Sample viewer

vx.netlux.org/Virus.DOS.Nygus.227

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:20:21.151462375Z 26 PC: 12c5a | Set disk transfer address
2018-12-17T22:20:21.153070723Z 78 PC: 12c5a | Find first file
2018-12-17T22:20:21.160965616Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.16728155Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.17182826Z 61 PC: 12c5a | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:20:21.180096435Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.181579996Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.183576776Z 63 PC: 12c5a | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:20:21.191446122Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.193506985Z 63 PC: 12c5a | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:21.196294781Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.198434014Z 64 PC: 12c16 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:21.202053467Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.204048421Z 64 PC: 12c5a | Write file or device (Write 227 bytes on handle 5)
2018-12-17T22:20:21.43154909Z 62 PC: 12c29 | Close file
2018-12-17T22:20:21.441719723Z 79 PC: 12c5a | Find next file
2018-12-17T22:20:21.446490771Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.467816905Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.472801949Z 61 PC: 12c5a | Open file (Filename = 'PRINT.COM')
2018-12-17T22:20:21.481934656Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.484056935Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.487751668Z 63 PC: 12c5a | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:20:21.495413146Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.497462278Z 63 PC: 12c5a | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:21.502228267Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.503932502Z 64 PC: 12c16 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:21.506969692Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.509931298Z 64 PC: 12c5a | Write file or device (Write 227 bytes on handle 5)
2018-12-17T22:20:21.514259764Z 62 PC: 12c29 | Close file
2018-12-17T22:20:21.525780496Z 79 PC: 12c5a | Find next file
2018-12-17T22:20:21.531384792Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.539541313Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.544041816Z 61 PC: 12c5a | Open file (Filename = 'HELLO.COM')
2018-12-17T22:20:21.551981427Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.554065252Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.556012845Z 63 PC: 12c5a | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:20:21.563297447Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.564949654Z 63 PC: 12c5a | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:21.56787817Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.569699989Z 64 PC: 12c16 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:21.573940084Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.575227617Z 64 PC: 12c5a | Write file or device (Write 227 bytes on handle 5)
2018-12-17T22:20:21.57764933Z 62 PC: 12c29 | Close file
2018-12-17T22:20:21.588074802Z 79 PC: 12c5a | Find next file
2018-12-17T22:20:21.591913327Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.598607564Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.604262446Z 61 PC: 12c5a | Open file (Filename = 'PHANG.COM')
2018-12-17T22:20:21.612260834Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.614301419Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.616514861Z 63 PC: 12c5a | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:20:21.62492613Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.626883607Z 63 PC: 12c5a | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:21.630037027Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.633076889Z 64 PC: 12c16 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:21.636452837Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.638426245Z 64 PC: 12c5a | Write file or device (Write 227 bytes on handle 5)
2018-12-17T22:20:21.642635874Z 62 PC: 12c29 | Close file
2018-12-17T22:20:21.650376845Z 79 PC: 12c5a | Find next file
2018-12-17T22:20:21.653992334Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.660737373Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.665144661Z 61 PC: 12c5a | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:20:21.671850187Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.674257514Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.676156637Z 63 PC: 12c5a | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:20:21.683915755Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.685665129Z 63 PC: 12c5a | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:21.689035725Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.690791434Z 64 PC: 12c16 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:21.694258532Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.697185199Z 64 PC: 12c5a | Write file or device (Write 227 bytes on handle 5)
2018-12-17T22:20:21.701942882Z 62 PC: 12c29 | Close file
2018-12-17T22:20:21.711962844Z 79 PC: 12c5a | Find next file
2018-12-17T22:20:21.716971359Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.72532946Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.730940116Z 61 PC: 12c5a | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:20:21.739403799Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.741182291Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.743588445Z 63 PC: 12c5a | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:20:21.751759733Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.754021903Z 63 PC: 12c5a | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:21.757502663Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.760184536Z 64 PC: 12c16 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:21.764011888Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.766274619Z 64 PC: 12c5a | Write file or device (Write 227 bytes on handle 5)
2018-12-17T22:20:21.776283984Z 62 PC: 12c29 | Close file
2018-12-17T22:20:21.787630221Z 79 PC: 12c5a | Find next file
2018-12-17T22:20:21.791563758Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.80027204Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.805799699Z 61 PC: 12c5a | Open file (Filename = 'PAH.COM')
2018-12-17T22:20:21.81434085Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.816750471Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.819548235Z 63 PC: 12c5a | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:20:21.828030219Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.8303583Z 63 PC: 12c5a | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:21.834356658Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.836535285Z 64 PC: 12c16 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:21.840179004Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.842938977Z 64 PC: 12c5a | Write file or device (Write 227 bytes on handle 5)
2018-12-17T22:20:21.846568078Z 62 PC: 12c29 | Close file
2018-12-17T22:20:21.855836386Z 79 PC: 12c5a | Find next file
2018-12-17T22:20:21.859676704Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.868076579Z 67 PC: 12c5a | Get or set file attributes
2018-12-17T22:20:21.873038689Z 61 PC: 12c5a | Open file (Filename = 'TEST.COM')
2018-12-17T22:20:21.881355039Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.883315358Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:20:21.885175545Z 63 PC: 12c5a | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:20:21.88867168Z 62 PC: 12c29 | Close file
2018-12-17T22:20:21.891258122Z 79 PC: 12c5a | Find next file
2018-12-17T22:20:21.894872333Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T22:20:21.901615358Z 76 PC: 12a86 | Terminate with return code (Return code = '36')