Sample viewer

vx.netlux.org/Virus.DOS.Tricks.142

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:10:21.964764638Z 78 PC: 12a5a | Find first file
2018-12-17T23:10:21.971154597Z 61 PC: 12a64 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:10:21.977403607Z 63 PC: 12a71 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:10:21.983552225Z 66 PC: 12a81 | Move file pointer
2018-12-17T23:10:21.985422788Z 64 PC: 12a94 | Write file or device (Write 142 bytes on handle 5)
2018-12-17T23:10:22.185259706Z 66 PC: 12a9d | Move file pointer
2018-12-17T23:10:22.186715104Z 64 PC: 12aa8 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:10:22.19402055Z 62 PC: 12aac | Close file
2018-12-17T23:10:22.201855598Z 79 PC: 12ab3 | Find next file
2018-12-17T23:10:22.204425431Z 61 PC: 12a64 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:10:22.21164689Z 63 PC: 12a71 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:10:22.218137953Z 66 PC: 12a81 | Move file pointer
2018-12-17T23:10:22.219481445Z 64 PC: 12a94 | Write file or device (Write 142 bytes on handle 5)
2018-12-17T23:10:22.222002796Z 66 PC: 12a9d | Move file pointer
2018-12-17T23:10:22.22346562Z 64 PC: 12aa8 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:10:22.225538891Z 62 PC: 12aac | Close file
2018-12-17T23:10:22.231253774Z 79 PC: 12ab3 | Find next file
2018-12-17T23:10:22.234568223Z 61 PC: 12a64 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:10:22.240975617Z 63 PC: 12a71 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:10:22.247424565Z 66 PC: 12a81 | Move file pointer
2018-12-17T23:10:22.249448132Z 64 PC: 12a94 | Write file or device (Write 142 bytes on handle 5)
2018-12-17T23:10:22.252027593Z 66 PC: 12a9d | Move file pointer
2018-12-17T23:10:22.253657864Z 64 PC: 12aa8 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:10:22.25697488Z 62 PC: 12aac | Close file
2018-12-17T23:10:22.264586895Z 79 PC: 12ab3 | Find next file
2018-12-17T23:10:22.266420133Z 61 PC: 12a64 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:10:22.272464326Z 63 PC: 12a71 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:10:22.27723952Z 66 PC: 12a81 | Move file pointer
2018-12-17T23:10:22.278451481Z 64 PC: 12a94 | Write file or device (Write 142 bytes on handle 5)
2018-12-17T23:10:22.280901356Z 66 PC: 12a9d | Move file pointer
2018-12-17T23:10:22.284551671Z 64 PC: 12aa8 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:10:22.287441313Z 62 PC: 12aac | Close file
2018-12-17T23:10:22.296667722Z 79 PC: 12ab3 | Find next file
2018-12-17T23:10:22.299489801Z 61 PC: 12a64 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:10:22.305967871Z 63 PC: 12a71 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:10:22.313211558Z 66 PC: 12a81 | Move file pointer
2018-12-17T23:10:22.314786518Z 64 PC: 12a94 | Write file or device (Write 142 bytes on handle 5)
2018-12-17T23:10:22.317427935Z 66 PC: 12a9d | Move file pointer
2018-12-17T23:10:22.319512339Z 64 PC: 12aa8 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:10:22.322367142Z 62 PC: 12aac | Close file
2018-12-17T23:10:22.329863335Z 79 PC: 12ab3 | Find next file
2018-12-17T23:10:22.332987566Z 61 PC: 12a64 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:10:22.339262579Z 63 PC: 12a71 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:10:22.345438932Z 66 PC: 12a81 | Move file pointer
2018-12-17T23:10:22.347372827Z 64 PC: 12a94 | Write file or device (Write 142 bytes on handle 5)
2018-12-17T23:10:22.355470543Z 66 PC: 12a9d | Move file pointer
2018-12-17T23:10:22.356718786Z 64 PC: 12aa8 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:10:22.363565254Z 62 PC: 12aac | Close file
2018-12-17T23:10:22.37176107Z 79 PC: 12ab3 | Find next file
2018-12-17T23:10:22.374324755Z 61 PC: 12a64 | Open file (Filename = 'PAH.COM')
2018-12-17T23:10:22.380977793Z 63 PC: 12a71 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:10:22.387075394Z 66 PC: 12a81 | Move file pointer
2018-12-17T23:10:22.38845491Z 64 PC: 12a94 | Write file or device (Write 142 bytes on handle 5)
2018-12-17T23:10:22.391483095Z 66 PC: 12a9d | Move file pointer
2018-12-17T23:10:22.392727209Z 64 PC: 12aa8 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:10:22.395145876Z 62 PC: 12aac | Close file
2018-12-17T23:10:22.40272289Z 79 PC: 12ab3 | Find next file
2018-12-17T23:10:22.404684861Z 61 PC: 12a64 | Open file (Filename = 'TEST.COM')
2018-12-17T23:10:22.408736455Z 63 PC: 12a71 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:10:22.41122336Z 66 PC: 12a81 | Move file pointer
2018-12-17T23:10:22.412743979Z 64 PC: 12a94 | Write file or device (Write 142 bytes on handle 5)
2018-12-17T23:10:22.415239469Z 66 PC: 12a9d | Move file pointer
2018-12-17T23:10:22.417147193Z 64 PC: 12aa8 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:10:22.42089993Z 62 PC: 12aac | Close file
2018-12-17T23:10:22.428462336Z 79 PC: 12ab3 | Find next file