Sample viewer

vx.netlux.org/Virus.DOS.Belial.327

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:21:05.953499349Z 26 PC: 12a55 | Set disk transfer address
2018-12-17T22:21:05.954967553Z 71 PC: 12a6a | Get current directory
2018-12-17T22:21:05.957274364Z 78 PC: 12a75 | Find first file
2018-12-17T22:21:05.961616827Z 61 PC: 12aae | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:21:05.966219196Z 63 PC: 12aba | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:21:05.971904151Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:21:05.974106773Z 66 PC: 12adb | Move file pointer
2018-12-17T22:21:05.976256594Z 64 PC: 12b0a | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:21:05.980356813Z 66 PC: 12b13 | Move file pointer
2018-12-17T22:21:05.982368837Z 64 PC: 12b1e | Write file or device (Write 327 bytes on handle 5)
2018-12-17T22:21:05.999197308Z 87 PC: 12b2d | Get or set file date and time
2018-12-17T22:21:06.00250139Z 62 PC: 12b31 | Close file
2018-12-17T22:21:06.011444716Z 79 PC: 12a91 | Find next file
2018-12-17T22:21:06.015336995Z 61 PC: 12aae | Open file (Filename = 'PRINT.COM')
2018-12-17T22:21:06.023613195Z 63 PC: 12aba | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:21:06.032859799Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:21:06.034857797Z 66 PC: 12adb | Move file pointer
2018-12-17T22:21:06.036863054Z 64 PC: 12b0a | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:21:06.041696503Z 66 PC: 12b13 | Move file pointer
2018-12-17T22:21:06.044873559Z 64 PC: 12b1e | Write file or device (Write 327 bytes on handle 5)
2018-12-17T22:21:06.048573666Z 87 PC: 12b2d | Get or set file date and time
2018-12-17T22:21:06.052068366Z 62 PC: 12b31 | Close file
2018-12-17T22:21:06.06117347Z 79 PC: 12a91 | Find next file
2018-12-17T22:21:06.064114835Z 61 PC: 12aae | Open file (Filename = 'HELLO.COM')
2018-12-17T22:21:06.072560611Z 63 PC: 12aba | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:21:06.079658682Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:21:06.081492704Z 66 PC: 12adb | Move file pointer
2018-12-17T22:21:06.083404809Z 64 PC: 12b0a | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:21:06.08691868Z 66 PC: 12b13 | Move file pointer
2018-12-17T22:21:06.08899429Z 64 PC: 12b1e | Write file or device (Write 327 bytes on handle 5)
2018-12-17T22:21:06.092385567Z 87 PC: 12b2d | Get or set file date and time
2018-12-17T22:21:06.095176297Z 62 PC: 12b31 | Close file
2018-12-17T22:21:06.103432563Z 79 PC: 12a91 | Find next file
2018-12-17T22:21:06.12182394Z 61 PC: 12aae | Open file (Filename = 'PHANG.COM')
2018-12-17T22:21:06.130029436Z 63 PC: 12aba | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:21:06.137146828Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:21:06.138646966Z 66 PC: 12adb | Move file pointer
2018-12-17T22:21:06.1408479Z 64 PC: 12b0a | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:21:06.143971951Z 66 PC: 12b13 | Move file pointer
2018-12-17T22:21:06.145696433Z 64 PC: 12b1e | Write file or device (Write 327 bytes on handle 5)
2018-12-17T22:21:06.149511909Z 87 PC: 12b2d | Get or set file date and time
2018-12-17T22:21:06.151135352Z 62 PC: 12b31 | Close file
2018-12-17T22:21:06.1592214Z 79 PC: 12a91 | Find next file
2018-12-17T22:21:06.163421504Z 61 PC: 12aae | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:21:06.170731457Z 63 PC: 12aba | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:21:06.177917621Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:21:06.182253509Z 66 PC: 12adb | Move file pointer
2018-12-17T22:21:06.183893054Z 64 PC: 12b0a | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:21:06.186874013Z 66 PC: 12b13 | Move file pointer
2018-12-17T22:21:06.188355064Z 64 PC: 12b1e | Write file or device (Write 327 bytes on handle 5)
2018-12-17T22:21:06.192177329Z 87 PC: 12b2d | Get or set file date and time
2018-12-17T22:21:06.194016585Z 62 PC: 12b31 | Close file
2018-12-17T22:21:06.20225611Z 79 PC: 12a91 | Find next file
2018-12-17T22:21:06.206363799Z 61 PC: 12aae | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:21:06.214668655Z 63 PC: 12aba | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:21:06.222013622Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:21:06.225525593Z 66 PC: 12adb | Move file pointer
2018-12-17T22:21:06.227477193Z 64 PC: 12b0a | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:21:06.230522784Z 66 PC: 12b13 | Move file pointer
2018-12-17T22:21:06.232950401Z 64 PC: 12b1e | Write file or device (Write 327 bytes on handle 5)
2018-12-17T22:21:06.242177973Z 87 PC: 12b2d | Get or set file date and time
2018-12-17T22:21:06.244236107Z 62 PC: 12b31 | Close file
2018-12-17T22:21:06.254290324Z 79 PC: 12a91 | Find next file
2018-12-17T22:21:06.257296341Z 61 PC: 12aae | Open file (Filename = 'PAH.COM')
2018-12-17T22:21:06.264604429Z 63 PC: 12aba | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:21:06.272882292Z 87 PC: 12ac8 | Get or set file date and time
2018-12-17T22:21:06.274734232Z 66 PC: 12adb | Move file pointer
2018-12-17T22:21:06.276252371Z 64 PC: 12b0a | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:21:06.279728632Z 66 PC: 12b13 | Move file pointer
2018-12-17T22:21:06.282064043Z 64 PC: 12b1e | Write file or device (Write 327 bytes on handle 5)
2018-12-17T22:21:06.285065726Z 87 PC: 12b2d | Get or set file date and time
2018-12-17T22:21:06.286762274Z 62 PC: 12b31 | Close file
2018-12-17T22:21:06.295531187Z 79 PC: 12a91 | Find next file
2018-12-17T22:21:06.298319418Z 61 PC: 12aae | Open file (Filename = 'TEST.COM')
2018-12-17T22:21:06.305960459Z 63 PC: 12aba | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:21:06.310519942Z 62 PC: 12b31 | Close file
2018-12-17T22:21:06.312591665Z 79 PC: 12a91 | Find next file
2018-12-17T22:21:06.315528126Z 59 PC: 12a9d | Change current directory
2018-12-17T22:21:06.321608465Z 26 PC: 12b3e | Set disk transfer address
2018-12-17T22:21:06.323275577Z 57 PC: 12b46 | Create subdirectory
2018-12-17T22:21:06.335163041Z 59 PC: 12b53 | Change current directory