Sample viewer

vx.netlux.org/Virus.DOS.Naziskin.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:11:11.699008411Z 78 PC: 12d46 | Find first file
2018-12-17T23:11:11.706858934Z 67 PC: 12da2 | Get or set file attributes
2018-12-17T23:11:11.714039442Z 67 PC: 12db1 | Get or set file attributes
2018-12-17T23:11:11.731446843Z 61 PC: 12db8 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:11:11.73917061Z 87 PC: 12dc5 | Get or set file date and time
2018-12-17T23:11:11.741819112Z 64 PC: 12ddd | Write file or device (Write 15 bytes on handle 5)
2018-12-17T23:11:11.750035591Z 87 PC: 12dee | Get or set file date and time
2018-12-17T23:11:11.752186044Z 62 PC: 12df4 | Close file
2018-12-17T23:11:11.761151537Z 67 PC: 12e04 | Get or set file attributes
2018-12-17T23:11:11.772932583Z 79 PC: 12d5e | Find next file
2018-12-17T23:11:11.781812574Z 67 PC: 12da2 | Get or set file attributes
2018-12-17T23:11:11.789433234Z 67 PC: 12db1 | Get or set file attributes
2018-12-17T23:11:11.800477029Z 61 PC: 12db8 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:11:11.808099032Z 87 PC: 12dc5 | Get or set file date and time
2018-12-17T23:11:11.810114644Z 64 PC: 12ddd | Write file or device (Write 15 bytes on handle 5)
2018-12-17T23:11:11.817773731Z 87 PC: 12dee | Get or set file date and time
2018-12-17T23:11:11.81977132Z 62 PC: 12df4 | Close file
2018-12-17T23:11:11.828761954Z 67 PC: 12e04 | Get or set file attributes
2018-12-17T23:11:11.840688832Z 79 PC: 12d5e | Find next file
2018-12-17T23:11:11.84377534Z 67 PC: 12da2 | Get or set file attributes
2018-12-17T23:11:11.850206744Z 67 PC: 12db1 | Get or set file attributes
2018-12-17T23:11:11.862775791Z 61 PC: 12db8 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:11:11.870518573Z 87 PC: 12dc5 | Get or set file date and time
2018-12-17T23:11:11.872391941Z 64 PC: 12ddd | Write file or device (Write 15 bytes on handle 5)
2018-12-17T23:11:11.88097684Z 87 PC: 12dee | Get or set file date and time
2018-12-17T23:11:11.882959821Z 62 PC: 12df4 | Close file
2018-12-17T23:11:11.89138049Z 67 PC: 12e04 | Get or set file attributes
2018-12-17T23:11:11.90364057Z 79 PC: 12d5e | Find next file
2018-12-17T23:11:11.908122947Z 67 PC: 12da2 | Get or set file attributes
2018-12-17T23:11:11.915110242Z 67 PC: 12db1 | Get or set file attributes
2018-12-17T23:11:11.929740959Z 61 PC: 12db8 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:11:11.937664247Z 87 PC: 12dc5 | Get or set file date and time
2018-12-17T23:11:11.939411487Z 64 PC: 12ddd | Write file or device (Write 15 bytes on handle 5)
2018-12-17T23:11:11.949061996Z 87 PC: 12dee | Get or set file date and time
2018-12-17T23:11:11.950885082Z 62 PC: 12df4 | Close file
2018-12-17T23:11:11.95915231Z 67 PC: 12e04 | Get or set file attributes
2018-12-17T23:11:11.970114413Z 79 PC: 12d5e | Find next file
2018-12-17T23:11:11.973272914Z 67 PC: 12da2 | Get or set file attributes
2018-12-17T23:11:11.980430248Z 67 PC: 12db1 | Get or set file attributes
2018-12-17T23:11:11.991519761Z 61 PC: 12db8 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:11:12.00033639Z 87 PC: 12dc5 | Get or set file date and time
2018-12-17T23:11:12.001981711Z 64 PC: 12ddd | Write file or device (Write 15 bytes on handle 5)
2018-12-17T23:11:12.009703503Z 87 PC: 12dee | Get or set file date and time
2018-12-17T23:11:12.012390755Z 62 PC: 12df4 | Close file
2018-12-17T23:11:12.020927814Z 67 PC: 12e04 | Get or set file attributes
2018-12-17T23:11:12.032319426Z 79 PC: 12d5e | Find next file
2018-12-17T23:11:12.036127364Z 67 PC: 12da2 | Get or set file attributes
2018-12-17T23:11:12.043940366Z 67 PC: 12db1 | Get or set file attributes
2018-12-17T23:11:12.056233028Z 61 PC: 12db8 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:11:12.065759817Z 87 PC: 12dc5 | Get or set file date and time
2018-12-17T23:11:12.067345845Z 64 PC: 12ddd | Write file or device (Write 15 bytes on handle 5)
2018-12-17T23:11:12.074707008Z 87 PC: 12dee | Get or set file date and time
2018-12-17T23:11:12.076314477Z 62 PC: 12df4 | Close file
2018-12-17T23:11:12.08457819Z 67 PC: 12e04 | Get or set file attributes
2018-12-17T23:11:12.095943329Z 79 PC: 12d5e | Find next file
2018-12-17T23:11:12.099453911Z 67 PC: 12da2 | Get or set file attributes
2018-12-17T23:11:12.122847653Z 67 PC: 12db1 | Get or set file attributes
2018-12-17T23:11:12.137641359Z 61 PC: 12db8 | Open file (Filename = 'PAH.COM')
2018-12-17T23:11:12.146228183Z 87 PC: 12dc5 | Get or set file date and time
2018-12-17T23:11:12.149371639Z 64 PC: 12ddd | Write file or device (Write 15 bytes on handle 5)
2018-12-17T23:11:12.157358573Z 87 PC: 12dee | Get or set file date and time
2018-12-17T23:11:12.15960492Z 62 PC: 12df4 | Close file
2018-12-17T23:11:12.169126478Z 67 PC: 12e04 | Get or set file attributes
2018-12-17T23:11:12.181094131Z 79 PC: 12d5e | Find next file
2018-12-17T23:11:12.184710279Z 67 PC: 12da2 | Get or set file attributes
2018-12-17T23:11:12.192568942Z 67 PC: 12db1 | Get or set file attributes
2018-12-17T23:11:12.201542358Z 61 PC: 12db8 | Open file (Filename = 'TEST.COM')
2018-12-17T23:11:12.206069658Z 87 PC: 12dc5 | Get or set file date and time
2018-12-17T23:11:12.20794571Z 64 PC: 12ddd | Write file or device (Write 15 bytes on handle 5)
2018-12-17T23:11:12.210196842Z 87 PC: 12dee | Get or set file date and time
2018-12-17T23:11:12.211500112Z 62 PC: 12df4 | Close file
2018-12-17T23:11:12.216744445Z 67 PC: 12e04 | Get or set file attributes
2018-12-17T23:11:12.225440544Z 79 PC: 12d5e | Find next file
2018-12-17T23:11:12.227363441Z 42 PC: 12d70 | Get date 0x12d70: nop
0x12d71: cmp al, 3
0x12d73: nop
0x12d74: jne 0x12d8f
0x12d76: nop
0x12d77: nop
0x12d78: nop
0x12d79: nop
0x12d7a: mov al, 0x50
0x12d7c: nop
0x12d7d: mov bx, 0x174
0x12d80: nop
0x12d81: mov cx, 0x40
0x12d84: nop
0x12d85: mov dx, 0
0x12d88: nop
0x12d89: int 0x26
0x12d8b: nop
0x12d8c: nop
0x12d8d: nop
2018-12-17T23:11:12.229256156Z 76 PC: 12d95 | Terminate with return code (Return code = '1')

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":17113,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:54:57.166554954Z 78 PC: 12d46 | Find first file
2018-12-25T12:54:57.170862557Z 67 PC: 12da2 | Get or set file attributes
2018-12-25T12:54:57.174306225Z 67 PC: 12db1 | Get or set file attributes
2018-12-25T12:54:57.188832018Z 61 PC: 12db8 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:54:57.201067652Z 87 PC: 12dc5 | Get or set file date and time
2018-12-25T12:54:57.202891041Z 64 PC: 12ddd | Write file or device (Write 15 bytes on handle 5)
2018-12-25T12:54:57.209507303Z 87 PC: 12dee | Get or set file date and time
2018-12-25T12:54:57.211600386Z 62 PC: 12df4 | Close file
2018-12-25T12:54:57.219169576Z 67 PC: 12e04 | Get or set file attributes
2018-12-25T12:54:57.229049347Z 79 PC: 12d5e | Find next file
2018-12-25T12:54:57.231892334Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.237192728Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.248084805Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.259790382Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.261023411Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.267028967Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.268717392Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.276613148Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.285841335Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.288435964Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.293933804Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.303293601Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.320455568Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.326984274Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.333462999Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.334556798Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.341625263Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.351049905Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.353414951Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.359386546Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.368816529Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.379847624Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.381974005Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.38874701Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.390083033Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.397798521Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.407253725Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.409596622Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.415471454Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.421474049Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.43248764Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.43415229Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.440417898Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.441703284Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.449484257Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.459086555Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.46153113Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.467519238Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.476913223Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.483265179Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.485499796Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.491895126Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.493238727Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.502350819Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.514728759Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.517192317Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.52321242Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.532855248Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.539670787Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.542338512Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.549329434Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.551240185Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.559372763Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.571262026Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.573738254Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.580473713Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.590029677Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.596558943Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.598011092Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.605244793Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.606609346Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.613621728Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.624134495Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.626299243Z 42 PC: 12d70 | Get date 0x12d70: nop
0x12d71: cmp al, 3
0x12d73: nop
0x12d74: jne 0x12d8f
0x12d76: nop
0x12d77: nop
0x12d78: nop
0x12d79: nop
0x12d7a: mov al, 0x50
0x12d7c: nop
0x12d7d: mov bx, 0x174
0x12d80: nop
0x12d81: mov cx, 0x40
0x12d84: nop
0x12d85: mov dx, 0
0x12d88: nop
0x12d89: int 0x26
0x12d8b: nop
0x12d8c: nop
0x12d8d: nop
2018-12-25T12:54:57.628226751Z 76 PC: 12d95 | Terminate with return code (Return code = '2')

{"DateBased":true,"Day":2,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":17113,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:54:57.215920452Z 78 PC: 12d46 | Find first file
2018-12-25T12:54:57.222797783Z 67 PC: 12da2 | Get or set file attributes
2018-12-25T12:54:57.22908897Z 67 PC: 12db1 | Get or set file attributes
2018-12-25T12:54:57.249944895Z 61 PC: 12db8 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:54:57.257070036Z 87 PC: 12dc5 | Get or set file date and time
2018-12-25T12:54:57.258979327Z 64 PC: 12ddd | Write file or device (Write 15 bytes on handle 5)
2018-12-25T12:54:57.266621823Z 87 PC: 12dee | Get or set file date and time
2018-12-25T12:54:57.269174787Z 62 PC: 12df4 | Close file
2018-12-25T12:54:57.27769649Z 67 PC: 12e04 | Get or set file attributes
2018-12-25T12:54:57.288702331Z 79 PC: 12d5e | Find next file
2018-12-25T12:54:57.292057288Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.299233967Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.320175799Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.327879568Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.330610249Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.33804381Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.339560938Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.347851913Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.359357207Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.362783587Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.369278911Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.38360387Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.390922865Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.39260326Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.400654086Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.402507084Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.410757172Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.42385664Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.426738032Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.432990486Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.448615018Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.458154753Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.459546953Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.464960674Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.466512204Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.471570153Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.478267971Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.480335991Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.484079025Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.492760717Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.506803954Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.509648493Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.515504191Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.517308599Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.522186944Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.530970743Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.533694829Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.537434097Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.543719667Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.551978063Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.557569533Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.564918409Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.566572672Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.57455381Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.585631983Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.588353263Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.594435523Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.604646902Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.611626799Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.613398742Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.620395978Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.621848119Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.630405591Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.64398371Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.646702116Z 67 PC: 12da2 | Get or set file attributes (See above)
2018-12-25T12:54:57.653611573Z 67 PC: 12db1 | Get or set file attributes (See above)
2018-12-25T12:54:57.66440847Z 61 PC: 12db8 | Open file (See above)
2018-12-25T12:54:57.672028954Z 87 PC: 12dc5 | Get or set file date and time (See above)
2018-12-25T12:54:57.674469226Z 64 PC: 12ddd | Write file or device (See above)
2018-12-25T12:54:57.681563299Z 87 PC: 12dee | Get or set file date and time (See above)
2018-12-25T12:54:57.683254574Z 62 PC: 12df4 | Close file (See above)
2018-12-25T12:54:57.692008211Z 67 PC: 12e04 | Get or set file attributes (See above)
2018-12-25T12:54:57.706070444Z 79 PC: 12d5e | Find next file (See above)
2018-12-25T12:54:57.708650583Z 42 PC: 12d70 | Get date 0x12d70: nop
0x12d71: cmp al, 3
0x12d73: nop
0x12d74: jne 0x12d8f
0x12d76: nop
0x12d77: nop
0x12d78: nop
0x12d79: nop
0x12d7a: mov al, 0x50
0x12d7c: nop
0x12d7d: mov bx, 0x174
0x12d80: nop
0x12d81: mov cx, 0x40
0x12d84: nop
0x12d85: mov dx, 0
0x12d88: nop
0x12d89: int 0x26
0x12d8b: nop
0x12d8c: nop
0x12d8d: nop
2018-12-25T12:54:57.712235854Z 76 PC: 12d95 | Terminate with return code (Return code = '1')