Sample viewer

vx.netlux.org/Virus.DOS.Phone.688

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:17:01.113518162Z 78 PC: 12afc | Find first file
2018-12-17T22:17:01.119689208Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.125465131Z 61 PC: 12b18 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:17:01.132018937Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.145093076Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.146440509Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.153671141Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.165661418Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.16808338Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.178540676Z 61 PC: 12b18 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:17:01.185430174Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.200355788Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.201322316Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.206181157Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.212676282Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.214329796Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.217913828Z 61 PC: 12b18 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:17:01.225146402Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.232952307Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.234237056Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.242340143Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.25166244Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.254035094Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.259980178Z 61 PC: 12b18 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:17:01.266132294Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.273824227Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.275633406Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.282987754Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.29457694Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.309682457Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.320227281Z 61 PC: 12b18 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:17:01.326425922Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.334615138Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.335892645Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.343351085Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.353870319Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.356547603Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.362174274Z 61 PC: 12b18 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:17:01.373822143Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.381941833Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.383229331Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.391048798Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.400532553Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.402916959Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.40865237Z 61 PC: 12b18 | Open file (Filename = 'PAH.COM')
2018-12-17T22:17:01.414873599Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.422604269Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.424067348Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.431387785Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.443429909Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.446131296Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.44966041Z 61 PC: 12b18 | Open file (Filename = 'TEST.COM')
2018-12-17T22:17:01.453667197Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.459323457Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.460724962Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.467507612Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.476553649Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.478901654Z 78 PC: 12afc | Find first file
2018-12-17T22:17:01.489099343Z 59 PC: 12a48 | Change current directory
2018-12-17T22:17:01.495483594Z 78 PC: 12afc | Find first file
2018-12-17T22:17:01.499631769Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.503145506Z 61 PC: 12b18 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:17:01.506925547Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.512203Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.513134483Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.517810711Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.523901169Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.525508231Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.528827926Z 61 PC: 12b18 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:17:01.533611849Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.541353093Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.542620308Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.549902655Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.561957107Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.564362915Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.570069538Z 61 PC: 12b18 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:17:01.576315131Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.584148675Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.585925041Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.592901838Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.602215622Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.605221421Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.615606338Z 61 PC: 12b18 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:17:01.627256864Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.635798069Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.63748291Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.644881167Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.655081653Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.657540676Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.662922795Z 61 PC: 12b18 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:17:01.669461892Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.677224284Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.678544418Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.686570603Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.696242986Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.698712583Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.70458254Z 61 PC: 12b18 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:17:01.710724493Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.71868452Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.720384586Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.727312731Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.73879918Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.741936092Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.748310186Z 61 PC: 12b18 | Open file (Filename = 'PAH.COM')
2018-12-17T22:17:01.754831136Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.76373445Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.765160805Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.772187099Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.782023123Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.784536582Z 67 PC: 12b13 | Get or set file attributes
2018-12-17T22:17:01.789782056Z 61 PC: 12b18 | Open file (Filename = 'TEST.COM')
2018-12-17T22:17:01.797313278Z 64 PC: 12b24 | Write file or device (Write 688 bytes on handle 5)
2018-12-17T22:17:01.806610682Z 87 PC: 12b32 | Get or set file date and time
2018-12-17T22:17:01.808036401Z 62 PC: 12b36 | Close file
2018-12-17T22:17:01.816191146Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:17:01.826866896Z 79 PC: 12b05 | Find next file
2018-12-17T22:17:01.829627208Z 78 PC: 12afc | Find first file
2018-12-17T22:17:01.836591178Z 59 PC: 12a48 | Change current directory
2018-12-17T22:17:01.84107325Z 44 PC: 12a65 | Get time 0x12a65: cmp dl, 0x30
0x12a68: jle 0x12a72
0x12a6a: cmp ch, 0x5a
0x12a6d: jg 0x12a77
0x12a6f: jmp 0x12a79
0x12a71: nop
0x12a72: mov dl, 0x41
0x12a74: jmp 0x12a79
0x12a76: nop
0x12a77: mov dl, 0x5a
0x12a79: mov byte ptr [0x39f], dl
0x12a7d: mov dx, 0x387
0x12a80: mov cx, 0x10
0x12a83: mov ah, 0x4e
0x12a85: int 0x21
0x12a87: jmp 0x12a8d
0x12a89: mov ah, 0x4f
0x12a8b: int 0x21
0x12a8d: jb 0x12ab1
0x12a8f: test byte ptr [0x95], 0x10
2018-12-17T22:17:01.84358661Z 78 PC: 12a87 | Find first file
2018-12-17T22:17:01.848569754Z 44 PC: 12ada | Get time 0x12ada: cmp ch, 0xc
0x12add: jle 0x12ae6
0x12adf: sub ch, 0xc
0x12ae2: mov byte ptr [0x386], ch
0x12ae6: ret
0x12ae7: mov dx, 0x399
0x12aea: call 0x12af5
0x12aed: ret
0x12aee: mov dx, 0x38c
0x12af1: call 0x12af5
0x12af4: ret
0x12af5: mov cx, 7
0x12af8: mov ah, 0x4e
0x12afa: int 0x21
0x12afc: jae 0x12b07
0x12afe: jmp 0x12b47
0x12b00: nop
0x12b01: mov ah, 0x4f
0x12b03: int 0x21
0x12b05: jb 0x12b47
2018-12-17T22:17:01.851852572Z 9 PC: 12ad2 | Display string (String= 'Out of Memory ')
2018-12-17T22:17:01.855654058Z 76 PC: 12ad6 | Terminate with return code (Return code = '36')