Sample viewer

vx.netlux.org/Virus.DOS.CivilWar.Ratboy.306.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:07:56.537432108Z 26 PC: 12ae4 | Set disk transfer address
2018-12-17T22:07:56.546867874Z 78 PC: 12aef | Find first file
2018-12-17T22:07:56.552635112Z 61 PC: 12b05 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:07:56.560356824Z 63 PC: 12b1b | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:07:56.568141519Z 67 PC: 12b39 | Get or set file attributes
2018-12-17T22:07:56.585099267Z 62 PC: 12b4a | Close file
2018-12-17T22:07:56.586960928Z 61 PC: 12b4f | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:07:56.59429506Z 64 PC: 12b5b | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:07:56.597645841Z 66 PC: 12b64 | Move file pointer
2018-12-17T22:07:56.599153937Z 64 PC: 12ab8 | Write file or device (Write 306 bytes on handle 5)
2018-12-17T22:07:56.608001629Z 87 PC: 12b7d | Get or set file date and time
2018-12-17T22:07:56.613127837Z 67 PC: 12b8b | Get or set file attributes
2018-12-17T22:07:56.619162966Z 62 PC: 12b2a | Close file
2018-12-17T22:07:56.641903504Z 79 PC: 12aef | Find next file
2018-12-17T22:07:56.645461845Z 61 PC: 12b05 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:07:56.651806217Z 63 PC: 12b1b | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:07:56.658608941Z 67 PC: 12b39 | Get or set file attributes
2018-12-17T22:07:56.670867499Z 62 PC: 12b4a | Close file
2018-12-17T22:07:56.673098923Z 61 PC: 12b4f | Open file (Filename = 'PRINT.COM')
2018-12-17T22:07:56.679978183Z 64 PC: 12b5b | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:07:56.684109766Z 66 PC: 12b64 | Move file pointer
2018-12-17T22:07:56.685956933Z 64 PC: 12ab8 | Write file or device (Write 306 bytes on handle 5)
2018-12-17T22:07:56.689026265Z 87 PC: 12b7d | Get or set file date and time
2018-12-17T22:07:56.691957349Z 67 PC: 12b8b | Get or set file attributes
2018-12-17T22:07:56.69685698Z 62 PC: 12b2a | Close file
2018-12-17T22:07:56.705757704Z 79 PC: 12aef | Find next file
2018-12-17T22:07:56.709634236Z 61 PC: 12b05 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:07:56.716056407Z 63 PC: 12b1b | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:07:56.722382571Z 67 PC: 12b39 | Get or set file attributes
2018-12-17T22:07:56.733200782Z 62 PC: 12b4a | Close file
2018-12-17T22:07:56.735627771Z 61 PC: 12b4f | Open file (Filename = 'HELLO.COM')
2018-12-17T22:07:56.742127966Z 64 PC: 12b5b | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:07:56.745379643Z 66 PC: 12b64 | Move file pointer
2018-12-17T22:07:56.752098659Z 64 PC: 12ab8 | Write file or device (Write 306 bytes on handle 5)
2018-12-17T22:07:56.755008132Z 87 PC: 12b7d | Get or set file date and time
2018-12-17T22:07:56.756927875Z 67 PC: 12b8b | Get or set file attributes
2018-12-17T22:07:56.761668845Z 62 PC: 12b9d | Close file
2018-12-17T22:07:56.769069285Z 26 PC: 12afb | Set disk transfer address
2018-12-17T22:07:56.770816176Z 9 PC: 12a47 | Display string (String= ' /\---/\ ( . . ) \ / \ / \*/ # RaT-BoY Bait File')