Sample viewer

vx.netlux.org/Virus.DOS.Happy.412

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:11:14.924964475Z 26 PC: 12ac7 | Set disk transfer address
2018-12-17T23:11:14.926821938Z 78 PC: 12ad1 | Find first file
2018-12-17T23:11:14.934308469Z 61 PC: 12aff | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:11:14.942075829Z 63 PC: 12b0f | Read file or device (Read 7 bytes on handle 5)
2018-12-17T23:11:14.94923824Z 66 PC: 12b23 | Move file pointer
2018-12-17T23:11:14.952149546Z 64 PC: 12b35 | Write file or device (Write 412 bytes on handle 5)
2018-12-17T23:11:14.967490891Z 66 PC: 12b40 | Move file pointer
2018-12-17T23:11:14.969718711Z 64 PC: 12b4d | Write file or device (Write 7 bytes on handle 5)
2018-12-17T23:11:14.977838743Z 62 PC: 12b55 | Close file
2018-12-17T23:11:14.986899515Z 78 PC: 12ad1 | Find first file
2018-12-17T23:11:14.997988702Z 61 PC: 12aff | Open file (Filename = 'C:\DOS\EDIT.COM')
2018-12-17T23:11:15.006100469Z 63 PC: 12b0f | Read file or device (Read 7 bytes on handle 5)
2018-12-17T23:11:15.012543909Z 66 PC: 12b23 | Move file pointer
2018-12-17T23:11:15.014173884Z 64 PC: 12b35 | Write file or device (Write 412 bytes on handle 5)
2018-12-17T23:11:15.650404974Z 66 PC: 12b40 | Move file pointer
2018-12-17T23:11:15.652425244Z 64 PC: 12b4d | Write file or device (Write 7 bytes on handle 5)
2018-12-17T23:11:15.659168377Z 62 PC: 12b55 | Close file
2018-12-17T23:11:15.681439976Z 26 PC: 12b7a | Set disk transfer address
2018-12-17T23:11:15.685457011Z 9 PC: 12b82 | Display string (String= 'Thank you for running the Happy virus Warning !!! COM-files in current directory and C:\DOS might be infected !!!! ')
2018-12-17T23:11:15.696429409Z 9 PC: 12aa2 | Display string (String= 'Hello - Copyright S & S International, 1990 ')