Sample viewer

vx.netlux.org/Virus.DOS.Vienna.Ambalama.493

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:19:55.897416462Z 48 PC: 13225 | Get DOS version
2018-12-17T22:19:55.899393632Z 26 PC: 1323a | Set disk transfer address
2018-12-17T22:19:55.90083938Z 78 PC: 13249 | Find first file
2018-12-17T22:19:55.907062961Z 67 PC: 132a7 | Get or set file attributes
2018-12-17T22:19:55.912270518Z 61 PC: 132b1 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:19:55.919139049Z 63 PC: 132c0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:19:55.925492143Z 66 PC: 132d2 | Move file pointer
2018-12-17T22:19:55.927334398Z 64 PC: 132fa | Write file or device (Write 493 bytes on handle 5)
2018-12-17T22:19:55.949687732Z 66 PC: 13307 | Move file pointer
2018-12-17T22:19:55.950673205Z 64 PC: 13315 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:19:55.957641382Z 87 PC: 13326 | Get or set file date and time
2018-12-17T22:19:55.960418546Z 62 PC: 1332a | Close file
2018-12-17T22:19:55.96785774Z 67 PC: 13332 | Get or set file attributes
2018-12-17T22:19:55.971788276Z 79 PC: 1324f | Find next file
2018-12-17T22:19:55.974827298Z 79 PC: 1324f | Find next file
2018-12-17T22:19:55.977521703Z 79 PC: 1324f | Find next file
2018-12-17T22:19:55.980330973Z 79 PC: 1324f | Find next file
2018-12-17T22:19:55.983972412Z 79 PC: 1324f | Find next file
2018-12-17T22:19:55.986297141Z 67 PC: 132a7 | Get or set file attributes
2018-12-17T22:19:55.99103575Z 61 PC: 132b1 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:19:55.997873049Z 63 PC: 132c0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:19:56.004351506Z 66 PC: 132d2 | Move file pointer
2018-12-17T22:19:56.005625734Z 64 PC: 132fa | Write file or device (Write 493 bytes on handle 5)
2018-12-17T22:19:56.014151375Z 66 PC: 13307 | Move file pointer
2018-12-17T22:19:56.015489072Z 64 PC: 13315 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:19:56.02183588Z 87 PC: 13326 | Get or set file date and time
2018-12-17T22:19:56.023680916Z 62 PC: 1332a | Close file
2018-12-17T22:19:56.031984864Z 67 PC: 13332 | Get or set file attributes
2018-12-17T22:19:56.036334654Z 79 PC: 1324f | Find next file
2018-12-17T22:19:56.039247686Z 79 PC: 1324f | Find next file
2018-12-17T22:19:56.042376958Z 67 PC: 132a7 | Get or set file attributes
2018-12-17T22:19:56.047563988Z 61 PC: 132b1 | Open file (Filename = 'TEST.COM')
2018-12-17T22:19:56.055245304Z 63 PC: 132c0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:19:56.058243225Z 66 PC: 132d2 | Move file pointer
2018-12-17T22:19:56.060810514Z 64 PC: 132fa | Write file or device (Write 493 bytes on handle 5)
2018-12-17T22:19:56.06954822Z 66 PC: 13307 | Move file pointer
2018-12-17T22:19:56.071057542Z 64 PC: 13315 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:19:56.074220291Z 87 PC: 13326 | Get or set file date and time
2018-12-17T22:19:56.07649093Z 62 PC: 1332a | Close file
2018-12-17T22:19:56.08420228Z 67 PC: 13332 | Get or set file attributes
2018-12-17T22:19:56.094286989Z 79 PC: 1324f | Find next file
2018-12-17T22:19:56.100563305Z 78 PC: 13249 | Find first file
2018-12-17T22:19:56.10481746Z 79 PC: 1324f | Find next file
2018-12-17T22:19:56.106650571Z 79 PC: 1324f | Find next file
2018-12-17T22:19:56.108400367Z 79 PC: 1324f | Find next file
2018-12-17T22:19:56.110667393Z 79 PC: 1324f | Find next file
2018-12-17T22:19:56.113609901Z 79 PC: 1324f | Find next file
2018-12-17T22:19:56.116494327Z 79 PC: 1324f | Find next file
2018-12-17T22:19:56.120251161Z 79 PC: 1324f | Find next file
2018-12-17T22:19:56.12302162Z 79 PC: 1324f | Find next file
2018-12-17T22:19:56.125448081Z 26 PC: 1334a | Set disk transfer address
2018-12-17T22:19:56.127598998Z 9 PC: 131b9 | Display string (String= 'Yo,strange thingz occured! Possibly viri intruder,eh??? ')