Sample viewer

vx.netlux.org/Virus.DOS.Ash.270.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:08:35.312820119Z 26 PC: 12a6a | Set disk transfer address
2018-12-17T23:08:35.314673127Z 78 PC: 12aa8 | Find first file
2018-12-17T23:08:35.320982958Z 61 PC: 12ab4 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:08:35.327707721Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:08:35.334590465Z 66 PC: 12ada | Move file pointer
2018-12-17T23:08:35.33676677Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.340614921Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T23:08:35.354910256Z 66 PC: 12b02 | Move file pointer
2018-12-17T23:08:35.356774155Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.363165981Z 62 PC: 12a9c | Close file
2018-12-17T23:08:35.371031182Z 79 PC: 12aa8 | Find next file
2018-12-17T23:08:35.377096045Z 61 PC: 12ab4 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:08:35.384246786Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:08:35.390687561Z 66 PC: 12ada | Move file pointer
2018-12-17T23:08:35.393024584Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.39591927Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T23:08:35.398446138Z 66 PC: 12b02 | Move file pointer
2018-12-17T23:08:35.40088729Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.40340672Z 62 PC: 12a9c | Close file
2018-12-17T23:08:35.410977165Z 79 PC: 12aa8 | Find next file
2018-12-17T23:08:35.414508349Z 61 PC: 12ab4 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:08:35.421248264Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:08:35.427952311Z 66 PC: 12ada | Move file pointer
2018-12-17T23:08:35.432597013Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.435373381Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T23:08:35.438377748Z 66 PC: 12b02 | Move file pointer
2018-12-17T23:08:35.441047808Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.443621821Z 62 PC: 12a9c | Close file
2018-12-17T23:08:35.451356202Z 79 PC: 12aa8 | Find next file
2018-12-17T23:08:35.456076984Z 61 PC: 12ab4 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:08:35.463243294Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:08:35.470431558Z 66 PC: 12ada | Move file pointer
2018-12-17T23:08:35.472674742Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.475366669Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T23:08:35.478121141Z 66 PC: 12b02 | Move file pointer
2018-12-17T23:08:35.480045326Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.48330918Z 62 PC: 12a9c | Close file
2018-12-17T23:08:35.491265609Z 79 PC: 12aa8 | Find next file
2018-12-17T23:08:35.494349097Z 61 PC: 12ab4 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:08:35.501205594Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:08:35.508139581Z 66 PC: 12ada | Move file pointer
2018-12-17T23:08:35.51009243Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.513827203Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T23:08:35.516475238Z 66 PC: 12b02 | Move file pointer
2018-12-17T23:08:35.51781125Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.520958904Z 62 PC: 12a9c | Close file
2018-12-17T23:08:35.52899455Z 79 PC: 12aa8 | Find next file
2018-12-17T23:08:35.531577651Z 61 PC: 12ab4 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:08:35.539375433Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:08:35.545728288Z 66 PC: 12ada | Move file pointer
2018-12-17T23:08:35.547111277Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.551133209Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T23:08:35.559102635Z 66 PC: 12b02 | Move file pointer
2018-12-17T23:08:35.560446928Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.567720835Z 62 PC: 12a9c | Close file
2018-12-17T23:08:35.575748851Z 79 PC: 12aa8 | Find next file
2018-12-17T23:08:35.578231804Z 61 PC: 12ab4 | Open file (Filename = 'PAH.COM')
2018-12-17T23:08:35.585460153Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:08:35.592076786Z 66 PC: 12ada | Move file pointer
2018-12-17T23:08:35.59345362Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.596458585Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T23:08:35.599069277Z 66 PC: 12b02 | Move file pointer
2018-12-17T23:08:35.600377401Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:08:35.603769132Z 62 PC: 12a9c | Close file
2018-12-17T23:08:35.611459397Z 79 PC: 12aa8 | Find next file
2018-12-17T23:08:35.613917222Z 61 PC: 12ab4 | Open file (Filename = 'TEST.COM')
2018-12-17T23:08:35.620852299Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:08:35.623542672Z 62 PC: 12a9c | Close file
2018-12-17T23:08:35.625216644Z 79 PC: 12aa8 | Find next file
2018-12-17T23:08:35.627952162Z 26 PC: 12a7e | Set disk transfer address