Sample viewer

vx.netlux.org/Virus.DOS.Tet.416

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:04:40.233255804Z 78 PC: 13ea5 | Find first file
2018-12-17T22:04:40.238071682Z 61 PC: 13eea | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:04:40.244330826Z 63 PC: 13f0b | Read file or device (Read 6 bytes on handle 5)
2018-12-17T22:04:40.250297647Z 66 PC: 13f41 | Move file pointer
2018-12-17T22:04:40.252050682Z 64 PC: 13f50 | Write file or device (Write 410 bytes on handle 5)
2018-12-17T22:04:40.267246182Z 66 PC: 13f5d | Move file pointer
2018-12-17T22:04:40.268552891Z 64 PC: 13f6e | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.273511549Z 66 PC: 13f7b | Move file pointer
2018-12-17T22:04:40.274521937Z 64 PC: 13f8c | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.276649617Z 62 PC: 13f93 | Close file
2018-12-17T22:04:40.282342372Z 79 PC: 13f97 | Find next file
2018-12-17T22:04:40.285053984Z 61 PC: 13eea | Open file (Filename = 'PRINT.COM')
2018-12-17T22:04:40.296882187Z 63 PC: 13f0b | Read file or device (Read 6 bytes on handle 5)
2018-12-17T22:04:40.303243864Z 66 PC: 13f41 | Move file pointer
2018-12-17T22:04:40.318904901Z 64 PC: 13f50 | Write file or device (Write 410 bytes on handle 5)
2018-12-17T22:04:40.321917624Z 66 PC: 13f5d | Move file pointer
2018-12-17T22:04:40.323580601Z 64 PC: 13f6e | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.327699451Z 66 PC: 13f7b | Move file pointer
2018-12-17T22:04:40.330256478Z 64 PC: 13f8c | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.333312962Z 62 PC: 13f93 | Close file
2018-12-17T22:04:40.349475258Z 79 PC: 13f97 | Find next file
2018-12-17T22:04:40.352499262Z 61 PC: 13eea | Open file (Filename = 'HELLO.COM')
2018-12-17T22:04:40.358729771Z 63 PC: 13f0b | Read file or device (Read 6 bytes on handle 5)
2018-12-17T22:04:40.365297738Z 66 PC: 13f41 | Move file pointer
2018-12-17T22:04:40.366648244Z 64 PC: 13f50 | Write file or device (Write 410 bytes on handle 5)
2018-12-17T22:04:40.369212513Z 66 PC: 13f5d | Move file pointer
2018-12-17T22:04:40.371230357Z 64 PC: 13f6e | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.374489865Z 66 PC: 13f7b | Move file pointer
2018-12-17T22:04:40.376219247Z 64 PC: 13f8c | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.380241825Z 62 PC: 13f93 | Close file
2018-12-17T22:04:40.393089947Z 79 PC: 13f97 | Find next file
2018-12-17T22:04:40.396110195Z 61 PC: 13eea | Open file (Filename = 'PHANG.COM')
2018-12-17T22:04:40.403307216Z 63 PC: 13f0b | Read file or device (Read 6 bytes on handle 5)
2018-12-17T22:04:40.410340309Z 66 PC: 13f41 | Move file pointer
2018-12-17T22:04:40.412109392Z 64 PC: 13f50 | Write file or device (Write 410 bytes on handle 5)
2018-12-17T22:04:40.415988586Z 66 PC: 13f5d | Move file pointer
2018-12-17T22:04:40.418340087Z 64 PC: 13f6e | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.420975956Z 66 PC: 13f7b | Move file pointer
2018-12-17T22:04:40.422615133Z 64 PC: 13f8c | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.425749205Z 62 PC: 13f93 | Close file
2018-12-17T22:04:40.433804873Z 79 PC: 13f97 | Find next file
2018-12-17T22:04:40.436816438Z 61 PC: 13eea | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:04:40.444303014Z 63 PC: 13f0b | Read file or device (Read 6 bytes on handle 5)
2018-12-17T22:04:40.450822905Z 66 PC: 13f41 | Move file pointer
2018-12-17T22:04:40.452529216Z 64 PC: 13f50 | Write file or device (Write 410 bytes on handle 5)
2018-12-17T22:04:40.456535844Z 66 PC: 13f5d | Move file pointer
2018-12-17T22:04:40.458184251Z 64 PC: 13f6e | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.461156109Z 66 PC: 13f7b | Move file pointer
2018-12-17T22:04:40.463714013Z 64 PC: 13f8c | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.474086271Z 62 PC: 13f93 | Close file
2018-12-17T22:04:40.482341482Z 79 PC: 13f97 | Find next file
2018-12-17T22:04:40.48556397Z 61 PC: 13eea | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:04:40.492988864Z 63 PC: 13f0b | Read file or device (Read 6 bytes on handle 5)
2018-12-17T22:04:40.499586588Z 66 PC: 13f41 | Move file pointer
2018-12-17T22:04:40.502052927Z 64 PC: 13f50 | Write file or device (Write 410 bytes on handle 5)
2018-12-17T22:04:40.510338221Z 66 PC: 13f5d | Move file pointer
2018-12-17T22:04:40.512100427Z 64 PC: 13f6e | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.517730986Z 66 PC: 13f7b | Move file pointer
2018-12-17T22:04:40.51912328Z 64 PC: 13f8c | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.521551731Z 62 PC: 13f93 | Close file
2018-12-17T22:04:40.528867185Z 79 PC: 13f97 | Find next file
2018-12-17T22:04:40.531127614Z 61 PC: 13eea | Open file (Filename = 'PAH.COM')
2018-12-17T22:04:40.535443343Z 63 PC: 13f0b | Read file or device (Read 6 bytes on handle 5)
2018-12-17T22:04:40.54030869Z 66 PC: 13f41 | Move file pointer
2018-12-17T22:04:40.541984903Z 64 PC: 13f50 | Write file or device (Write 410 bytes on handle 5)
2018-12-17T22:04:40.543945724Z 66 PC: 13f5d | Move file pointer
2018-12-17T22:04:40.545461401Z 64 PC: 13f6e | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.550342674Z 66 PC: 13f7b | Move file pointer
2018-12-17T22:04:40.551631342Z 64 PC: 13f8c | Write file or device (Write 6 bytes on handle 5)
2018-12-17T22:04:40.555278209Z 62 PC: 13f93 | Close file
2018-12-17T22:04:40.563691903Z 79 PC: 13f97 | Find next file
2018-12-17T22:04:40.566179123Z 9 PC: 12a85 | Display string (String= 'Sophos Ltd, Oxford sacrificial COM goat 1400H bytes long ')
2018-12-17T22:04:40.572250158Z 0 PC: 12a89 | Program terminate