Sample viewer

vx.netlux.org/Virus.DOS.IVP.Zombie.280

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:53:47.459719687Z 53 PC: 12a48 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:53:47.466233205Z 37 PC: 12a59 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:53:47.467478775Z 71 PC: 12a64 | Get current directory
2018-12-17T21:53:47.470771245Z 78 PC: 12a94 | Find first file
2018-12-17T21:53:47.478476711Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.493980932Z 61 PC: 12ae4 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:53:47.500593851Z 64 PC: 12ac0 | Write file or device (Write 280 bytes on handle 5)
2018-12-17T21:53:47.507935858Z 87 PC: 12acd | Get or set file date and time
2018-12-17T21:53:47.51053587Z 62 PC: 12ad1 | Close file
2018-12-17T21:53:47.518837247Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.528824653Z 79 PC: 12a94 | Find next file
2018-12-17T21:53:47.533132961Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.545180828Z 61 PC: 12ae4 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:53:47.566153298Z 64 PC: 12ac0 | Write file or device (Write 280 bytes on handle 5)
2018-12-17T21:53:47.573146772Z 87 PC: 12acd | Get or set file date and time
2018-12-17T21:53:47.574722495Z 62 PC: 12ad1 | Close file
2018-12-17T21:53:47.580983118Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.621682891Z 79 PC: 12a94 | Find next file
2018-12-17T21:53:47.624748795Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.634829309Z 61 PC: 12ae4 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:53:47.642768655Z 64 PC: 12ac0 | Write file or device (Write 280 bytes on handle 5)
2018-12-17T21:53:47.656564641Z 87 PC: 12acd | Get or set file date and time
2018-12-17T21:53:47.658331716Z 62 PC: 12ad1 | Close file
2018-12-17T21:53:47.666797022Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.676692418Z 79 PC: 12a94 | Find next file
2018-12-17T21:53:47.679826257Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.689621976Z 61 PC: 12ae4 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:53:47.696778792Z 64 PC: 12ac0 | Write file or device (Write 280 bytes on handle 5)
2018-12-17T21:53:47.703223622Z 87 PC: 12acd | Get or set file date and time
2018-12-17T21:53:47.70468424Z 62 PC: 12ad1 | Close file
2018-12-17T21:53:47.713223676Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.741707993Z 79 PC: 12a94 | Find next file
2018-12-17T21:53:47.744771506Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.755840495Z 61 PC: 12ae4 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:53:47.762990193Z 64 PC: 12ac0 | Write file or device (Write 280 bytes on handle 5)
2018-12-17T21:53:47.773741914Z 87 PC: 12acd | Get or set file date and time
2018-12-17T21:53:47.77641354Z 62 PC: 12ad1 | Close file
2018-12-17T21:53:47.785714551Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.796123301Z 79 PC: 12a94 | Find next file
2018-12-17T21:53:47.799247995Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.809835586Z 61 PC: 12ae4 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:53:47.816573718Z 64 PC: 12ac0 | Write file or device (Write 280 bytes on handle 5)
2018-12-17T21:53:47.823788108Z 87 PC: 12acd | Get or set file date and time
2018-12-17T21:53:47.826751564Z 62 PC: 12ad1 | Close file
2018-12-17T21:53:47.834213596Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.844532565Z 79 PC: 12a94 | Find next file
2018-12-17T21:53:47.848079815Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.861211105Z 61 PC: 12ae4 | Open file (Filename = 'PAH.COM')
2018-12-17T21:53:47.868265471Z 64 PC: 12ac0 | Write file or device (Write 280 bytes on handle 5)
2018-12-17T21:53:47.875776986Z 87 PC: 12acd | Get or set file date and time
2018-12-17T21:53:47.877728496Z 62 PC: 12ad1 | Close file
2018-12-17T21:53:47.885213161Z 67 PC: 12aee | Get or set file attributes
2018-12-17T21:53:47.896518879Z 79 PC: 12a94 | Find next file
2018-12-17T21:53:47.899164908Z 59 PC: 12a71 | Change current directory
2018-12-17T21:53:47.904501892Z 9 PC: 12a7a | Display string (String= 'Zombie part of the undead series produced by EXiLED Stigmata [IVP] Error: Not Enough Memory!')
2018-12-17T21:53:47.913452215Z 37 PC: 12a82 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:53:47.914838763Z 59 PC: 12a8b | Change current directory