Sample viewer

vx.netlux.org/Virus.DOS.Hells.197

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:23:40.675076833Z 78 PC: 12a75 | Find first file
2018-12-17T22:23:40.682216988Z 61 PC: 12a6d | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:23:40.688910094Z 67 PC: 12a54 | Get or set file attributes
2018-12-17T22:23:40.717849158Z 64 PC: 12a63 | Write file or device (Write 197 bytes on handle 5)
2018-12-17T22:23:40.726101299Z 62 PC: 12a7d | Close file
2018-12-17T22:23:40.734033216Z 79 PC: 12a75 | Find next file
2018-12-17T22:23:40.737027729Z 61 PC: 12a6d | Open file (Filename = 'PRINT.COM')
2018-12-17T22:23:40.744790418Z 67 PC: 12a54 | Get or set file attributes
2018-12-17T22:23:40.768501784Z 64 PC: 12a63 | Write file or device (Write 197 bytes on handle 5)
2018-12-17T22:23:40.77519326Z 62 PC: 12a7d | Close file
2018-12-17T22:23:40.782852985Z 79 PC: 12a75 | Find next file
2018-12-17T22:23:40.786729703Z 61 PC: 12a6d | Open file (Filename = 'HELLO.COM')
2018-12-17T22:23:40.793066226Z 67 PC: 12a54 | Get or set file attributes
2018-12-17T22:23:40.802575259Z 64 PC: 12a63 | Write file or device (Write 197 bytes on handle 5)
2018-12-17T22:23:40.80950998Z 62 PC: 12a7d | Close file
2018-12-17T22:23:40.816052241Z 79 PC: 12a75 | Find next file
2018-12-17T22:23:40.817921145Z 61 PC: 12a6d | Open file (Filename = 'PHANG.COM')
2018-12-17T22:23:40.822872454Z 67 PC: 12a54 | Get or set file attributes
2018-12-17T22:23:40.829362243Z 64 PC: 12a63 | Write file or device (Write 197 bytes on handle 5)
2018-12-17T22:23:40.833647622Z 62 PC: 12a7d | Close file
2018-12-17T22:23:40.839419119Z 79 PC: 12a75 | Find next file
2018-12-17T22:23:40.841240625Z 61 PC: 12a6d | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:23:40.848557161Z 67 PC: 12a54 | Get or set file attributes
2018-12-17T22:23:40.855923296Z 64 PC: 12a63 | Write file or device (Write 197 bytes on handle 5)
2018-12-17T22:23:40.86007958Z 62 PC: 12a7d | Close file
2018-12-17T22:23:40.865201235Z 79 PC: 12a75 | Find next file
2018-12-17T22:23:40.876170891Z 61 PC: 12a6d | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:23:40.882381586Z 67 PC: 12a54 | Get or set file attributes
2018-12-17T22:23:40.892075989Z 64 PC: 12a63 | Write file or device (Write 197 bytes on handle 5)
2018-12-17T22:23:40.89965449Z 62 PC: 12a7d | Close file
2018-12-17T22:23:40.907309094Z 79 PC: 12a75 | Find next file
2018-12-17T22:23:40.909966041Z 61 PC: 12a6d | Open file (Filename = 'PAH.COM')
2018-12-17T22:23:40.917128295Z 67 PC: 12a54 | Get or set file attributes
2018-12-17T22:23:40.929187331Z 64 PC: 12a63 | Write file or device (Write 197 bytes on handle 5)
2018-12-17T22:23:40.936925879Z 62 PC: 12a7d | Close file
2018-12-17T22:23:40.944531086Z 79 PC: 12a75 | Find next file
2018-12-17T22:23:40.948020831Z 61 PC: 12a6d | Open file (Filename = 'TEST.COM')
2018-12-17T22:23:40.954300118Z 67 PC: 12a54 | Get or set file attributes
2018-12-17T22:23:40.964656487Z 64 PC: 12a63 | Write file or device (Write 197 bytes on handle 5)
2018-12-17T22:23:40.971710121Z 62 PC: 12a7d | Close file
2018-12-17T22:23:40.980216634Z 79 PC: 12a75 | Find next file
2018-12-17T22:23:40.982484017Z 9 PC: 12aed | Display string (String= 'Second Part To Hells first ASM virus')
2018-12-17T22:23:40.985388319Z 60 PC: 12af7 | Create or truncate file
2018-12-17T22:23:41.699187174Z 64 PC: 12b01 | Write file or device (Write 51 bytes on handle 5)
2018-12-17T22:23:41.709045105Z 76 PC: 12b05 | Terminate with return code (Return code = '51')