Sample viewer

vx.netlux.org/Virus.DOS.Druid.337

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:03:26.499250785Z 37 PC: 12a4d | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:03:26.501516438Z 37 PC: 12a51 | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T22:03:26.502986516Z 37 PC: 12a59 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:03:26.504318885Z 37 PC: 12a5d | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:03:26.505673336Z 71 PC: 12a66 | Get current directory
2018-12-17T22:03:26.509703485Z 78 PC: 12a6d | Find first file
2018-12-17T22:03:26.515587195Z 67 PC: 12a8b | Get or set file attributes
2018-12-17T22:03:26.521246864Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:03:26.557799924Z 61 PC: 12aa0 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:03:26.569880615Z 87 PC: 12aa8 | Get or set file date and time
2018-12-17T22:03:26.571619665Z 64 PC: 12ab5 | Write file or device (Write 337 bytes on handle 5)
2018-12-17T22:03:26.579505945Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:03:26.581504833Z 62 PC: 12ac0 | Close file
2018-12-17T22:03:26.589074688Z 67 PC: 12ac9 | Get or set file attributes
2018-12-17T22:03:26.608104462Z 79 PC: 12a6d | Find next file
2018-12-17T22:03:26.610850033Z 67 PC: 12a8b | Get or set file attributes
2018-12-17T22:03:26.616448334Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:03:26.626445706Z 61 PC: 12aa0 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:03:26.634810807Z 87 PC: 12aa8 | Get or set file date and time
2018-12-17T22:03:26.636487762Z 64 PC: 12ab5 | Write file or device (Write 337 bytes on handle 5)
2018-12-17T22:03:26.643272783Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:03:26.645605509Z 62 PC: 12ac0 | Close file
2018-12-17T22:03:26.653067892Z 67 PC: 12ac9 | Get or set file attributes
2018-12-17T22:03:26.662997606Z 79 PC: 12a6d | Find next file
2018-12-17T22:03:26.666318435Z 67 PC: 12a8b | Get or set file attributes
2018-12-17T22:03:26.672140837Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:03:26.687665735Z 61 PC: 12aa0 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:03:26.704082993Z 87 PC: 12aa8 | Get or set file date and time
2018-12-17T22:03:26.705730931Z 64 PC: 12ab5 | Write file or device (Write 337 bytes on handle 5)
2018-12-17T22:03:26.712307045Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:03:26.715118587Z 62 PC: 12ac0 | Close file
2018-12-17T22:03:26.727085733Z 67 PC: 12ac9 | Get or set file attributes
2018-12-17T22:03:26.736898394Z 79 PC: 12a6d | Find next file
2018-12-17T22:03:26.740632601Z 67 PC: 12a8b | Get or set file attributes
2018-12-17T22:03:26.747292418Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:03:26.756981572Z 61 PC: 12aa0 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:03:26.761463668Z 87 PC: 12aa8 | Get or set file date and time
2018-12-17T22:03:26.762621534Z 64 PC: 12ab5 | Write file or device (Write 337 bytes on handle 5)
2018-12-17T22:03:26.767359729Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:03:26.769514271Z 62 PC: 12ac0 | Close file
2018-12-17T22:03:26.77432645Z 67 PC: 12ac9 | Get or set file attributes
2018-12-17T22:03:26.78038569Z 79 PC: 12a6d | Find next file
2018-12-17T22:03:26.783259124Z 67 PC: 12a8b | Get or set file attributes
2018-12-17T22:03:26.786892291Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:03:26.798437034Z 61 PC: 12aa0 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:03:26.809737287Z 87 PC: 12aa8 | Get or set file date and time
2018-12-17T22:03:26.810940066Z 64 PC: 12ab5 | Write file or device (Write 337 bytes on handle 5)
2018-12-17T22:03:26.817010376Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:03:26.818453441Z 62 PC: 12ac0 | Close file
2018-12-17T22:03:26.825789745Z 67 PC: 12ac9 | Get or set file attributes
2018-12-17T22:03:26.834995843Z 79 PC: 12a6d | Find next file
2018-12-17T22:03:26.837561699Z 67 PC: 12a8b | Get or set file attributes
2018-12-17T22:03:26.843010566Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:03:26.852569174Z 61 PC: 12aa0 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:03:26.858874834Z 87 PC: 12aa8 | Get or set file date and time
2018-12-17T22:03:26.860498422Z 64 PC: 12ab5 | Write file or device (Write 337 bytes on handle 5)
2018-12-17T22:03:26.866893167Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:03:26.868697037Z 62 PC: 12ac0 | Close file
2018-12-17T22:03:26.876844654Z 67 PC: 12ac9 | Get or set file attributes
2018-12-17T22:03:26.889130893Z 79 PC: 12a6d | Find next file
2018-12-17T22:03:26.891774509Z 67 PC: 12a8b | Get or set file attributes
2018-12-17T22:03:26.911616744Z 67 PC: 12a93 | Get or set file attributes
2018-12-17T22:03:26.921705005Z 61 PC: 12aa0 | Open file (Filename = 'PAH.COM')
2018-12-17T22:03:26.928479268Z 87 PC: 12aa8 | Get or set file date and time
2018-12-17T22:03:26.93121156Z 64 PC: 12ab5 | Write file or device (Write 337 bytes on handle 5)
2018-12-17T22:03:26.938488394Z 87 PC: 12abc | Get or set file date and time
2018-12-17T22:03:26.940037069Z 62 PC: 12ac0 | Close file
2018-12-17T22:03:26.948668875Z 67 PC: 12ac9 | Get or set file attributes
2018-12-17T22:03:26.959079257Z 79 PC: 12a6d | Find next file
2018-12-17T22:03:26.961633524Z 59 PC: 12ad9 | Change current directory
2018-12-17T22:03:26.966506399Z 9 PC: 12ae4 | Display string (String= ' Having a bad day? Your infected with the Druid Bad_Day Virus GOOD LUCK!')
2018-12-17T22:03:26.97032645Z 76 PC: 12ae9 | Terminate with return code (Return code = '0')