Sample viewer

vx.netlux.org/Virus.DOS.CivilWar.158

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:06:03.525978441Z 78 PC: 12a62 | Find first file
2018-12-17T23:06:03.532590372Z 61 PC: 12a70 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:06:03.540917438Z 63 PC: 12a7c | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:06:03.547966302Z 66 PC: 12a9f | Move file pointer
2018-12-17T23:06:03.549707475Z 64 PC: 12aaa | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:06:03.554167501Z 66 PC: 12ab3 | Move file pointer
2018-12-17T23:06:03.556089154Z 64 PC: 12abe | Write file or device (Write 158 bytes on handle 5)
2018-12-17T23:06:03.579833098Z 62 PC: 12ac2 | Close file
2018-12-17T23:06:03.589889235Z 79 PC: 12a62 | Find next file
2018-12-17T23:06:03.593025342Z 61 PC: 12a70 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:06:03.6000451Z 63 PC: 12a7c | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:06:03.611143538Z 66 PC: 12a9f | Move file pointer
2018-12-17T23:06:03.612797227Z 64 PC: 12aaa | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:06:03.615791146Z 66 PC: 12ab3 | Move file pointer
2018-12-17T23:06:03.61862837Z 64 PC: 12abe | Write file or device (Write 158 bytes on handle 5)
2018-12-17T23:06:03.62197901Z 62 PC: 12ac2 | Close file
2018-12-17T23:06:03.63124392Z 79 PC: 12a62 | Find next file
2018-12-17T23:06:03.634631188Z 61 PC: 12a70 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:06:03.643322109Z 63 PC: 12a7c | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:06:03.651022407Z 66 PC: 12a9f | Move file pointer
2018-12-17T23:06:03.653094092Z 64 PC: 12aaa | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:06:03.656630241Z 66 PC: 12ab3 | Move file pointer
2018-12-17T23:06:03.658223016Z 64 PC: 12abe | Write file or device (Write 158 bytes on handle 5)
2018-12-17T23:06:03.661263052Z 62 PC: 12ac2 | Close file
2018-12-17T23:06:03.670530556Z 79 PC: 12a62 | Find next file
2018-12-17T23:06:03.673732086Z 61 PC: 12a70 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:06:03.681034596Z 63 PC: 12a7c | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:06:03.692977752Z 66 PC: 12a9f | Move file pointer
2018-12-17T23:06:03.695378566Z 64 PC: 12aaa | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:06:03.699439271Z 66 PC: 12ab3 | Move file pointer
2018-12-17T23:06:03.702908003Z 64 PC: 12abe | Write file or device (Write 158 bytes on handle 5)
2018-12-17T23:06:03.706119801Z 62 PC: 12ac2 | Close file
2018-12-17T23:06:03.716305241Z 79 PC: 12a62 | Find next file
2018-12-17T23:06:03.720438172Z 61 PC: 12a70 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:06:03.727822436Z 63 PC: 12a7c | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:06:03.734901897Z 66 PC: 12a9f | Move file pointer
2018-12-17T23:06:03.73677563Z 64 PC: 12aaa | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:06:03.740548203Z 66 PC: 12ab3 | Move file pointer
2018-12-17T23:06:03.742312861Z 64 PC: 12abe | Write file or device (Write 158 bytes on handle 5)
2018-12-17T23:06:03.74541872Z 62 PC: 12ac2 | Close file
2018-12-17T23:06:03.754595976Z 79 PC: 12a62 | Find next file
2018-12-17T23:06:03.757615553Z 61 PC: 12a70 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:06:03.765025525Z 63 PC: 12a7c | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:06:03.776000791Z 66 PC: 12a9f | Move file pointer
2018-12-17T23:06:03.786491736Z 64 PC: 12aaa | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:06:03.790776943Z 66 PC: 12ab3 | Move file pointer
2018-12-17T23:06:03.793501756Z 64 PC: 12abe | Write file or device (Write 158 bytes on handle 5)
2018-12-17T23:06:03.803054997Z 62 PC: 12ac2 | Close file
2018-12-17T23:06:03.812806202Z 79 PC: 12a62 | Find next file
2018-12-17T23:06:03.819312896Z 61 PC: 12a70 | Open file (Filename = 'PAH.COM')
2018-12-17T23:06:03.826844236Z 63 PC: 12a7c | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:06:03.834652868Z 66 PC: 12a9f | Move file pointer
2018-12-17T23:06:03.837187574Z 64 PC: 12aaa | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:06:03.840250402Z 66 PC: 12ab3 | Move file pointer
2018-12-17T23:06:03.842217982Z 64 PC: 12abe | Write file or device (Write 158 bytes on handle 5)
2018-12-17T23:06:03.84622713Z 62 PC: 12ac2 | Close file
2018-12-17T23:06:03.855191585Z 79 PC: 12a62 | Find next file
2018-12-17T23:06:03.858215721Z 61 PC: 12a70 | Open file (Filename = 'TEST.COM')
2018-12-17T23:06:03.865590196Z 63 PC: 12a7c | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:06:03.869092321Z 79 PC: 12a62 | Find next file