Sample viewer

vx.netlux.org/Virus.DOS.Sylvia.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:53:30.046042199Z 53 PC: 12c7e | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:53:30.047629166Z 37 PC: 12c90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:53:30.05457706Z 74 PC: 12c97 | Reallocate memory
2018-12-17T21:53:30.055978564Z 72 PC: 12ca7 | Allocate memory
2018-12-17T21:53:30.058312519Z 25 PC: 12cc7 | Get default drive
2018-12-17T21:53:30.059947724Z 14 PC: 12cd0 | Set default drive (Drive = 'C')
2018-12-17T21:53:30.061163244Z 26 PC: 12cd7 | Set disk transfer address
2018-12-17T21:53:30.062670747Z 78 PC: 12cf5 | Find first file
2018-12-17T21:53:30.067642309Z 79 PC: 12ef4 | Find next file
2018-12-17T21:53:30.070200131Z 14 PC: 12f0f | Set default drive (Drive = 'A')
2018-12-17T21:53:30.071683163Z 78 PC: 12cf5 | Find first file
2018-12-17T21:53:30.077048745Z 61 PC: 12d5d | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:53:30.081411272Z 66 PC: 12d74 | Move file pointer
2018-12-17T21:53:30.082689744Z 63 PC: 12d87 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T21:53:30.089156218Z 67 PC: 12df0 | Get or set file attributes
2018-12-17T21:53:30.104096749Z 67 PC: 12df9 | Get or set file attributes
2018-12-17T21:53:30.109660389Z 60 PC: 12e04 | Create or truncate file
2018-12-17T21:53:30.120427613Z 64 PC: 12e1b | Write file or device (Write 1301 bytes on handle 6)
2018-12-17T21:53:30.128348538Z 66 PC: 12e49 | Move file pointer
2018-12-17T21:53:30.129536724Z 63 PC: 12e64 | Read file or device (Read 407 bytes on handle 5)
2018-12-17T21:53:30.132325261Z 64 PC: 12e7b | Write file or device (Write 407 bytes on handle 6)
2018-12-17T21:53:30.139920502Z 64 PC: 12e91 | Write file or device (Write 31 bytes on handle 6)
2018-12-17T21:53:30.142385546Z 87 PC: 12eb3 | Get or set file date and time
2018-12-17T21:53:30.144281737Z 62 PC: 12ebb | Close file
2018-12-17T21:53:30.145828537Z 62 PC: 12ec3 | Close file
2018-12-17T21:53:30.152985751Z 65 PC: 12eca | Delete file (Filename = 'SLEEP.COM')
2018-12-17T21:53:30.160768916Z 86 PC: 12edb | Rename file
2018-12-17T21:53:30.171555387Z 67 PC: 12ef0 | Get or set file attributes
2018-12-17T21:53:30.181446761Z 79 PC: 12ef4 | Find next file
2018-12-17T21:53:30.190757234Z 61 PC: 12d5d | Open file (Filename = 'PRINT.COM')
2018-12-17T21:53:30.197329041Z 66 PC: 12d74 | Move file pointer
2018-12-17T21:53:30.198703635Z 63 PC: 12d87 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T21:53:30.213917082Z 67 PC: 12df0 | Get or set file attributes
2018-12-17T21:53:30.224058312Z 67 PC: 12df9 | Get or set file attributes
2018-12-17T21:53:30.230325714Z 60 PC: 12e04 | Create or truncate file
2018-12-17T21:53:30.242281384Z 64 PC: 12e1b | Write file or device (Write 1301 bytes on handle 6)
2018-12-17T21:53:30.250417486Z 66 PC: 12e49 | Move file pointer
2018-12-17T21:53:30.251845882Z 63 PC: 12e64 | Read file or device (Read 27 bytes on handle 5)
2018-12-17T21:53:30.255643161Z 64 PC: 12e7b | Write file or device (Write 27 bytes on handle 6)
2018-12-17T21:53:30.258275177Z 64 PC: 12e91 | Write file or device (Write 31 bytes on handle 6)
2018-12-17T21:53:30.260740734Z 87 PC: 12eb3 | Get or set file date and time
2018-12-17T21:53:30.262268419Z 62 PC: 12ebb | Close file
2018-12-17T21:53:30.26463599Z 62 PC: 12ec3 | Close file
2018-12-17T21:53:30.272576728Z 65 PC: 12eca | Delete file (Filename = 'PRINT.COM')
2018-12-17T21:53:30.28375347Z 86 PC: 12edb | Rename file
2018-12-17T21:53:30.294781024Z 67 PC: 12ef0 | Get or set file attributes
2018-12-17T21:53:30.304486241Z 79 PC: 12ef4 | Find next file
2018-12-17T21:53:30.307026552Z 61 PC: 12d5d | Open file (Filename = 'HELLO.COM')
2018-12-17T21:53:30.318808499Z 66 PC: 12d74 | Move file pointer
2018-12-17T21:53:30.320207944Z 63 PC: 12d87 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T21:53:30.326520107Z 67 PC: 12df0 | Get or set file attributes
2018-12-17T21:53:30.345610032Z 67 PC: 12df9 | Get or set file attributes
2018-12-17T21:53:30.354464435Z 60 PC: 12e04 | Create or truncate file
2018-12-17T21:53:30.365475365Z 64 PC: 12e1b | Write file or device (Write 1301 bytes on handle 6)
2018-12-17T21:53:30.375755673Z 66 PC: 12e49 | Move file pointer
2018-12-17T21:53:30.376893071Z 63 PC: 12e64 | Read file or device (Read 92 bytes on handle 5)
2018-12-17T21:53:30.379317101Z 64 PC: 12e7b | Write file or device (Write 92 bytes on handle 6)
2018-12-17T21:53:30.382862655Z 64 PC: 12e91 | Write file or device (Write 31 bytes on handle 6)
2018-12-17T21:53:30.385386255Z 87 PC: 12eb3 | Get or set file date and time
2018-12-17T21:53:30.386693816Z 62 PC: 12ebb | Close file
2018-12-17T21:53:30.38890424Z 62 PC: 12ec3 | Close file
2018-12-17T21:53:30.396989361Z 65 PC: 12eca | Delete file (Filename = 'HELLO.COM')
2018-12-17T21:53:30.407973976Z 86 PC: 12edb | Rename file
2018-12-17T21:53:30.420297903Z 67 PC: 12ef0 | Get or set file attributes
2018-12-17T21:53:30.430393132Z 79 PC: 12ef4 | Find next file
2018-12-17T21:53:30.433346361Z 61 PC: 12d5d | Open file (Filename = 'PHANG.COM')
2018-12-17T21:53:30.445759396Z 66 PC: 12d74 | Move file pointer
2018-12-17T21:53:30.447844782Z 63 PC: 12d87 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T21:53:30.454935289Z 67 PC: 12df0 | Get or set file attributes
2018-12-17T21:53:30.466400482Z 67 PC: 12df9 | Get or set file attributes
2018-12-17T21:53:30.475546605Z 60 PC: 12e04 | Create or truncate file
2018-12-17T21:53:30.486572375Z 64 PC: 12e1b | Write file or device (Write 1301 bytes on handle 6)
2018-12-17T21:53:30.49523553Z 66 PC: 12e49 | Move file pointer
2018-12-17T21:53:30.497317791Z 63 PC: 12e64 | Read file or device (Read 29 bytes on handle 5)
2018-12-17T21:53:30.499828757Z 64 PC: 12e7b | Write file or device (Write 29 bytes on handle 6)
2018-12-17T21:53:30.502625362Z 64 PC: 12e91 | Write file or device (Write 31 bytes on handle 6)
2018-12-17T21:53:30.50549804Z 87 PC: 12eb3 | Get or set file date and time
2018-12-17T21:53:30.507010716Z 62 PC: 12ebb | Close file
2018-12-17T21:53:30.509168697Z 62 PC: 12ec3 | Close file
2018-12-17T21:53:30.516634986Z 65 PC: 12eca | Delete file (Filename = 'PHANG.COM')
2018-12-17T21:53:30.527882051Z 86 PC: 12edb | Rename file
2018-12-17T21:53:30.538620023Z 67 PC: 12ef0 | Get or set file attributes
2018-12-17T21:53:30.55536279Z 79 PC: 12ef4 | Find next file
2018-12-17T21:53:30.558420241Z 61 PC: 12d5d | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:53:30.565450043Z 66 PC: 12d74 | Move file pointer
2018-12-17T21:53:30.567462012Z 63 PC: 12d87 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T21:53:30.573634663Z 62 PC: 12db0 | Close file
2018-12-17T21:53:30.575902405Z 73 PC: 12f1b | Release memory
2018-12-17T21:53:30.577686619Z 74 PC: 12f26 | Reallocate memory
2018-12-17T21:53:30.579275999Z 74 PC: 12f2c | Reallocate memory
2018-12-17T21:53:30.580492942Z 37 PC: 12f3d | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:53:30.582831321Z 9 PC: 12e26 | Display string (String= 'Hello - Copyright S & S International, 1990 ')