Sample viewer

vx.netlux.org/Virus.DOS.MGTU.273.d

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:07:24.682066084Z 78 PC: 12be1 | Find first file
2018-12-17T23:07:24.689261366Z 61 PC: 12bf1 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:07:24.698678591Z 63 PC: 12c02 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:07:24.705651378Z 66 PC: 12c1d | Move file pointer
2018-12-17T23:07:24.707301347Z 64 PC: 12c3d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.71307268Z 66 PC: 12c49 | Move file pointer
2018-12-17T23:07:24.714682187Z 64 PC: 12c5d | Write file or device (Write 269 bytes on handle 5)
2018-12-17T23:07:24.732207296Z 64 PC: 12c6a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.736231406Z 62 PC: 12c70 | Close file
2018-12-17T23:07:24.745228609Z 79 PC: 12c7a | Find next file
2018-12-17T23:07:24.747823827Z 61 PC: 12bf1 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:07:24.755560679Z 63 PC: 12c02 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:07:24.762859786Z 66 PC: 12c1d | Move file pointer
2018-12-17T23:07:24.764770391Z 64 PC: 12c3d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.768001031Z 66 PC: 12c49 | Move file pointer
2018-12-17T23:07:24.769878601Z 64 PC: 12c5d | Write file or device (Write 269 bytes on handle 5)
2018-12-17T23:07:24.773973293Z 64 PC: 12c6a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.777234528Z 62 PC: 12c70 | Close file
2018-12-17T23:07:24.786375363Z 79 PC: 12c7a | Find next file
2018-12-17T23:07:24.78916404Z 61 PC: 12bf1 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:07:24.796095999Z 63 PC: 12c02 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:07:24.803823089Z 66 PC: 12c1d | Move file pointer
2018-12-17T23:07:24.805381597Z 64 PC: 12c3d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.808263253Z 66 PC: 12c49 | Move file pointer
2018-12-17T23:07:24.810340068Z 64 PC: 12c5d | Write file or device (Write 269 bytes on handle 5)
2018-12-17T23:07:24.81342747Z 64 PC: 12c6a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.816330794Z 62 PC: 12c70 | Close file
2018-12-17T23:07:24.825474475Z 79 PC: 12c7a | Find next file
2018-12-17T23:07:24.828489557Z 61 PC: 12bf1 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:07:24.835944451Z 63 PC: 12c02 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:07:24.844566545Z 66 PC: 12c1d | Move file pointer
2018-12-17T23:07:24.846067721Z 64 PC: 12c3d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.848894914Z 66 PC: 12c49 | Move file pointer
2018-12-17T23:07:24.850540421Z 64 PC: 12c5d | Write file or device (Write 269 bytes on handle 5)
2018-12-17T23:07:24.853719097Z 64 PC: 12c6a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.856679441Z 62 PC: 12c70 | Close file
2018-12-17T23:07:24.865005425Z 79 PC: 12c7a | Find next file
2018-12-17T23:07:24.867962209Z 61 PC: 12bf1 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:07:24.875038273Z 63 PC: 12c02 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:07:24.881719553Z 66 PC: 12c1d | Move file pointer
2018-12-17T23:07:24.892677897Z 64 PC: 12c3d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.895796605Z 66 PC: 12c49 | Move file pointer
2018-12-17T23:07:24.89762013Z 64 PC: 12c5d | Write file or device (Write 269 bytes on handle 5)
2018-12-17T23:07:24.901729653Z 64 PC: 12c6a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.904791952Z 62 PC: 12c70 | Close file
2018-12-17T23:07:24.914377392Z 79 PC: 12c7a | Find next file
2018-12-17T23:07:24.918163266Z 61 PC: 12bf1 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:07:24.925909573Z 63 PC: 12c02 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:07:24.933479638Z 66 PC: 12c1d | Move file pointer
2018-12-17T23:07:24.936385442Z 64 PC: 12c3d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.939982937Z 66 PC: 12c49 | Move file pointer
2018-12-17T23:07:24.941969246Z 64 PC: 12c5d | Write file or device (Write 269 bytes on handle 5)
2018-12-17T23:07:24.951592973Z 64 PC: 12c6a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.955690349Z 62 PC: 12c70 | Close file
2018-12-17T23:07:24.964746889Z 79 PC: 12c7a | Find next file
2018-12-17T23:07:24.967739856Z 61 PC: 12bf1 | Open file (Filename = 'PAH.COM')
2018-12-17T23:07:24.976073917Z 63 PC: 12c02 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:07:24.983644357Z 66 PC: 12c1d | Move file pointer
2018-12-17T23:07:24.985157724Z 64 PC: 12c3d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.988439697Z 66 PC: 12c49 | Move file pointer
2018-12-17T23:07:24.990174276Z 64 PC: 12c5d | Write file or device (Write 269 bytes on handle 5)
2018-12-17T23:07:24.993135979Z 64 PC: 12c6a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:07:24.99720078Z 62 PC: 12c70 | Close file
2018-12-17T23:07:25.006244334Z 79 PC: 12c7a | Find next file
2018-12-17T23:07:25.009209258Z 61 PC: 12bf1 | Open file (Filename = 'TEST.COM')
2018-12-17T23:07:25.017359254Z 63 PC: 12c02 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:07:25.020450576Z 62 PC: 12c70 | Close file
2018-12-17T23:07:25.022780969Z 79 PC: 12c7a | Find next file
2018-12-17T23:07:25.026055872Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T23:07:25.031584001Z 76 PC: 12a86 | Terminate with return code (Return code = '36')