Sample viewer

vx.netlux.org/Virus.DOS.Ash.Riot.453

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:11:45.70149854Z 26 PC: 12a6d | Set disk transfer address
2018-12-17T23:11:45.703692546Z 78 PC: 12aac | Find first file
2018-12-17T23:11:45.711450716Z 61 PC: 12ab8 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:11:45.719156247Z 63 PC: 12ac7 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:45.726971445Z 66 PC: 12ae0 | Move file pointer
2018-12-17T23:11:45.73000503Z 64 PC: 12af5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:45.733714626Z 64 PC: 12b00 | Write file or device (Write 449 bytes on handle 5)
2018-12-17T23:11:45.751458616Z 66 PC: 12b09 | Move file pointer
2018-12-17T23:11:45.754848481Z 64 PC: 12b2b | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:45.7626321Z 62 PC: 12aa0 | Close file
2018-12-17T23:11:45.772034543Z 79 PC: 12aac | Find next file
2018-12-17T23:11:45.776274736Z 61 PC: 12ab8 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:11:45.784513871Z 63 PC: 12ac7 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:45.792416383Z 66 PC: 12ae0 | Move file pointer
2018-12-17T23:11:45.795249512Z 64 PC: 12af5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:45.798865532Z 64 PC: 12b00 | Write file or device (Write 449 bytes on handle 5)
2018-12-17T23:11:45.802300561Z 66 PC: 12b09 | Move file pointer
2018-12-17T23:11:45.805342993Z 64 PC: 12b2b | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:45.809649342Z 62 PC: 12aa0 | Close file
2018-12-17T23:11:45.818886274Z 79 PC: 12aac | Find next file
2018-12-17T23:11:45.822691881Z 61 PC: 12ab8 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:11:45.831065949Z 63 PC: 12ac7 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:45.838356119Z 66 PC: 12ae0 | Move file pointer
2018-12-17T23:11:45.840242347Z 64 PC: 12af5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:45.846902362Z 64 PC: 12b00 | Write file or device (Write 449 bytes on handle 5)
2018-12-17T23:11:45.855877881Z 66 PC: 12b09 | Move file pointer
2018-12-17T23:11:45.857861682Z 64 PC: 12b2b | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:45.866455645Z 62 PC: 12aa0 | Close file
2018-12-17T23:11:45.875617514Z 79 PC: 12aac | Find next file
2018-12-17T23:11:45.878921227Z 61 PC: 12ab8 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:11:45.887390155Z 63 PC: 12ac7 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:45.897971394Z 66 PC: 12ae0 | Move file pointer
2018-12-17T23:11:45.900102832Z 64 PC: 12af5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:45.904298563Z 64 PC: 12b00 | Write file or device (Write 449 bytes on handle 5)
2018-12-17T23:11:45.907287114Z 66 PC: 12b09 | Move file pointer
2018-12-17T23:11:45.908910597Z 64 PC: 12b2b | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:45.912613972Z 62 PC: 12aa0 | Close file
2018-12-17T23:11:45.921593849Z 79 PC: 12aac | Find next file
2018-12-17T23:11:45.924839653Z 61 PC: 12ab8 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:11:45.932442682Z 63 PC: 12ac7 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:45.941261988Z 66 PC: 12ae0 | Move file pointer
2018-12-17T23:11:45.942915067Z 64 PC: 12af5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:45.946077684Z 64 PC: 12b00 | Write file or device (Write 449 bytes on handle 5)
2018-12-17T23:11:45.949991755Z 66 PC: 12b09 | Move file pointer
2018-12-17T23:11:45.951596503Z 64 PC: 12b2b | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:45.95500842Z 62 PC: 12aa0 | Close file
2018-12-17T23:11:45.964838858Z 79 PC: 12aac | Find next file
2018-12-17T23:11:45.968271643Z 61 PC: 12ab8 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:11:45.976261149Z 63 PC: 12ac7 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:45.985017817Z 66 PC: 12ae0 | Move file pointer
2018-12-17T23:11:45.986856545Z 64 PC: 12af5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:45.990188231Z 64 PC: 12b00 | Write file or device (Write 449 bytes on handle 5)
2018-12-17T23:11:46.000245204Z 66 PC: 12b09 | Move file pointer
2018-12-17T23:11:46.002606515Z 64 PC: 12b2b | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:46.010689977Z 62 PC: 12aa0 | Close file
2018-12-17T23:11:46.022035103Z 79 PC: 12aac | Find next file
2018-12-17T23:11:46.025417264Z 61 PC: 12ab8 | Open file (Filename = 'PAH.COM')
2018-12-17T23:11:46.032626943Z 63 PC: 12ac7 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:46.040129762Z 66 PC: 12ae0 | Move file pointer
2018-12-17T23:11:46.041939676Z 64 PC: 12af5 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:46.04503125Z 64 PC: 12b00 | Write file or device (Write 449 bytes on handle 5)
2018-12-17T23:11:46.048020973Z 66 PC: 12b09 | Move file pointer
2018-12-17T23:11:46.050295992Z 64 PC: 12b2b | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:11:46.053199101Z 62 PC: 12aa0 | Close file
2018-12-17T23:11:46.062126831Z 79 PC: 12aac | Find next file
2018-12-17T23:11:46.066033728Z 61 PC: 12ab8 | Open file (Filename = 'TEST.COM')
2018-12-17T23:11:46.073978951Z 63 PC: 12ac7 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:11:46.078380338Z 62 PC: 12aa0 | Close file
2018-12-17T23:11:46.081147221Z 79 PC: 12aac | Find next file
2018-12-17T23:11:46.084024903Z 26 PC: 12a82 | Set disk transfer address