Sample viewer

vx.netlux.org/Virus.DOS.Ches.2016

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:08:15.153667216Z 26 PC: 12a5f | Set disk transfer address
2018-12-17T22:08:15.155563278Z 78 PC: 12a69 | Find first file
2018-12-17T22:08:15.161837734Z 61 PC: 12a9a | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:08:15.167924607Z 63 PC: 12aa6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:08:15.174340072Z 66 PC: 12ab7 | Move file pointer
2018-12-17T22:08:15.176114291Z 64 PC: 12adc | Write file or device (Write 2016 bytes on handle 5)
2018-12-17T22:08:15.191039041Z 66 PC: 12ae5 | Move file pointer
2018-12-17T22:08:15.192617448Z 64 PC: 12af0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:08:15.199404468Z 62 PC: 12af4 | Close file
2018-12-17T22:08:15.207303544Z 79 PC: 12af8 | Find next file
2018-12-17T22:08:15.210036984Z 61 PC: 12a9a | Open file (Filename = 'PRINT.COM')
2018-12-17T22:08:15.217015732Z 63 PC: 12aa6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:08:15.223408666Z 66 PC: 12ab7 | Move file pointer
2018-12-17T22:08:15.22489384Z 64 PC: 12adc | Write file or device (Write 2016 bytes on handle 5)
2018-12-17T22:08:15.235554835Z 66 PC: 12ae5 | Move file pointer
2018-12-17T22:08:15.236983151Z 64 PC: 12af0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:08:15.243305151Z 62 PC: 12af4 | Close file
2018-12-17T22:08:15.251899299Z 79 PC: 12af8 | Find next file
2018-12-17T22:08:15.254434759Z 61 PC: 12a9a | Open file (Filename = 'HELLO.COM')
2018-12-17T22:08:15.272979913Z 63 PC: 12aa6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:08:15.280403706Z 66 PC: 12ab7 | Move file pointer
2018-12-17T22:08:15.281705043Z 64 PC: 12adc | Write file or device (Write 2016 bytes on handle 5)
2018-12-17T22:08:15.290448112Z 66 PC: 12ae5 | Move file pointer
2018-12-17T22:08:15.292851489Z 64 PC: 12af0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:08:15.299646447Z 62 PC: 12af4 | Close file
2018-12-17T22:08:15.31598654Z 79 PC: 12af8 | Find next file
2018-12-17T22:08:15.318536779Z 61 PC: 12a9a | Open file (Filename = 'PHANG.COM')
2018-12-17T22:08:15.326743215Z 63 PC: 12aa6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:08:15.333459019Z 66 PC: 12ab7 | Move file pointer
2018-12-17T22:08:15.335285636Z 64 PC: 12adc | Write file or device (Write 2016 bytes on handle 5)
2018-12-17T22:08:15.34547835Z 66 PC: 12ae5 | Move file pointer
2018-12-17T22:08:15.347195344Z 64 PC: 12af0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:08:15.353577317Z 62 PC: 12af4 | Close file
2018-12-17T22:08:15.362634367Z 79 PC: 12af8 | Find next file
2018-12-17T22:08:15.365435821Z 61 PC: 12a9a | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:08:15.371797893Z 63 PC: 12aa6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:08:15.378393109Z 66 PC: 12ab7 | Move file pointer
2018-12-17T22:08:15.379805998Z 64 PC: 12adc | Write file or device (Write 2016 bytes on handle 5)
2018-12-17T22:08:15.388448594Z 66 PC: 12ae5 | Move file pointer
2018-12-17T22:08:15.390758077Z 64 PC: 12af0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:08:15.397191951Z 62 PC: 12af4 | Close file
2018-12-17T22:08:15.40496068Z 79 PC: 12af8 | Find next file
2018-12-17T22:08:15.407883957Z 61 PC: 12a9a | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:08:15.4145716Z 63 PC: 12aa6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:08:15.421257039Z 66 PC: 12ab7 | Move file pointer
2018-12-17T22:08:15.423093855Z 64 PC: 12adc | Write file or device (Write 2016 bytes on handle 5)
2018-12-17T22:08:15.431875276Z 66 PC: 12ae5 | Move file pointer
2018-12-17T22:08:15.433085177Z 64 PC: 12af0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:08:15.439287197Z 62 PC: 12af4 | Close file
2018-12-17T22:08:15.447484761Z 79 PC: 12af8 | Find next file
2018-12-17T22:08:15.45019099Z 61 PC: 12a9a | Open file (Filename = 'PAH.COM')
2018-12-17T22:08:15.456800281Z 63 PC: 12aa6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:08:15.463197642Z 66 PC: 12ab7 | Move file pointer
2018-12-17T22:08:15.464617153Z 64 PC: 12adc | Write file or device (Write 2016 bytes on handle 5)
2018-12-17T22:08:15.473211092Z 66 PC: 12ae5 | Move file pointer
2018-12-17T22:08:15.474681943Z 64 PC: 12af0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:08:15.482152655Z 62 PC: 12af4 | Close file
2018-12-17T22:08:15.506138316Z 79 PC: 12af8 | Find next file
2018-12-17T22:08:15.509187977Z 61 PC: 12a9a | Open file (Filename = 'TEST.COM')
2018-12-17T22:08:15.515706588Z 63 PC: 12aa6 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:08:15.518593087Z 66 PC: 12ab7 | Move file pointer
2018-12-17T22:08:15.52089141Z 64 PC: 12adc | Write file or device (Write 2016 bytes on handle 5)
2018-12-17T22:08:15.529263357Z 66 PC: 12ae5 | Move file pointer
2018-12-17T22:08:15.53078644Z 64 PC: 12af0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:08:15.537918848Z 62 PC: 12af4 | Close file
2018-12-17T22:08:15.545835088Z 79 PC: 12af8 | Find next file
2018-12-17T22:08:15.548402955Z 26 PC: 12a72 | Set disk transfer address