Sample viewer

vx.netlux.org/Virus.DOS.Mini.92.e

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:20:10.641308585Z 78 PC: 12a65 | Find first file
2018-12-17T22:20:10.648310568Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:20:10.655085212Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:20:10.662000987Z 66 PC: 12a87 | Move file pointer
2018-12-17T22:20:10.672953845Z 64 PC: 12a8e | Write file or device (Write 499 bytes on handle 5)
2018-12-17T22:20:10.676665283Z 62 PC: 12a92 | Close file
2018-12-17T22:20:10.689804708Z 79 PC: 12a65 | Find next file
2018-12-17T22:20:10.692768278Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:20:10.700848221Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:20:10.709810007Z 66 PC: 12a87 | Move file pointer
2018-12-17T22:20:10.711197473Z 64 PC: 12a8e | Write file or device (Write 119 bytes on handle 5)
2018-12-17T22:20:10.714597266Z 62 PC: 12a92 | Close file
2018-12-17T22:20:10.722473697Z 79 PC: 12a65 | Find next file
2018-12-17T22:20:10.725381781Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:20:10.732598948Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:20:10.739565341Z 66 PC: 12a87 | Move file pointer
2018-12-17T22:20:10.741293385Z 64 PC: 12a8e | Write file or device (Write 184 bytes on handle 5)
2018-12-17T22:20:10.745068092Z 62 PC: 12a92 | Close file
2018-12-17T22:20:10.753261069Z 79 PC: 12a65 | Find next file
2018-12-17T22:20:10.755975639Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:20:10.762572395Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:20:10.769098927Z 66 PC: 12a87 | Move file pointer
2018-12-17T22:20:10.770366778Z 64 PC: 12a8e | Write file or device (Write 121 bytes on handle 5)
2018-12-17T22:20:10.772905139Z 62 PC: 12a92 | Close file
2018-12-17T22:20:10.780585618Z 79 PC: 12a65 | Find next file
2018-12-17T22:20:10.783161158Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:20:10.789528221Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:20:10.796676097Z 66 PC: 12a87 | Move file pointer
2018-12-17T22:20:10.798175904Z 64 PC: 12a8e | Write file or device (Write 121 bytes on handle 5)
2018-12-17T22:20:10.801069139Z 62 PC: 12a92 | Close file
2018-12-17T22:20:10.809896707Z 79 PC: 12a65 | Find next file
2018-12-17T22:20:10.812527714Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:20:10.818984613Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:20:10.826328374Z 66 PC: 12a87 | Move file pointer
2018-12-17T22:20:10.828020211Z 64 PC: 12a8e | Write file or device (Write 593 bytes on handle 5)
2018-12-17T22:20:10.836886072Z 62 PC: 12a92 | Close file
2018-12-17T22:20:10.845505538Z 79 PC: 12a65 | Find next file
2018-12-17T22:20:10.848307973Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:20:10.855061048Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:20:10.864764626Z 66 PC: 12a87 | Move file pointer
2018-12-17T22:20:10.866152102Z 64 PC: 12a8e | Write file or device (Write 121 bytes on handle 5)
2018-12-17T22:20:10.869511976Z 62 PC: 12a92 | Close file
2018-12-17T22:20:10.879357113Z 79 PC: 12a65 | Find next file
2018-12-17T22:20:10.88281826Z 77 PC: 11fe0 | Get program return code
2018-12-17T22:20:10.884783087Z 72 PC: 12174 | Allocate memory
2018-12-17T22:20:10.88690535Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:20:10.889699532Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:20:10.893597882Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:20:10.896019537Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:20:10.899462637Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:20:10.901912058Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:20:10.904381346Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:20:10.90739047Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:20:10.909871836Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:20:10.912337247Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:20:10.915435268Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:20:10.918067643Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:20:10.921771326Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:20:10.924866252Z 2 PC: 1268d | Character output (Char = '63')
2018-12-17T22:20:10.927098509Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:20:10.929788956Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:20:10.937480313Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T22:20:10.939830284Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:20:10.942225638Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:20:10.945264709Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:20:10.949063175Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:20:10.95064827Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:20:10.953282367Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:20:10.956320033Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:20:10.958540834Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:20:10.960786927Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:20:10.963181431Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:20:10.966518586Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:20:10.968978918Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:20:10.972062117Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:20:10.974390994Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:20:10.976740027Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:20:10.980902171Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:20:10.98517311Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:20:10.987450583Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:20:10.990006027Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:20:10.992286341Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:20:10.99450447Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:20:10.998080258Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:20:11.000790755Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:20:11.002982504Z 2 PC: 1268d | Character output (Char = '4f')
2018-12-17T22:20:11.006350634Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:20:11.008454121Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:20:11.01777768Z 2 PC: 1268d | Character output (Char = '41')
2018-12-17T22:20:11.020687327Z 2 PC: 1268d | Character output (Char = '4e')
2018-12-17T22:20:11.022992923Z 2 PC: 1268d | Character output (Char = '44')
2018-12-17T22:20:11.033746388Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T22:20:11.038139274Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:20:11.042403873Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:20:11.044663727Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:20:11.047532179Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:20:11.05015851Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:20:11.051729512Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:20:11.053898529Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:20:11.055391958Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:20:11.057006877Z 2 PC: 1268d | Character output (Char = '68')
2018-12-17T22:20:11.059146966Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:20:11.061439314Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:20:11.062989833Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:20:11.065023434Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:20:11.066533381Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:20:11.06799896Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:20:11.070736593Z 2 PC: 1268d | Character output (Char = '0a')