Sample viewer

vx.netlux.org/Virus.DOS.Haldeman.431

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:16:17.457356587Z 26 PC: 12a61 | Set disk transfer address
2018-12-17T22:16:17.458409409Z 78 PC: 12a75 | Find first file
2018-12-17T22:16:17.465257365Z 61 PC: 12b46 | Open file (Filename = 'As')
2018-12-17T22:16:17.47140549Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.474041439Z 61 PC: 12b46 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:16:17.480878038Z 63 PC: 12b55 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:16:17.487067664Z 66 PC: 12b64 | Move file pointer
2018-12-17T22:16:17.488314271Z 66 PC: 12b73 | Move file pointer
2018-12-17T22:16:17.489807664Z 64 PC: 12b7f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:16:17.492609715Z 66 PC: 12b8b | Move file pointer
2018-12-17T22:16:17.493892303Z 64 PC: 12b96 | Write file or device (Write 341 bytes on handle 5)
2018-12-17T22:16:17.507266661Z 62 PC: 12b9a | Close file
2018-12-17T22:16:17.516333697Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.51880519Z 61 PC: 12b46 | Open file (Filename = 'PRINT.S')
2018-12-17T22:16:17.52515098Z 63 PC: 12b55 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:16:17.531590975Z 66 PC: 12b64 | Move file pointer
2018-12-17T22:16:17.532916819Z 66 PC: 12b73 | Move file pointer
2018-12-17T22:16:17.534135294Z 64 PC: 12b7f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:16:17.536937018Z 66 PC: 12b8b | Move file pointer
2018-12-17T22:16:17.538235532Z 64 PC: 12b96 | Write file or device (Write 341 bytes on handle 5)
2018-12-17T22:16:17.54070673Z 62 PC: 12b9a | Close file
2018-12-17T22:16:17.548723372Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.551128773Z 61 PC: 12b46 | Open file (Filename = 'Ap')
2018-12-17T22:16:17.55697098Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.55990323Z 61 PC: 12b46 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:16:17.566321031Z 63 PC: 12b55 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:16:17.572415887Z 66 PC: 12b64 | Move file pointer
2018-12-17T22:16:17.574261868Z 66 PC: 12b73 | Move file pointer
2018-12-17T22:16:17.575467562Z 64 PC: 12b7f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:16:17.577884916Z 66 PC: 12b8b | Move file pointer
2018-12-17T22:16:17.580289597Z 64 PC: 12b96 | Write file or device (Write 341 bytes on handle 5)
2018-12-17T22:16:17.582804692Z 62 PC: 12b9a | Close file
2018-12-17T22:16:17.590242442Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.593205989Z 61 PC: 12b46 | Open file (Filename = 'Ah')
2018-12-17T22:16:17.599089173Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.601471095Z 61 PC: 12b46 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:16:17.608258029Z 63 PC: 12b55 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:16:17.614416373Z 66 PC: 12b64 | Move file pointer
2018-12-17T22:16:17.615681033Z 66 PC: 12b73 | Move file pointer
2018-12-17T22:16:17.617394655Z 64 PC: 12b7f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:16:17.619934783Z 66 PC: 12b8b | Move file pointer
2018-12-17T22:16:17.621193699Z 64 PC: 12b96 | Write file or device (Write 341 bytes on handle 5)
2018-12-17T22:16:17.624205225Z 62 PC: 12b9a | Close file
2018-12-17T22:16:17.631669229Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.634056536Z 61 PC: 12b46 | Open file (Filename = 'Ap')
2018-12-17T22:16:17.640401665Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.642764994Z 61 PC: 12b46 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:16:17.649653576Z 63 PC: 12b55 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:16:17.656212735Z 66 PC: 12b64 | Move file pointer
2018-12-17T22:16:17.657520778Z 66 PC: 12b73 | Move file pointer
2018-12-17T22:16:17.658727729Z 64 PC: 12b7f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:16:17.661359562Z 66 PC: 12b8b | Move file pointer
2018-12-17T22:16:17.662775575Z 64 PC: 12b96 | Write file or device (Write 341 bytes on handle 5)
2018-12-17T22:16:17.665202604Z 62 PC: 12b9a | Close file
2018-12-17T22:16:17.672922609Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.675478253Z 61 PC: 12b46 | Open file (Filename = 'Bc')
2018-12-17T22:16:17.681775002Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.684713172Z 61 PC: 12b46 | Open file (Filename = 'p')
2018-12-17T22:16:17.689242603Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.691547198Z 61 PC: 12b46 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:16:17.69796832Z 63 PC: 12b55 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:16:17.704471395Z 66 PC: 12b64 | Move file pointer
2018-12-17T22:16:17.705835311Z 66 PC: 12b73 | Move file pointer
2018-12-17T22:16:17.707548273Z 64 PC: 12b7f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:16:17.712610857Z 66 PC: 12b8b | Move file pointer
2018-12-17T22:16:17.714506461Z 64 PC: 12b96 | Write file or device (Write 341 bytes on handle 5)
2018-12-17T22:16:17.718079137Z 62 PC: 12b9a | Close file
2018-12-17T22:16:17.725627871Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.728062697Z 61 PC: 12b46 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:16:17.73454888Z 63 PC: 12b55 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:16:17.741023627Z 66 PC: 12b64 | Move file pointer
2018-12-17T22:16:17.742354107Z 66 PC: 12b73 | Move file pointer
2018-12-17T22:16:17.743661681Z 64 PC: 12b7f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:16:17.746287507Z 66 PC: 12b8b | Move file pointer
2018-12-17T22:16:17.747777918Z 64 PC: 12b96 | Write file or device (Write 341 bytes on handle 5)
2018-12-17T22:16:17.75568571Z 62 PC: 12b9a | Close file
2018-12-17T22:16:17.764143562Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.766569377Z 61 PC: 12b46 | Open file (Filename = 'PAH.COM')
2018-12-17T22:16:17.773095432Z 63 PC: 12b55 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:16:17.779841571Z 66 PC: 12b64 | Move file pointer
2018-12-17T22:16:17.781083736Z 66 PC: 12b73 | Move file pointer
2018-12-17T22:16:17.782724978Z 64 PC: 12b7f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:16:17.785340371Z 66 PC: 12b8b | Move file pointer
2018-12-17T22:16:17.786627978Z 64 PC: 12b96 | Write file or device (Write 341 bytes on handle 5)
2018-12-17T22:16:17.788942869Z 62 PC: 12b9a | Close file
2018-12-17T22:16:17.796893003Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.799262808Z 61 PC: 12b46 | Open file (Filename = 'TEST.COM')
2018-12-17T22:16:17.805573866Z 63 PC: 12b55 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:16:17.809285439Z 62 PC: 12b9a | Close file
2018-12-17T22:16:17.811401131Z 79 PC: 12a75 | Find next file
2018-12-17T22:16:17.814287739Z 59 PC: 12a86 | Change current directory
2018-12-17T22:16:17.81943542Z 26 PC: 12a8f | Set disk transfer address
2018-12-17T22:16:17.820712165Z 9 PC: 12aa1 | Display string (String= ' Fortisan et nostrum nomem miscebitur istis ')