Sample viewer

vx.netlux.org/Virus.DOS.SillyOC.116.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:20:09.804531565Z 78 PC: 12a47 | Find first file
2018-12-17T22:20:09.811016252Z 47 PC: 12a57 | Get disk transfer address
2018-12-17T22:20:09.812259035Z 61 PC: 12a72 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:20:09.818654842Z 64 PC: 12a84 | Write file or device (Write 116 bytes on handle 5)
2018-12-17T22:20:09.82685969Z 62 PC: 12a8d | Close file
2018-12-17T22:20:09.846107298Z 79 PC: 12a4f | Find next file
2018-12-17T22:20:09.848802427Z 47 PC: 12a57 | Get disk transfer address
2018-12-17T22:20:09.849939186Z 61 PC: 12a72 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:20:09.86250428Z 64 PC: 12a84 | Write file or device (Write 116 bytes on handle 5)
2018-12-17T22:20:09.869357255Z 62 PC: 12a8d | Close file
2018-12-17T22:20:09.887464341Z 79 PC: 12a4f | Find next file
2018-12-17T22:20:09.890863193Z 47 PC: 12a57 | Get disk transfer address
2018-12-17T22:20:09.892241379Z 61 PC: 12a72 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:20:09.898844735Z 64 PC: 12a84 | Write file or device (Write 116 bytes on handle 5)
2018-12-17T22:20:09.917898893Z 62 PC: 12a8d | Close file
2018-12-17T22:20:09.925556518Z 79 PC: 12a4f | Find next file
2018-12-17T22:20:09.928171176Z 47 PC: 12a57 | Get disk transfer address
2018-12-17T22:20:09.93342463Z 61 PC: 12a72 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:20:09.939759892Z 64 PC: 12a84 | Write file or device (Write 116 bytes on handle 5)
2018-12-17T22:20:09.946152242Z 62 PC: 12a8d | Close file
2018-12-17T22:20:09.954472112Z 79 PC: 12a4f | Find next file
2018-12-17T22:20:09.957032585Z 47 PC: 12a57 | Get disk transfer address
2018-12-17T22:20:09.958183221Z 61 PC: 12a72 | Open file (Filename = 'PRINTA~1.COMP$0<9vд!X!  t!CY[P/DD=.t*=')
2018-12-17T22:20:09.963549767Z 64 PC: 12a84 | Write file or device (Write 116 bytes on handle 3)
2018-12-17T22:20:09.968371924Z 62 PC: 12a8d | Close file
2018-12-17T22:20:09.970092195Z 79 PC: 12a4f | Find next file
2018-12-17T22:20:09.972719036Z 47 PC: 12a57 | Get disk transfer address
2018-12-17T22:20:09.975221105Z 61 PC: 12a72 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:20:09.986497567Z 64 PC: 12a84 | Write file or device (Write 116 bytes on handle 3)
2018-12-17T22:20:09.993503424Z 62 PC: 12a8d | Close file
2018-12-17T22:20:10.001438493Z 79 PC: 12a4f | Find next file
2018-12-17T22:20:10.004268021Z 47 PC: 12a57 | Get disk transfer address
2018-12-17T22:20:10.005708086Z 61 PC: 12a72 | Open file (Filename = 'PAH.COM')
2018-12-17T22:20:10.012802321Z 64 PC: 12a84 | Write file or device (Write 116 bytes on handle 3)
2018-12-17T22:20:10.019587236Z 62 PC: 12a8d | Close file
2018-12-17T22:20:10.027216794Z 79 PC: 12a4f | Find next file
2018-12-17T22:20:10.030641539Z 47 PC: 12a57 | Get disk transfer address
2018-12-17T22:20:10.032138285Z 61 PC: 12a72 | Open file (Filename = 'TEST.COM')
2018-12-17T22:20:10.038771253Z 64 PC: 12a84 | Write file or device (Write 116 bytes on handle 3)
2018-12-17T22:20:10.052116909Z 62 PC: 12a8d | Close file
2018-12-17T22:20:10.059658449Z 79 PC: 12a4f | Find next file
2018-12-17T22:20:10.062999675Z 9 PC: 12a96 | Display string (String= 'Not enough memory!')
2018-12-17T22:20:10.06976946Z 76 PC: 12a9b | Terminate with return code (Return code = '0')