Sample viewer

vx.netlux.org/Virus.DOS.Bash.6698

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:11:26.102658083Z 48 PC: 12c32 | Get DOS version
2018-12-17T23:11:26.105940298Z 48 PC: 12c6d | Get DOS version
2018-12-17T23:11:26.109689782Z 48 PC: 12c9d | Get DOS version
2018-12-17T23:11:26.111597583Z 75 PC: 13afb | Execute program
2018-12-17T23:11:26.121268237Z 61 PC: 13828 | Open file
2018-12-17T23:11:26.137540174Z 48 PC: 13bf3 | Get DOS version
2018-12-17T23:11:26.139803633Z 82 PC: 12dcd | Get DOS internal pointers (SYSVARS)
2018-12-17T23:11:26.143329838Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.150342308Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.15694441Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.163633195Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.171341911Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.178040031Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.185537027Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.193482122Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.20017322Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.206861221Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.217001737Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.223322219Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.229744739Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.236144263Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.243154848Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.249511205Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.256803043Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.264588527Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.271573507Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.27786311Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.284977596Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.291424989Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.297824213Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.305475495Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.311818163Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.319072565Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.325622474Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.332907665Z 67 PC: 12f64 | Get or set file attributes
2018-12-17T23:11:26.341478329Z 98 PC: 1377b | Get current PSP
2018-12-17T23:11:26.344789723Z 78 PC: 1370c | Find first file
2018-12-17T23:11:26.351412123Z 47 PC: 13712 | Get disk transfer address
2018-12-17T23:11:26.353035245Z 79 PC: 13748 | Find next file
2018-12-17T23:11:26.356107641Z 47 PC: 13712 | Get disk transfer address
2018-12-17T23:11:26.358190863Z 79 PC: 13748 | Find next file
2018-12-17T23:11:26.361339905Z 47 PC: 13712 | Get disk transfer address
2018-12-17T23:11:26.363039874Z 79 PC: 13748 | Find next file
2018-12-17T23:11:26.367269967Z 47 PC: 13712 | Get disk transfer address
2018-12-17T23:11:26.368963765Z 79 PC: 13748 | Find next file
2018-12-17T23:11:26.372162167Z 47 PC: 13712 | Get disk transfer address
2018-12-17T23:11:26.374707749Z 79 PC: 13748 | Find next file
2018-12-17T23:11:26.377527791Z 78 PC: 1370c | Find first file
2018-12-17T23:11:26.380618224Z 42 PC: 1314e | Get date 0x1314e: cmp cx, 0x1980
0x13152: je 0x136e0
0x13156: cmp dx, 0x911
0x1315a: jb 0x136e5
0x1315e: cmp dh, 0x10
0x13161: ja 0x136e5
0x13165: in al, 0x40
0x13167: cmp al, dl
0x13169: jne 0x136e5
0x1316d: push dx
0x1316e: push bx
0x1316f: push cx
0x13170: push ax
0x13171: push bp
0x13172: mov ax, 0xd
0x13175: int 0x21
0x13177: mov ah, 0x19
0x13179: int 0x21
0x1317b: xor dx, dx
0x1317d: call 0x131ad

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":17188,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:55:07.87167117Z 48 PC: 12c32 | Get DOS version
2018-12-25T12:55:07.875589374Z 48 PC: 12c6d | Get DOS version
2018-12-25T12:55:07.878421732Z 48 PC: 12c9d | Get DOS version
2018-12-25T12:55:07.879882204Z 75 PC: 13afb | Execute program
2018-12-25T12:55:07.887983194Z 61 PC: 13828 | Open file
2018-12-25T12:55:07.895066206Z 48 PC: 13bf3 | Get DOS version
2018-12-25T12:55:07.897393257Z 82 PC: 12dcd | Get DOS internal pointers (SYSVARS)
2018-12-25T12:55:07.900790584Z 67 PC: 12f64 | Get or set file attributes
2018-12-25T12:55:07.908446589Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:07.915045562Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:07.923633692Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:07.936154703Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:07.942933882Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:07.949766656Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:07.957308996Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:07.964086415Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:07.976263013Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:07.989583829Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:07.996006422Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.002351901Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.009785969Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.016463006Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.023248026Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.030458442Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.044036092Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.051023906Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.058348581Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.066435808Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.072985852Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.086658206Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.095307735Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.101605758Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.106478967Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.112991906Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.119604879Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.128228092Z 98 PC: 1377b | Get current PSP
2018-12-25T12:55:08.131833102Z 78 PC: 1370c | Find first file
2018-12-25T12:55:08.135929892Z 47 PC: 13712 | Get disk transfer address
2018-12-25T12:55:08.13704711Z 79 PC: 13748 | Find next file
2018-12-25T12:55:08.140915834Z 47 PC: 13712 | Get disk transfer address (See above)
2018-12-25T12:55:08.142464654Z 79 PC: 13748 | Find next file (See above)
2018-12-25T12:55:08.144357242Z 47 PC: 13712 | Get disk transfer address (See above)
2018-12-25T12:55:08.145936629Z 79 PC: 13748 | Find next file (See above)
2018-12-25T12:55:08.147780896Z 47 PC: 13712 | Get disk transfer address (See above)
2018-12-25T12:55:08.148816471Z 79 PC: 13748 | Find next file (See above)
2018-12-25T12:55:08.15089852Z 47 PC: 13712 | Get disk transfer address (See above)
2018-12-25T12:55:08.152227198Z 79 PC: 13748 | Find next file (See above)
2018-12-25T12:55:08.154307766Z 78 PC: 1370c | Find first file (See above)
2018-12-25T12:55:08.156669095Z 42 PC: 1314e | Get date 0x1314e: cmp cx, 0x1980
0x13152: je 0x136e0
0x13156: cmp dx, 0x911
0x1315a: jb 0x136e5
0x1315e: cmp dh, 0x10
0x13161: ja 0x136e5
0x13165: in al, 0x40
0x13167: cmp al, dl
0x13169: jne 0x136e5
0x1316d: push dx
0x1316e: push bx
0x1316f: push cx
0x13170: push ax
0x13171: push bp
0x13172: mov ax, 0xd
0x13175: int 0x21
0x13177: mov ah, 0x19
0x13179: int 0x21
0x1317b: xor dx, dx
0x1317d: call 0x131ad

{"DateBased":true,"Day":17,"Month":9,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":17188,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:55:08.214166587Z 48 PC: 12c32 | Get DOS version
2018-12-25T12:55:08.216636417Z 48 PC: 12c6d | Get DOS version
2018-12-25T12:55:08.219579986Z 48 PC: 12c9d | Get DOS version
2018-12-25T12:55:08.221162658Z 75 PC: 13afb | Execute program
2018-12-25T12:55:08.226281045Z 61 PC: 13828 | Open file
2018-12-25T12:55:08.234001291Z 48 PC: 13bf3 | Get DOS version
2018-12-25T12:55:08.236564847Z 82 PC: 12dcd | Get DOS internal pointers (SYSVARS)
2018-12-25T12:55:08.239991154Z 67 PC: 12f64 | Get or set file attributes
2018-12-25T12:55:08.246777726Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.253052094Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.259258185Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.26680971Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.27334398Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.279876354Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.287465851Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.293800667Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.300050644Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.307705466Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.31432031Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.321065353Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.329420273Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.336591487Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.343350231Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.350112561Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.356851278Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.364659522Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.372193098Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.381672754Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.388286876Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.395736269Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.402984024Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.40964065Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.416246952Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.424306704Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.430481884Z 67 PC: 12f64 | Get or set file attributes (See above)
2018-12-25T12:55:08.438607401Z 98 PC: 1377b | Get current PSP
2018-12-25T12:55:08.443622473Z 78 PC: 1370c | Find first file
2018-12-25T12:55:08.449635868Z 47 PC: 13712 | Get disk transfer address
2018-12-25T12:55:08.451105783Z 79 PC: 13748 | Find next file
2018-12-25T12:55:08.455725916Z 47 PC: 13712 | Get disk transfer address (See above)
2018-12-25T12:55:08.457862202Z 79 PC: 13748 | Find next file (See above)
2018-12-25T12:55:08.461443417Z 47 PC: 13712 | Get disk transfer address (See above)
2018-12-25T12:55:08.463561021Z 79 PC: 13748 | Find next file (See above)
2018-12-25T12:55:08.467814516Z 47 PC: 13712 | Get disk transfer address (See above)
2018-12-25T12:55:08.469734311Z 79 PC: 13748 | Find next file (See above)
2018-12-25T12:55:08.473061255Z 47 PC: 13712 | Get disk transfer address (See above)
2018-12-25T12:55:08.475772439Z 79 PC: 13748 | Find next file (See above)
2018-12-25T12:55:08.478755593Z 78 PC: 1370c | Find first file (See above)
2018-12-25T12:55:08.482353451Z 42 PC: 1314e | Get date 0x1314e: cmp cx, 0x1980
0x13152: je 0x136e0
0x13156: cmp dx, 0x911
0x1315a: jb 0x136e5
0x1315e: cmp dh, 0x10
0x13161: ja 0x136e5
0x13165: in al, 0x40
0x13167: cmp al, dl
0x13169: jne 0x136e5
0x1316d: push dx
0x1316e: push bx
0x1316f: push cx
0x13170: push ax
0x13171: push bp
0x13172: mov ax, 0xd
0x13175: int 0x21
0x13177: mov ah, 0x19
0x13179: int 0x21
0x1317b: xor dx, dx
0x1317d: call 0x131ad