Sample viewer

vx.netlux.org/Virus.DOS.Burger.560.a5

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:08:27.173712326Z 25 PC: 12a56 | Get default drive
2018-12-17T23:08:27.175489772Z 71 PC: 12a68 | Get current directory
2018-12-17T23:08:27.178775685Z 14 PC: 12a6e | Set default drive (Drive = 'A')
2018-12-17T23:08:27.179959108Z 14 PC: 12bd2 | Set default drive (Drive = 'A')
2018-12-17T23:08:27.182092768Z 59 PC: 12bda | Change current directory
2018-12-17T23:08:27.185990784Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.188115659Z 23 PC: 12a8f | Rename file
2018-12-17T23:08:27.195057059Z 44 PC: 12a97 | Get time 0x12a97: mov bx, word ptr cs:[0x2a3]
0x12a9c: mov al, byte ptr cs:[bx]
0x12a9f: mov bx, dx
0x12aa1: mov cx, 2
0x12aa4: mov dh, 0
0x12aa6: int 0x26
0x12aa8: mov bx, word ptr cs:[0x2a3]
0x12aad: dec bx
0x12aae: mov word ptr cs:[0x2a3], bx
0x12ab3: mov dl, byte ptr cs:[bx]
0x12ab6: cmp dl, 0xff
0x12ab9: jne 0x12abe
0x12abb: jmp 0x12bbe
0x12abe: mov ah, 0xe
0x12ac0: int 0x21
0x12ac2: mov ah, 0x3b
0x12ac4: lea dx, word ptr [0x2f8]
0x12ac8: int 0x21
0x12aca: jmp 0x12b20
0x12acc: nop
2018-12-17T23:08:27.197764277Z 14 PC: 12ac2 | Set default drive (Drive = 'D')
2018-12-17T23:08:27.199312434Z 59 PC: 12aca | Change current directory
2018-12-17T23:08:27.208270508Z 78 PC: 12b2b | Find first file
2018-12-17T23:08:27.22014009Z 61 PC: 12b3f | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:08:27.231881891Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.238096553Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.241294542Z 67 PC: 12b65 | Get or set file attributes
2018-12-17T23:08:27.247418941Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T23:08:27.262844496Z 61 PC: 12b78 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:08:27.27034048Z 87 PC: 12b80 | Get or set file date and time
2018-12-17T23:08:27.2717907Z 64 PC: 12ba8 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:08:27.279965343Z 87 PC: 12bb0 | Get or set file date and time
2018-12-17T23:08:27.282358641Z 62 PC: 12bb4 | Close file
2018-12-17T23:08:27.290143614Z 14 PC: 12bd2 | Set default drive (Drive = 'A')
2018-12-17T23:08:27.291407161Z 59 PC: 12bda | Change current directory
2018-12-17T23:08:27.300507874Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.307128438Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.309908333Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.313024281Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.315066258Z 47 PC: 12b00 | Get disk transfer address
2018-12-17T23:08:27.316230376Z 59 PC: 12b14 | Change current directory
2018-12-17T23:08:27.320650753Z 78 PC: 12b2b | Find first file
2018-12-17T23:08:27.324404324Z 61 PC: 12b3f | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:08:27.330765037Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.349099377Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.35127575Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:27.354247344Z 61 PC: 12b3f | Open file (Filename = 'PRINT.COM')
2018-12-17T23:08:27.361324925Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.368657018Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.370809001Z 67 PC: 12b65 | Get or set file attributes
2018-12-17T23:08:27.382389739Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T23:08:27.394133864Z 61 PC: 12b78 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:08:27.400851064Z 87 PC: 12b80 | Get or set file date and time
2018-12-17T23:08:27.40235121Z 64 PC: 12ba8 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:08:27.410765622Z 87 PC: 12bb0 | Get or set file date and time
2018-12-17T23:08:27.412178181Z 62 PC: 12bb4 | Close file
2018-12-17T23:08:27.419580996Z 14 PC: 12bd2 | Set default drive (Drive = 'A')
2018-12-17T23:08:27.421742511Z 59 PC: 12bda | Change current directory
2018-12-17T23:08:27.42560559Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.428071423Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.431308728Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.433669709Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.435951848Z 47 PC: 12b00 | Get disk transfer address
2018-12-17T23:08:27.437198646Z 59 PC: 12b14 | Change current directory
2018-12-17T23:08:27.448311209Z 78 PC: 12b2b | Find first file
2018-12-17T23:08:27.453851088Z 61 PC: 12b3f | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:08:27.459967418Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.467965436Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.469723101Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:27.472187205Z 61 PC: 12b3f | Open file (Filename = 'PRINT.COM')
2018-12-17T23:08:27.47910275Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.485751765Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.487393611Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:27.490730018Z 61 PC: 12b3f | Open file (Filename = 'HELLO.COM')
2018-12-17T23:08:27.496894659Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.502821566Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.50548396Z 67 PC: 12b65 | Get or set file attributes
2018-12-17T23:08:27.511003212Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T23:08:27.520979802Z 61 PC: 12b78 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:08:27.528819638Z 87 PC: 12b80 | Get or set file date and time
2018-12-17T23:08:27.530287036Z 64 PC: 12ba8 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:08:27.538293641Z 87 PC: 12bb0 | Get or set file date and time
2018-12-17T23:08:27.540859867Z 62 PC: 12bb4 | Close file
2018-12-17T23:08:27.548316157Z 14 PC: 12bd2 | Set default drive (Drive = 'A')
2018-12-17T23:08:27.549636847Z 59 PC: 12bda | Change current directory
2018-12-17T23:08:27.553800107Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.557141561Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.559658281Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.562185851Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.565325045Z 47 PC: 12b00 | Get disk transfer address
2018-12-17T23:08:27.566798279Z 59 PC: 12b14 | Change current directory
2018-12-17T23:08:27.572704864Z 78 PC: 12b2b | Find first file
2018-12-17T23:08:27.584391667Z 61 PC: 12b3f | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:08:27.590753787Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.597907004Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.600919488Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:27.603857175Z 61 PC: 12b3f | Open file (Filename = 'PRINT.COM')
2018-12-17T23:08:27.610563027Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.619311505Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.621202117Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:27.623933441Z 61 PC: 12b3f | Open file (Filename = 'HELLO.COM')
2018-12-17T23:08:27.631822466Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.638690005Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.650237291Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:27.654444811Z 61 PC: 12b3f | Open file (Filename = 'PHANG.COM')
2018-12-17T23:08:27.661165607Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.668119984Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.671498926Z 67 PC: 12b65 | Get or set file attributes
2018-12-17T23:08:27.677520157Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T23:08:27.687459832Z 61 PC: 12b78 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:08:27.695920263Z 87 PC: 12b80 | Get or set file date and time
2018-12-17T23:08:27.697773825Z 64 PC: 12ba8 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:08:27.706063377Z 87 PC: 12bb0 | Get or set file date and time
2018-12-17T23:08:27.70882836Z 62 PC: 12bb4 | Close file
2018-12-17T23:08:27.757621507Z 14 PC: 12bd2 | Set default drive (Drive = 'A')
2018-12-17T23:08:27.759112854Z 59 PC: 12bda | Change current directory
2018-12-17T23:08:27.768831619Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.775545056Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.778056703Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.781051718Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:27.784447838Z 47 PC: 12b00 | Get disk transfer address
2018-12-17T23:08:27.785633726Z 59 PC: 12b14 | Change current directory
2018-12-17T23:08:27.791404482Z 78 PC: 12b2b | Find first file
2018-12-17T23:08:27.798176841Z 61 PC: 12b3f | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:08:27.804569735Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.811791892Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.814776935Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:27.817646922Z 61 PC: 12b3f | Open file (Filename = 'PRINT.COM')
2018-12-17T23:08:27.824282982Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.831712548Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.833159424Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:27.835049036Z 61 PC: 12b3f | Open file (Filename = 'HELLO.COM')
2018-12-17T23:08:27.841921165Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.849159347Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.850886651Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:27.853895824Z 61 PC: 12b3f | Open file (Filename = 'PHANG.COM')
2018-12-17T23:08:27.860177655Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.866939444Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.869097865Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:27.871573656Z 61 PC: 12b3f | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:08:27.875789963Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:27.88017052Z 62 PC: 12b51 | Close file
2018-12-17T23:08:27.881518211Z 67 PC: 12b65 | Get or set file attributes
2018-12-17T23:08:27.885191057Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T23:08:28.038678582Z 61 PC: 12b78 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:08:28.051302509Z 87 PC: 12b80 | Get or set file date and time
2018-12-17T23:08:28.053017713Z 64 PC: 12ba8 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:08:28.063593Z 87 PC: 12bb0 | Get or set file date and time
2018-12-17T23:08:28.066682709Z 62 PC: 12bb4 | Close file
2018-12-17T23:08:28.074233181Z 14 PC: 12bd2 | Set default drive (Drive = 'A')
2018-12-17T23:08:28.081801512Z 59 PC: 12bda | Change current directory
2018-12-17T23:08:28.093301502Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:28.096165272Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:28.099660265Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:28.102434336Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:28.10500324Z 23 PC: 12a8f | Rename file
2018-12-17T23:08:28.112011562Z 44 PC: 12a97 | Get time 0x12a97: mov bx, word ptr cs:[0x2a3]
0x12a9c: mov al, byte ptr cs:[bx]
0x12a9f: mov bx, dx
0x12aa1: mov cx, 2
0x12aa4: mov dh, 0
0x12aa6: int 0x26
0x12aa8: mov bx, word ptr cs:[0x2a3]
0x12aad: dec bx
0x12aae: mov word ptr cs:[0x2a3], bx
0x12ab3: mov dl, byte ptr cs:[bx]
0x12ab6: cmp dl, 0xff
0x12ab9: jne 0x12abe
0x12abb: jmp 0x12bbe
0x12abe: mov ah, 0xe
0x12ac0: int 0x21
0x12ac2: mov ah, 0x3b
0x12ac4: lea dx, word ptr [0x2f8]
0x12ac8: int 0x21
0x12aca: jmp 0x12b20
0x12acc: nop
2018-12-17T23:08:28.114913026Z 14 PC: 12ac2 | Set default drive (Drive = 'C')
2018-12-17T23:08:28.116113481Z 59 PC: 12aca | Change current directory
2018-12-17T23:08:28.120204708Z 78 PC: 12b2b | Find first file
2018-12-17T23:08:28.125778988Z 61 PC: 12b3f | Open file (Filename = 'COMMAND.COM')
2018-12-17T23:08:28.132370825Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:28.139135891Z 62 PC: 12b51 | Close file
2018-12-17T23:08:28.140834515Z 67 PC: 12b65 | Get or set file attributes
2018-12-17T23:08:28.146504794Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T23:08:28.50255224Z 61 PC: 12b78 | Open file (Filename = 'COMMAND.COM')
2018-12-17T23:08:28.508915318Z 87 PC: 12b80 | Get or set file date and time
2018-12-17T23:08:28.510587424Z 64 PC: 12ba8 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:08:28.517731723Z 87 PC: 12bb0 | Get or set file date and time
2018-12-17T23:08:28.519457878Z 62 PC: 12bb4 | Close file
2018-12-17T23:08:28.526108613Z 14 PC: 12bd2 | Set default drive (Drive = 'A')
2018-12-17T23:08:28.528732757Z 59 PC: 12bda | Change current directory
2018-12-17T23:08:28.532914097Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:28.535682928Z 23 PC: 12a8f | Rename file
2018-12-17T23:08:28.543072835Z 44 PC: 12a97 | Get time 0x12a97: mov bx, word ptr cs:[0x2a3]
0x12a9c: mov al, byte ptr cs:[bx]
0x12a9f: mov bx, dx
0x12aa1: mov cx, 2
0x12aa4: mov dh, 0
0x12aa6: int 0x26
0x12aa8: mov bx, word ptr cs:[0x2a3]
0x12aad: dec bx
0x12aae: mov word ptr cs:[0x2a3], bx
0x12ab3: mov dl, byte ptr cs:[bx]
0x12ab6: cmp dl, 0xff
0x12ab9: jne 0x12abe
0x12abb: jmp 0x12bbe
0x12abe: mov ah, 0xe
0x12ac0: int 0x21
0x12ac2: mov ah, 0x3b
0x12ac4: lea dx, word ptr [0x2f8]
0x12ac8: int 0x21
0x12aca: jmp 0x12b20
0x12acc: nop
2018-12-17T23:08:28.546032157Z 14 PC: 12ac2 | Set default drive (Drive = 'A')
2018-12-17T23:08:28.548187563Z 59 PC: 12aca | Change current directory
2018-12-17T23:08:28.552768458Z 78 PC: 12b2b | Find first file
2018-12-17T23:08:28.55877093Z 61 PC: 12b3f | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:08:28.56518237Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:28.573122034Z 62 PC: 12b51 | Close file
2018-12-17T23:08:28.575121673Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:28.57761989Z 61 PC: 12b3f | Open file (Filename = 'PRINT.COM')
2018-12-17T23:08:28.584310987Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:28.59120241Z 62 PC: 12b51 | Close file
2018-12-17T23:08:28.592859867Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:28.596140352Z 61 PC: 12b3f | Open file (Filename = 'HELLO.COM')
2018-12-17T23:08:28.602595497Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:28.609612863Z 62 PC: 12b51 | Close file
2018-12-17T23:08:28.612320318Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:28.615972071Z 61 PC: 12b3f | Open file (Filename = 'PHANG.COM')
2018-12-17T23:08:28.622439389Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:28.629730369Z 62 PC: 12b51 | Close file
2018-12-17T23:08:28.632139069Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:28.634686081Z 61 PC: 12b3f | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:08:28.640888493Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:28.648111134Z 62 PC: 12b51 | Close file
2018-12-17T23:08:28.649763556Z 79 PC: 12b34 | Find next file
2018-12-17T23:08:28.652262606Z 61 PC: 12b3f | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:08:28.659392882Z 63 PC: 12b4d | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:08:28.665394867Z 62 PC: 12b51 | Close file
2018-12-17T23:08:28.667073466Z 67 PC: 12b65 | Get or set file attributes
2018-12-17T23:08:28.673570448Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T23:08:28.683302976Z 61 PC: 12b78 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:08:28.691264538Z 87 PC: 12b80 | Get or set file date and time
2018-12-17T23:08:28.693477029Z 64 PC: 12ba8 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:08:28.701206171Z 87 PC: 12bb0 | Get or set file date and time
2018-12-17T23:08:28.702631515Z 62 PC: 12bb4 | Close file
2018-12-17T23:08:28.710611318Z 14 PC: 12bd2 | Set default drive (Drive = 'A')
2018-12-17T23:08:28.71182579Z 59 PC: 12bda | Change current directory
2018-12-17T23:08:28.715680135Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:28.719133967Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:28.721511882Z 79 PC: 12af7 | Find next file
2018-12-17T23:08:28.723788318Z 23 PC: 12a8f | Rename file
2018-12-17T23:08:28.735087454Z 44 PC: 12a97 | Get time 0x12a97: mov bx, word ptr cs:[0x2a3]
0x12a9c: mov al, byte ptr cs:[bx]
0x12a9f: mov bx, dx
0x12aa1: mov cx, 2
0x12aa4: mov dh, 0
0x12aa6: int 0x26
0x12aa8: mov bx, word ptr cs:[0x2a3]
0x12aad: dec bx
0x12aae: mov word ptr cs:[0x2a3], bx
0x12ab3: mov dl, byte ptr cs:[bx]
0x12ab6: cmp dl, 0xff
0x12ab9: jne 0x12abe
0x12abb: jmp 0x12bbe
0x12abe: mov ah, 0xe
0x12ac0: int 0x21
0x12ac2: mov ah, 0x3b
0x12ac4: lea dx, word ptr [0x2f8]
0x12ac8: int 0x21
0x12aca: jmp 0x12b20
0x12acc: nop
2018-12-17T23:08:28.740966809Z 14 PC: 12ac2 | Set default drive (Drive = 'B')
2018-12-17T23:08:28.742133951Z 59 PC: 12aca | Change current directory