 PC: 12cbe | Move file pointer
2018-12-17T23:04:17.869296318Z 64 PC: 12ef0 | Write file or device (Write 1361 bytes on handle 5)
2018-12-17T23:04:17.878605885Z 66 PC: 12ef0 | Move file pointer
2018-12-17T23:04:17.880187715Z 64 PC: 12ef0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:04:17.887674737Z 87 PC: 12e2b | Get or set file date and time
2018-12-17T23:04:17.889393031Z 62 PC: 12d18 | Close file
2018-12-17T23:04:17.901745617Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:04:17.912738994Z 79 PC: 12d2b | Find next file
2018-12-17T23:04:17.915738917Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:04:17.926181061Z 61 PC: 12c8b | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:04:17.933400572Z 63 PC: 12ef0 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:17.941199817Z 66 PC: 12cbe | Move file pointer
2018-12-17T23:04:17.943077341Z 64 PC: 12ef0 | Write file or device (Write 1361 bytes on handle 5)
2018-12-17T23:04:17.952565762Z 66 PC: 12ef0 | Move file pointer
2018-12-17T23:04:17.95524468Z 64 PC: 12ef0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:04:17.962530406Z 87 PC: 12e2b | Get or set file date and time
2018-12-17T23:04:17.964248466Z 62 PC: 12d18 | Close file
2018-12-17T23:04:17.97381408Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:04:17.985042397Z 79 PC: 12d2b | Find next file
2018-12-17T23:04:17.988091467Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:04:17.999478748Z 61 PC: 12c8b | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:04:18.006841634Z 63 PC: 12ef0 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:18.013761067Z 66 PC: 12cbe | Move file pointer
2018-12-17T23:04:18.015527428Z 64 PC: 12ef0 | Write file or device (Write 1361 bytes on handle 5)
2018-12-17T23:04:18.025138064Z 66 PC: 12ef0 | Move file pointer
2018-12-17T23:04:18.026674119Z 64 PC: 12ef0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:04:18.034115218Z 87 PC: 12e2b | Get or set file date and time
2018-12-17T23:04:18.036259607Z 62 PC: 12d18 | Close file
2018-12-17T23:04:18.045434448Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:04:18.056626333Z 79 PC: 12d2b | Find next file
2018-12-17T23:04:18.060118742Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:04:18.070561112Z 61 PC: 12c8b | Open file (Filename = 'PAH.COM')
2018-12-17T23:04:18.077958743Z 63 PC: 12ef0 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:18.085469043Z 66 PC: 12cbe | Move file pointer
2018-12-17T23:04:18.087553607Z 64 PC: 12ef0 | Write file or device (Write 1361 bytes on handle 5)
2018-12-17T23:04:18.096694444Z 66 PC: 12ef0 | Move file pointer
2018-12-17T23:04:18.099622931Z 64 PC: 12ef0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:04:18.104637711Z 87 PC: 12e2b | Get or set file date and time
2018-12-17T23:04:18.105969614Z 62 PC: 12d18 | Close file
2018-12-17T23:04:18.112409878Z 67 PC: 12d27 | Get or set file attributes
2018-12-17T23:04:18.118949628Z 79 PC: 12d2b | Find next file
2018-12-17T23:04:18.121793773Z 67 PC: 12c83 | Get or set file attributes
2018-12-17T23:04:18.132865078Z 61 PC: 12c8b | Open file (Filename = 'TEST.COM')
2018-12-17T23:04:18.141317014Z 63 PC: 12ef0 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:18.148798944Z 79 PC: 12d2b | Find next file
2018-12-17T23:04:18.151864795Z 59 PC: 12f11 | Change current directory
2018-12-17T23:04:18.163155587Z 59 PC: 12f08 | Change current directory
2018-12-17T23:04:18.165055589Z 37 PC: 12d46 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:04:18.167083125Z 26 PC: 12d95 | Set disk transfer address