Sample viewer

vx.netlux.org/Virus.DOS.Vienna.Born.974

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:10:28.260551342Z 67 PC: 144c6 | Get or set file attributes
2018-12-17T23:10:28.267146408Z 65 PC: 144cd | Delete file (Filename = 'chklist.tav')
2018-12-17T23:10:28.27512073Z 67 PC: 144c6 | Get or set file attributes
2018-12-17T23:10:28.287080539Z 65 PC: 144cd | Delete file (Filename = 'chklist.cps')
2018-12-17T23:10:28.299123554Z 67 PC: 144c6 | Get or set file attributes
2018-12-17T23:10:28.306019798Z 65 PC: 144cd | Delete file (Filename = 'anti-vir.dat')
2018-12-17T23:10:28.312461526Z 67 PC: 144c6 | Get or set file attributes
2018-12-17T23:10:28.318844113Z 65 PC: 144cd | Delete file (Filename = 'chklist.ms')
2018-12-17T23:10:28.326370181Z 53 PC: 145c0 | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:10:28.327902263Z 37 PC: 145cf | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:10:28.32939443Z 53 PC: 145c0 | Get interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T23:10:28.331670312Z 37 PC: 145cf | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T23:10:28.33342884Z 53 PC: 145c0 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:10:28.335190845Z 37 PC: 145cf | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:10:28.338442602Z 47 PC: 147e2 | Get disk transfer address
2018-12-17T23:10:28.34056272Z 26 PC: 147f1 | Set disk transfer address
2018-12-17T23:10:28.343089413Z 78 PC: 14687 | Find first file
2018-12-17T23:10:28.356228972Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.35890715Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.361573756Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.364321325Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.368295361Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.371421152Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.374597246Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.379999348Z 67 PC: 146c0 | Get or set file attributes
2018-12-17T23:10:28.386700896Z 67 PC: 146d0 | Get or set file attributes
2018-12-17T23:10:28.405851382Z 61 PC: 146df | Open file (Filename = 'TEST.COM')
2018-12-17T23:10:28.414288614Z 87 PC: 146ed | Get or set file date and time
2018-12-17T23:10:28.41618936Z 63 PC: 146ff | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:10:28.423482189Z 87 PC: 14790 | Get or set file date and time
2018-12-17T23:10:28.434458769Z 62 PC: 14794 | Close file
2018-12-17T23:10:28.445320281Z 67 PC: 147a1 | Get or set file attributes
2018-12-17T23:10:28.461316934Z 78 PC: 14687 | Find first file
2018-12-17T23:10:28.469514496Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.472691903Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.475801172Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.479145724Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.483059516Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.486079278Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.489087757Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.493119842Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.495982748Z 78 PC: 14687 | Find first file
2018-12-17T23:10:28.505749612Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.511235251Z 67 PC: 146c0 | Get or set file attributes
2018-12-17T23:10:28.518890072Z 67 PC: 146d0 | Get or set file attributes
2018-12-17T23:10:28.856158254Z 61 PC: 146df | Open file (Filename = 'C:\DOS\FORMAT.COM')
2018-12-17T23:10:28.864353511Z 87 PC: 146ed | Get or set file date and time
2018-12-17T23:10:28.866270498Z 63 PC: 146ff | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:10:28.872304328Z 66 PC: 14739 | Move file pointer
2018-12-17T23:10:28.874830911Z 64 PC: 1475c | Write file or device (Write 974 bytes on handle 5)
2018-12-17T23:10:28.883748698Z 66 PC: 14769 | Move file pointer
2018-12-17T23:10:28.88570596Z 64 PC: 1477f | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:10:28.890407534Z 87 PC: 14790 | Get or set file date and time
2018-12-17T23:10:28.89277622Z 62 PC: 14794 | Close file
2018-12-17T23:10:28.900562167Z 67 PC: 147a1 | Get or set file attributes
2018-12-17T23:10:28.911807382Z 78 PC: 14687 | Find first file
2018-12-17T23:10:28.920457585Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.924145422Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.927670533Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.932589898Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.935956972Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.939051814Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.943090872Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.946631273Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.949497295Z 78 PC: 14687 | Find first file
2018-12-17T23:10:28.957325711Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.961268969Z 79 PC: 1468d | Find next file
2018-12-17T23:10:28.964800583Z 67 PC: 146c0 | Get or set file attributes
2018-12-17T23:10:28.971722004Z 67 PC: 146d0 | Get or set file attributes
2018-12-17T23:10:28.983346312Z 61 PC: 146df | Open file (Filename = 'C:\DOS\KEYB.COM')
2018-12-17T23:10:28.990140924Z 87 PC: 146ed | Get or set file date and time
2018-12-17T23:10:28.991396225Z 63 PC: 146ff | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:10:28.996277819Z 66 PC: 14739 | Move file pointer
2018-12-17T23:10:28.99752235Z 64 PC: 1475c | Write file or device (Write 974 bytes on handle 5)
2018-12-17T23:10:29.005127396Z 66 PC: 14769 | Move file pointer
2018-12-17T23:10:29.006927743Z 64 PC: 1477f | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:10:29.009216378Z 87 PC: 14790 | Get or set file date and time
2018-12-17T23:10:29.010538265Z 62 PC: 14794 | Close file
2018-12-17T23:10:29.017741556Z 67 PC: 147a1 | Get or set file attributes
2018-12-17T23:10:29.025550767Z 78 PC: 14687 | Find first file
2018-12-17T23:10:29.030406712Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.0337754Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.036885861Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.039560963Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.042987499Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.046029962Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.048732376Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.052579263Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.055216404Z 78 PC: 14687 | Find first file
2018-12-17T23:10:29.062099683Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.065304772Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.069532305Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.077071869Z 67 PC: 146c0 | Get or set file attributes
2018-12-17T23:10:29.083778665Z 67 PC: 146d0 | Get or set file attributes
2018-12-17T23:10:29.095644818Z 61 PC: 146df | Open file (Filename = 'C:\DOS\SYS.COM')
2018-12-17T23:10:29.103776185Z 87 PC: 146ed | Get or set file date and time
2018-12-17T23:10:29.105996732Z 63 PC: 146ff | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:10:29.114078456Z 66 PC: 14739 | Move file pointer
2018-12-17T23:10:29.116569562Z 64 PC: 1475c | Write file or device (Write 974 bytes on handle 5)
2018-12-17T23:10:29.12613183Z 66 PC: 14769 | Move file pointer
2018-12-17T23:10:29.128548987Z 64 PC: 1477f | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:10:29.132406935Z 87 PC: 14790 | Get or set file date and time
2018-12-17T23:10:29.134077959Z 62 PC: 14794 | Close file
2018-12-17T23:10:29.142316827Z 67 PC: 147a1 | Get or set file attributes
2018-12-17T23:10:29.153577381Z 78 PC: 14687 | Find first file
2018-12-17T23:10:29.160278076Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.163593323Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.167585253Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.170647914Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.173642548Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.182917475Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.185909844Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.18888942Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.193746387Z 78 PC: 14687 | Find first file
2018-12-17T23:10:29.200852144Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.204408554Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.208778145Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.21282093Z 79 PC: 1468d | Find next file
2018-12-17T23:10:29.219663592Z 26 PC: 144a0 | Set disk transfer address
2018-12-17T23:10:29.222019484Z 37 PC: 145f8 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:10:29.223956127Z 37 PC: 145f8 | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T23:10:29.225512134Z 37 PC: 145f8 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:10:29.227564926Z 9 PC: 13252 | Display string (String= 'Goat file (COM). Size=00001A0Ah/0000006666d bytes. ')
2018-12-17T23:10:29.23303677Z 76 PC: 13256 | Terminate with return code (Return code = '36')