Sample viewer

vx.netlux.org/Virus.DOS.Zombie.ZCME.16384

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:22:52.13093522Z 47 PC: 24479 | Get disk transfer address
2018-12-17T22:22:52.135812599Z 26 PC: 24485 | Set disk transfer address
2018-12-17T22:22:52.137107614Z 78 PC: 23c05 | Find first file
2018-12-17T22:22:52.143882225Z 61 PC: 2461f | Open file (Filename = 'ž')
2018-12-17T22:22:52.151713778Z 63 PC: 22d63 | Read file or device (Read 48894 bytes on handle 5)
2018-12-17T22:22:52.159356645Z 66 PC: 24199 | Move file pointer
2018-12-17T22:22:52.161309996Z 64 PC: 249eb | Write file or device (Write 16384 bytes on handle 5)
2018-12-17T22:22:52.279800482Z 64 PC: 248cc | Write file or device (Write 407 bytes on handle 5)
2018-12-17T22:22:52.286610664Z 62 PC: 248d1 | Close file
2018-12-17T22:22:52.295534637Z 79 PC: 23c05 | Find next file
2018-12-17T22:22:52.299098814Z 61 PC: 2461f | Open file (Filename = 'ž')
2018-12-17T22:22:52.307317637Z 63 PC: 22d63 | Read file or device (Read 48894 bytes on handle 5)
2018-12-17T22:22:52.317353106Z 66 PC: 24199 | Move file pointer
2018-12-17T22:22:52.318946644Z 64 PC: 249eb | Write file or device (Write 16384 bytes on handle 5)
2018-12-17T22:22:52.330098231Z 64 PC: 248cc | Write file or device (Write 27 bytes on handle 5)
2018-12-17T22:22:52.334979981Z 62 PC: 248d1 | Close file
2018-12-17T22:22:52.345098725Z 79 PC: 23c05 | Find next file
2018-12-17T22:22:52.349510894Z 61 PC: 2461f | Open file (Filename = 'ž')
2018-12-17T22:22:52.357370783Z 63 PC: 22d63 | Read file or device (Read 48894 bytes on handle 5)
2018-12-17T22:22:52.365301585Z 66 PC: 24199 | Move file pointer
2018-12-17T22:22:52.368087603Z 64 PC: 249eb | Write file or device (Write 16384 bytes on handle 5)
2018-12-17T22:22:52.378142277Z 64 PC: 248cc | Write file or device (Write 92 bytes on handle 5)
2018-12-17T22:22:52.382730103Z 62 PC: 248d1 | Close file
2018-12-17T22:22:52.392984725Z 79 PC: 23c05 | Find next file
2018-12-17T22:22:52.395155752Z 61 PC: 2461f | Open file (Filename = 'ž')
2018-12-17T22:22:52.402726736Z 63 PC: 22d63 | Read file or device (Read 48894 bytes on handle 5)
2018-12-17T22:22:52.411111535Z 66 PC: 24199 | Move file pointer
2018-12-17T22:22:52.413697585Z 64 PC: 249eb | Write file or device (Write 16384 bytes on handle 5)
2018-12-17T22:22:52.422120259Z 64 PC: 248cc | Write file or device (Write 29 bytes on handle 5)
2018-12-17T22:22:52.430386376Z 62 PC: 248d1 | Close file
2018-12-17T22:22:52.440149024Z 79 PC: 23c05 | Find next file
2018-12-17T22:22:52.443582551Z 61 PC: 2461f | Open file (Filename = 'ž')
2018-12-17T22:22:52.451671085Z 63 PC: 22d63 | Read file or device (Read 48894 bytes on handle 5)
2018-12-17T22:22:52.457944867Z 66 PC: 24199 | Move file pointer
2018-12-17T22:22:52.459606904Z 64 PC: 249eb | Write file or device (Write 16384 bytes on handle 5)
2018-12-17T22:22:52.467213224Z 64 PC: 248cc | Write file or device (Write 29 bytes on handle 5)
2018-12-17T22:22:52.475187418Z 62 PC: 248d1 | Close file
2018-12-17T22:22:52.485602156Z 79 PC: 23c05 | Find next file
2018-12-17T22:22:52.489047104Z 61 PC: 2461f | Open file (Filename = 'ž')
2018-12-17T22:22:52.495560329Z 63 PC: 22d63 | Read file or device (Read 48894 bytes on handle 5)
2018-12-17T22:22:52.501299542Z 66 PC: 24199 | Move file pointer
2018-12-17T22:22:52.502834212Z 64 PC: 249eb | Write file or device (Write 16384 bytes on handle 5)
2018-12-17T22:22:52.513369926Z 64 PC: 248cc | Write file or device (Write 501 bytes on handle 5)
2018-12-17T22:22:52.516039663Z 62 PC: 248d1 | Close file
2018-12-17T22:22:52.521486929Z 79 PC: 23c05 | Find next file
2018-12-17T22:22:52.523846535Z 61 PC: 2461f | Open file (Filename = 'ž')
2018-12-17T22:22:52.528539064Z 63 PC: 22d63 | Read file or device (Read 48894 bytes on handle 5)
2018-12-17T22:22:52.53287014Z 66 PC: 24199 | Move file pointer
2018-12-17T22:22:52.53434662Z 64 PC: 249eb | Write file or device (Write 16384 bytes on handle 5)
2018-12-17T22:22:52.550728367Z 64 PC: 248cc | Write file or device (Write 29 bytes on handle 5)
2018-12-17T22:22:52.553910383Z 62 PC: 248d1 | Close file
2018-12-17T22:22:52.560449969Z 79 PC: 23c05 | Find next file
2018-12-17T22:22:52.564067527Z 61 PC: 2461f | Open file (Filename = 'ž')
2018-12-17T22:22:52.568654096Z 63 PC: 22d63 | Read file or device (Read 48894 bytes on handle 5)
2018-12-17T22:22:52.574907883Z 62 PC: 248d1 | Close file
2018-12-17T22:22:52.577334387Z 79 PC: 23c05 | Find next file
2018-12-17T22:22:52.579359539Z 26 PC: 2441a | Set disk transfer address
2018-12-17T22:22:52.580532206Z 98 PC: 241e9 | Get current PSP
2018-12-17T22:22:52.584561771Z 9 PC: 18dcf | Display string (Could not find end pointer)
2018-12-17T22:22:52.596204174Z 48 PC: 1919b | Get DOS version
2018-12-17T22:22:52.597370404Z 73 PC: 191c3 | Release memory
2018-12-17T22:22:52.599546475Z 53 PC: 191c8 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:22:52.600842226Z 53 PC: 191d5 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:22:52.602111689Z 37 PC: 191f9 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:22:52.604202402Z 37 PC: 19209 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:22:52.605423239Z 49 PC: 19211 | Terminate and stay resident (Return code = '0' | Memory size = '59')