Sample viewer

vx.netlux.org/Virus.DOS.SillyC.126.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:04:38.546205206Z 26 PC: 13e59 | Set disk transfer address
2018-12-17T23:04:38.54797025Z 78 PC: 13e61 | Find first file
2018-12-17T23:04:38.554823635Z 61 PC: 13e71 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:04:38.562769747Z 63 PC: 13e7d | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:04:38.570358264Z 66 PC: 13e85 | Move file pointer
2018-12-17T23:04:38.57276485Z 64 PC: 13e97 | Write file or device (Write 126 bytes on handle 5)
2018-12-17T23:04:38.58834961Z 66 PC: 13e9f | Move file pointer
2018-12-17T23:04:38.590254538Z 64 PC: 13eaa | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:04:38.597569729Z 62 PC: 13eae | Close file
2018-12-17T23:04:38.606458645Z 79 PC: 13e61 | Find next file
2018-12-17T23:04:38.609291695Z 61 PC: 13e71 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:04:38.617073442Z 63 PC: 13e7d | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:04:38.624006789Z 66 PC: 13e85 | Move file pointer
2018-12-17T23:04:38.625444947Z 64 PC: 13e97 | Write file or device (Write 126 bytes on handle 5)
2018-12-17T23:04:38.636680325Z 66 PC: 13e9f | Move file pointer
2018-12-17T23:04:38.638248531Z 64 PC: 13eaa | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:04:38.641439069Z 62 PC: 13eae | Close file
2018-12-17T23:04:38.653200417Z 79 PC: 13e61 | Find next file
2018-12-17T23:04:38.656212409Z 61 PC: 13e71 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:04:38.663634139Z 63 PC: 13e7d | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:04:38.671165189Z 66 PC: 13e85 | Move file pointer
2018-12-17T23:04:38.673723883Z 64 PC: 13e97 | Write file or device (Write 126 bytes on handle 5)
2018-12-17T23:04:38.677412989Z 66 PC: 13e9f | Move file pointer
2018-12-17T23:04:38.679780014Z 64 PC: 13eaa | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:04:38.683616853Z 62 PC: 13eae | Close file
2018-12-17T23:04:38.692830957Z 79 PC: 13e61 | Find next file
2018-12-17T23:04:38.695788363Z 61 PC: 13e71 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:04:38.703675794Z 63 PC: 13e7d | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:04:38.710792312Z 66 PC: 13e85 | Move file pointer
2018-12-17T23:04:38.712394411Z 64 PC: 13e97 | Write file or device (Write 126 bytes on handle 5)
2018-12-17T23:04:38.716225247Z 66 PC: 13e9f | Move file pointer
2018-12-17T23:04:38.718187295Z 64 PC: 13eaa | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:04:38.721532041Z 62 PC: 13eae | Close file
2018-12-17T23:04:38.731782951Z 79 PC: 13e61 | Find next file
2018-12-17T23:04:38.735425506Z 61 PC: 13e71 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:04:38.74300613Z 63 PC: 13e7d | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:04:38.751078042Z 66 PC: 13e85 | Move file pointer
2018-12-17T23:04:38.753575315Z 64 PC: 13e97 | Write file or device (Write 126 bytes on handle 5)
2018-12-17T23:04:38.756514734Z 66 PC: 13e9f | Move file pointer
2018-12-17T23:04:38.757952345Z 64 PC: 13eaa | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:04:38.760908359Z 62 PC: 13eae | Close file
2018-12-17T23:04:38.771420357Z 79 PC: 13e61 | Find next file
2018-12-17T23:04:38.774686624Z 61 PC: 13e71 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:04:38.782713601Z 63 PC: 13e7d | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:04:38.789586791Z 66 PC: 13e85 | Move file pointer
2018-12-17T23:04:38.791056897Z 64 PC: 13e97 | Write file or device (Write 126 bytes on handle 5)
2018-12-17T23:04:38.800893378Z 66 PC: 13e9f | Move file pointer
2018-12-17T23:04:38.80268118Z 64 PC: 13eaa | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:04:38.810065381Z 62 PC: 13eae | Close file
2018-12-17T23:04:38.820694656Z 79 PC: 13e61 | Find next file
2018-12-17T23:04:38.824294276Z 61 PC: 13e71 | Open file (Filename = 'PAH.COM')
2018-12-17T23:04:38.83247985Z 63 PC: 13e7d | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:04:38.840684858Z 66 PC: 13e85 | Move file pointer
2018-12-17T23:04:38.842205472Z 64 PC: 13e97 | Write file or device (Write 126 bytes on handle 5)
2018-12-17T23:04:38.845169613Z 66 PC: 13e9f | Move file pointer
2018-12-17T23:04:38.848053715Z 64 PC: 13eaa | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:04:38.850915685Z 62 PC: 13eae | Close file
2018-12-17T23:04:38.859425705Z 79 PC: 13e61 | Find next file
2018-12-17T23:04:38.876515766Z 61 PC: 13e71 | Open file (Filename = 'TEST.COM')
2018-12-17T23:04:38.885676195Z 63 PC: 13e7d | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:04:38.889028975Z 66 PC: 13e85 | Move file pointer
2018-12-17T23:04:38.891147527Z 64 PC: 13e97 | Write file or device (Write 126 bytes on handle 5)
2018-12-17T23:04:38.90704271Z 66 PC: 13e9f | Move file pointer
2018-12-17T23:04:38.90911372Z 64 PC: 13eaa | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:04:38.912961186Z 62 PC: 13eae | Close file
2018-12-17T23:04:38.92327038Z 79 PC: 13e61 | Find next file
2018-12-17T23:04:38.92631607Z 9 PC: 12a85 | Display string (String= 'Sophos Ltd, Oxford sacrificial COM goat 1400H bytes long ')
2018-12-17T23:04:38.932875012Z 0 PC: 12a89 | Program terminate