Sample viewer

vx.netlux.org/Virus.DOS.Ash.270.c

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:11:03.112933913Z 26 PC: 12a6a | Set disk transfer address
2018-12-17T22:11:03.114481977Z 78 PC: 12aa8 | Find first file
2018-12-17T22:11:03.120955459Z 61 PC: 12ab4 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:11:03.127290987Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:11:03.13367492Z 66 PC: 12ada | Move file pointer
2018-12-17T22:11:03.135188764Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.138313828Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T22:11:03.151840822Z 66 PC: 12b02 | Move file pointer
2018-12-17T22:11:03.154134871Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.160455388Z 62 PC: 12a9c | Close file
2018-12-17T22:11:03.170739862Z 79 PC: 12aa8 | Find next file
2018-12-17T22:11:03.17504615Z 61 PC: 12ab4 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:11:03.181700365Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:11:03.188487391Z 66 PC: 12ada | Move file pointer
2018-12-17T22:11:03.190504079Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.193383482Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T22:11:03.196156858Z 66 PC: 12b02 | Move file pointer
2018-12-17T22:11:03.198070116Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.20078373Z 62 PC: 12a9c | Close file
2018-12-17T22:11:03.208680072Z 79 PC: 12aa8 | Find next file
2018-12-17T22:11:03.21278699Z 61 PC: 12ab4 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:11:03.220411228Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:11:03.226823531Z 66 PC: 12ada | Move file pointer
2018-12-17T22:11:03.22862843Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.232588872Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T22:11:03.235447739Z 66 PC: 12b02 | Move file pointer
2018-12-17T22:11:03.237026802Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.240491657Z 62 PC: 12a9c | Close file
2018-12-17T22:11:03.248870826Z 79 PC: 12aa8 | Find next file
2018-12-17T22:11:03.251844324Z 61 PC: 12ab4 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:11:03.259044585Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:11:03.265370817Z 66 PC: 12ada | Move file pointer
2018-12-17T22:11:03.267008858Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.270859444Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T22:11:03.273691053Z 66 PC: 12b02 | Move file pointer
2018-12-17T22:11:03.275239603Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.278632895Z 62 PC: 12a9c | Close file
2018-12-17T22:11:03.286685837Z 79 PC: 12aa8 | Find next file
2018-12-17T22:11:03.289608783Z 61 PC: 12ab4 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:11:03.296728156Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:11:03.301060048Z 66 PC: 12ada | Move file pointer
2018-12-17T22:11:03.302618195Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.305772292Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T22:11:03.308188099Z 66 PC: 12b02 | Move file pointer
2018-12-17T22:11:03.309467539Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.313099023Z 62 PC: 12a9c | Close file
2018-12-17T22:11:03.322141692Z 79 PC: 12aa8 | Find next file
2018-12-17T22:11:03.324563739Z 61 PC: 12ab4 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:11:03.332729877Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:11:03.337431334Z 66 PC: 12ada | Move file pointer
2018-12-17T22:11:03.338761486Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.342232037Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T22:11:03.350497267Z 66 PC: 12b02 | Move file pointer
2018-12-17T22:11:03.352253992Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.359468693Z 62 PC: 12a9c | Close file
2018-12-17T22:11:03.370120847Z 79 PC: 12aa8 | Find next file
2018-12-17T22:11:03.373054807Z 61 PC: 12ab4 | Open file (Filename = 'PAH.COM')
2018-12-17T22:11:03.381314747Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:11:03.387697555Z 66 PC: 12ada | Move file pointer
2018-12-17T22:11:03.389166104Z 64 PC: 12aee | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.392601851Z 64 PC: 12af9 | Write file or device (Write 266 bytes on handle 5)
2018-12-17T22:11:03.39547114Z 66 PC: 12b02 | Move file pointer
2018-12-17T22:11:03.396685284Z 64 PC: 12b20 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:11:03.39996693Z 62 PC: 12a9c | Close file
2018-12-17T22:11:03.407724656Z 79 PC: 12aa8 | Find next file
2018-12-17T22:11:03.410385Z 61 PC: 12ab4 | Open file (Filename = 'TEST.COM')
2018-12-17T22:11:03.417464131Z 63 PC: 12ac3 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:11:03.419962763Z 62 PC: 12a9c | Close file
2018-12-17T22:11:03.421566355Z 79 PC: 12aa8 | Find next file
2018-12-17T22:11:03.423972448Z 26 PC: 12a7e | Set disk transfer address