Sample viewer

vx.netlux.org/Virus.DOS.Tashkent.490

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:06:13.413569401Z 78 PC: 12b42 | Find first file
2018-12-17T23:06:13.42060003Z 61 PC: 12b50 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:06:13.427890687Z 66 PC: 12b5e | Move file pointer
2018-12-17T23:06:13.434606234Z 63 PC: 12b6a | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:06:13.445206103Z 67 PC: 12b90 | Get or set file attributes
2018-12-17T23:06:13.463315902Z 66 PC: 12b9c | Move file pointer
2018-12-17T23:06:13.465298639Z 63 PC: 12ba8 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T23:06:13.468530405Z 66 PC: 12bc7 | Move file pointer
2018-12-17T23:06:13.471746272Z 64 PC: 12bd3 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:06:13.475032982Z 64 PC: 12be4 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.478263265Z 64 PC: 12bf5 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.482384022Z 66 PC: 12c0f | Move file pointer
2018-12-17T23:06:13.484289815Z 64 PC: 12c18 | Write file or device (Write 490 bytes on handle 5)
2018-12-17T23:06:13.493447724Z 62 PC: 12c1c | Close file
2018-12-17T23:06:13.510209317Z 79 PC: 12c25 | Find next file
2018-12-17T23:06:13.514098269Z 61 PC: 12b50 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:06:13.521652162Z 66 PC: 12b5e | Move file pointer
2018-12-17T23:06:13.52461897Z 63 PC: 12b6a | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:06:13.531769684Z 67 PC: 12b90 | Get or set file attributes
2018-12-17T23:06:13.542650391Z 66 PC: 12b9c | Move file pointer
2018-12-17T23:06:13.545237816Z 63 PC: 12ba8 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T23:06:13.548314541Z 66 PC: 12bc7 | Move file pointer
2018-12-17T23:06:13.550063579Z 64 PC: 12bd3 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:06:13.553437202Z 64 PC: 12be4 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.557565905Z 64 PC: 12bf5 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.561182795Z 66 PC: 12c0f | Move file pointer
2018-12-17T23:06:13.562999731Z 64 PC: 12c18 | Write file or device (Write 490 bytes on handle 5)
2018-12-17T23:06:13.576137001Z 62 PC: 12c1c | Close file
2018-12-17T23:06:13.58699196Z 79 PC: 12c25 | Find next file
2018-12-17T23:06:13.590546172Z 61 PC: 12b50 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:06:13.598899708Z 66 PC: 12b5e | Move file pointer
2018-12-17T23:06:13.600709851Z 63 PC: 12b6a | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:06:13.608204462Z 67 PC: 12b90 | Get or set file attributes
2018-12-17T23:06:13.621153659Z 66 PC: 12b9c | Move file pointer
2018-12-17T23:06:13.62682932Z 63 PC: 12ba8 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T23:06:13.630001884Z 66 PC: 12bc7 | Move file pointer
2018-12-17T23:06:13.633231937Z 64 PC: 12bd3 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:06:13.642554986Z 64 PC: 12be4 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.646454678Z 64 PC: 12bf5 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.65113067Z 66 PC: 12c0f | Move file pointer
2018-12-17T23:06:13.670043759Z 64 PC: 12c18 | Write file or device (Write 490 bytes on handle 5)
2018-12-17T23:06:13.679021839Z 62 PC: 12c1c | Close file
2018-12-17T23:06:13.688400321Z 79 PC: 12c25 | Find next file
2018-12-17T23:06:13.692610317Z 61 PC: 12b50 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:06:13.699892859Z 66 PC: 12b5e | Move file pointer
2018-12-17T23:06:13.701984501Z 63 PC: 12b6a | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:06:13.710241646Z 67 PC: 12b90 | Get or set file attributes
2018-12-17T23:06:13.721294317Z 66 PC: 12b9c | Move file pointer
2018-12-17T23:06:13.723380369Z 63 PC: 12ba8 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T23:06:13.727681586Z 66 PC: 12bc7 | Move file pointer
2018-12-17T23:06:13.729886872Z 64 PC: 12bd3 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:06:13.733365963Z 64 PC: 12be4 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.73739072Z 64 PC: 12bf5 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.740646281Z 66 PC: 12c0f | Move file pointer
2018-12-17T23:06:13.742820599Z 64 PC: 12c18 | Write file or device (Write 490 bytes on handle 5)
2018-12-17T23:06:13.752723849Z 62 PC: 12c1c | Close file
2018-12-17T23:06:13.764012703Z 79 PC: 12c25 | Find next file
2018-12-17T23:06:13.767416904Z 61 PC: 12b50 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:06:13.776034496Z 66 PC: 12b5e | Move file pointer
2018-12-17T23:06:13.77797793Z 63 PC: 12b6a | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:06:13.785543334Z 67 PC: 12b90 | Get or set file attributes
2018-12-17T23:06:13.796447085Z 66 PC: 12b9c | Move file pointer
2018-12-17T23:06:13.799430955Z 63 PC: 12ba8 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T23:06:13.802548657Z 66 PC: 12bc7 | Move file pointer
2018-12-17T23:06:13.80439639Z 64 PC: 12bd3 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:06:13.808397292Z 64 PC: 12be4 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.811929313Z 64 PC: 12bf5 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.815050291Z 66 PC: 12c0f | Move file pointer
2018-12-17T23:06:13.817683542Z 64 PC: 12c18 | Write file or device (Write 490 bytes on handle 5)
2018-12-17T23:06:13.826723018Z 62 PC: 12c1c | Close file
2018-12-17T23:06:13.835608553Z 79 PC: 12c25 | Find next file
2018-12-17T23:06:13.838960606Z 61 PC: 12b50 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:06:13.849731456Z 66 PC: 12b5e | Move file pointer
2018-12-17T23:06:13.852369737Z 63 PC: 12b6a | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:06:13.859445791Z 67 PC: 12b90 | Get or set file attributes
2018-12-17T23:06:13.871039499Z 66 PC: 12b9c | Move file pointer
2018-12-17T23:06:13.872894326Z 63 PC: 12ba8 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T23:06:13.876028298Z 66 PC: 12bc7 | Move file pointer
2018-12-17T23:06:13.878700432Z 64 PC: 12bd3 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:06:13.88224151Z 64 PC: 12be4 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.885457967Z 64 PC: 12bf5 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.889573806Z 66 PC: 12c0f | Move file pointer
2018-12-17T23:06:13.891941718Z 64 PC: 12c18 | Write file or device (Write 490 bytes on handle 5)
2018-12-17T23:06:13.901060663Z 62 PC: 12c1c | Close file
2018-12-17T23:06:13.909987797Z 79 PC: 12c25 | Find next file
2018-12-17T23:06:13.914015489Z 61 PC: 12b50 | Open file (Filename = 'PAH.COM')
2018-12-17T23:06:13.921968211Z 66 PC: 12b5e | Move file pointer
2018-12-17T23:06:13.923799174Z 63 PC: 12b6a | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:06:13.931981769Z 67 PC: 12b90 | Get or set file attributes
2018-12-17T23:06:13.943005625Z 66 PC: 12b9c | Move file pointer
2018-12-17T23:06:13.944867776Z 63 PC: 12ba8 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T23:06:13.948809718Z 66 PC: 12bc7 | Move file pointer
2018-12-17T23:06:13.951109381Z 64 PC: 12bd3 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:06:13.954298697Z 64 PC: 12be4 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.958242673Z 64 PC: 12bf5 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:06:13.961796354Z 66 PC: 12c0f | Move file pointer
2018-12-17T23:06:13.963669917Z 64 PC: 12c18 | Write file or device (Write 490 bytes on handle 5)
2018-12-17T23:06:13.973051926Z 62 PC: 12c1c | Close file
2018-12-17T23:06:13.982841161Z 79 PC: 12c25 | Find next file
2018-12-17T23:06:13.985985713Z 61 PC: 12b50 | Open file (Filename = 'TEST.COM')
2018-12-17T23:06:13.993941682Z 66 PC: 12b5e | Move file pointer
2018-12-17T23:06:13.996896637Z 63 PC: 12b6a | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:06:13.99998824Z 62 PC: 12c1c | Close file
2018-12-17T23:06:14.002253399Z 79 PC: 12c25 | Find next file
2018-12-17T23:06:14.006173539Z 44 PC: 12c2e | Get time 0x12c2e: test dh, 3
0x12c31: jne 0x12c89
0x12c33: mov ah, 0
0x12c35: mov al, 3
0x12c37: int 0x10
0x12c39: mov ah, 0xf
0x12c3b: int 0x10
0x12c3d: mov dh, 0xa
0x12c3f: mov dl, 0xf
0x12c41: mov ah, 2
0x12c43: int 0x10
0x12c45: cld
0x12c46: mov dx, di
0x12c48: add dx, 0x2c
0x12c4b: mov si, dx
0x12c4d: mov bx, di
0x12c4f: mov di, dx
0x12c51: mov cx, 0x3f
0x12c54: lodsb al, byte ptr [si]
0x12c55: xor al, 0x10
2018-12-17T23:06:14.0088389Z 9 PC: 12aa2 | Display string (String= 'ABCDE - This is a 100 byte COM test, 1994 ')