Sample viewer

vx.netlux.org/Virus.DOS.Cripple.403

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:03:52.164181978Z 26 PC: 12a6b | Set disk transfer address
2018-12-17T22:03:52.165876848Z 78 PC: 12a75 | Find first file
2018-12-17T22:03:52.171754617Z 61 PC: 12a80 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:03:52.178090047Z 63 PC: 12a8e | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:03:52.184473992Z 66 PC: 12a9e | Move file pointer
2018-12-17T22:03:52.19377663Z 64 PC: 12ac2 | Write file or device (Write 403 bytes on handle 5)
2018-12-17T22:03:52.208865271Z 66 PC: 12acd | Move file pointer
2018-12-17T22:03:52.210549736Z 64 PC: 12ad8 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:03:52.217708275Z 79 PC: 12a75 | Find next file
2018-12-17T22:03:52.220499424Z 61 PC: 12a80 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:03:52.227339191Z 63 PC: 12a8e | Read file or device (Read 4 bytes on handle 6)
2018-12-17T22:03:52.235333224Z 66 PC: 12a9e | Move file pointer
2018-12-17T22:03:52.236963722Z 64 PC: 12ac2 | Write file or device (Write 403 bytes on handle 6)
2018-12-17T22:03:52.239818405Z 66 PC: 12acd | Move file pointer
2018-12-17T22:03:52.241837888Z 64 PC: 12ad8 | Write file or device (Write 4 bytes on handle 6)
2018-12-17T22:03:52.244598825Z 79 PC: 12a75 | Find next file
2018-12-17T22:03:52.24738934Z 61 PC: 12a80 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:03:52.255032569Z 63 PC: 12a8e | Read file or device (Read 4 bytes on handle 7)
2018-12-17T22:03:52.261636949Z 66 PC: 12a9e | Move file pointer
2018-12-17T22:03:52.263268444Z 64 PC: 12ac2 | Write file or device (Write 403 bytes on handle 7)
2018-12-17T22:03:52.267041358Z 66 PC: 12acd | Move file pointer
2018-12-17T22:03:52.268358554Z 64 PC: 12ad8 | Write file or device (Write 4 bytes on handle 7)
2018-12-17T22:03:52.270836457Z 79 PC: 12a75 | Find next file
2018-12-17T22:03:52.274659805Z 61 PC: 12a80 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:03:52.283783056Z 63 PC: 12a8e | Read file or device (Read 4 bytes on handle 8)
2018-12-17T22:03:52.29013393Z 66 PC: 12a9e | Move file pointer
2018-12-17T22:03:52.291724281Z 64 PC: 12ac2 | Write file or device (Write 403 bytes on handle 8)
2018-12-17T22:03:52.307242738Z 66 PC: 12acd | Move file pointer
2018-12-17T22:03:52.308485586Z 64 PC: 12ad8 | Write file or device (Write 4 bytes on handle 8)
2018-12-17T22:03:52.311373215Z 79 PC: 12a75 | Find next file
2018-12-17T22:03:52.314287212Z 61 PC: 12a80 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:03:52.318657097Z 63 PC: 12a8e | Read file or device (Read 4 bytes on handle 9)
2018-12-17T22:03:52.32349663Z 66 PC: 12a9e | Move file pointer
2018-12-17T22:03:52.325379382Z 64 PC: 12ac2 | Write file or device (Write 403 bytes on handle 9)
2018-12-17T22:03:52.328783471Z 66 PC: 12acd | Move file pointer
2018-12-17T22:03:52.330988396Z 64 PC: 12ad8 | Write file or device (Write 4 bytes on handle 9)
2018-12-17T22:03:52.334617013Z 79 PC: 12a75 | Find next file
2018-12-17T22:03:52.337132956Z 61 PC: 12a80 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:03:52.34357683Z 63 PC: 12a8e | Read file or device (Read 4 bytes on handle 10)
2018-12-17T22:03:52.350974113Z 66 PC: 12a9e | Move file pointer
2018-12-17T22:03:52.352344816Z 64 PC: 12ac2 | Write file or device (Write 403 bytes on handle 10)
2018-12-17T22:03:52.3603981Z 66 PC: 12acd | Move file pointer
2018-12-17T22:03:52.362870401Z 64 PC: 12ad8 | Write file or device (Write 4 bytes on handle 10)
2018-12-17T22:03:52.369316594Z 79 PC: 12a75 | Find next file
2018-12-17T22:03:52.371914956Z 61 PC: 12a80 | Open file (Filename = 'PAH.COM')
2018-12-17T22:03:52.378763123Z 63 PC: 12a8e | Read file or device (Read 4 bytes on handle 11)
2018-12-17T22:03:52.385397992Z 66 PC: 12a9e | Move file pointer
2018-12-17T22:03:52.386934646Z 64 PC: 12ac2 | Write file or device (Write 403 bytes on handle 11)
2018-12-17T22:03:52.390346785Z 66 PC: 12acd | Move file pointer
2018-12-17T22:03:52.391587667Z 64 PC: 12ad8 | Write file or device (Write 4 bytes on handle 11)
2018-12-17T22:03:52.394098737Z 79 PC: 12a75 | Find next file
2018-12-17T22:03:52.397166252Z 61 PC: 12a80 | Open file (Filename = 'TEST.COM')
2018-12-17T22:03:52.403550274Z 63 PC: 12a8e | Read file or device (Read 4 bytes on handle 12)
2018-12-17T22:03:52.406014788Z 79 PC: 12a75 | Find next file
2018-12-17T22:03:52.409222786Z 26 PC: 12ae3 | Set disk transfer address
2018-12-17T22:03:52.410387792Z 9 PC: 12afa | Display string (String= 'hat Fucked Ass Has Written FATMAN? It Was A Cripple Of A Virus... ...It Crashed Every Time If You Cant Write A Virus ... Let It Be FATMAN Was Crippled By An Ass Hole And Rescued By Spooky. Austria 1996 ')