Sample viewer

vx.netlux.org/Virus.DOS.Torm.136.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:53:54.42057287Z 78 PC: 1516a | Find first file
2018-12-17T21:53:54.427434766Z 61 PC: 15174 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:53:54.434984405Z 63 PC: 15183 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:53:54.441443613Z 66 PC: 15195 | Move file pointer
2018-12-17T21:53:54.443935918Z 64 PC: 151a4 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T21:53:54.459330431Z 66 PC: 151af | Move file pointer
2018-12-17T21:53:54.460322332Z 64 PC: 151bb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:53:54.464641663Z 62 PC: 151c1 | Close file
2018-12-17T21:53:54.470526258Z 79 PC: 1516a | Find next file
2018-12-17T21:53:54.472956842Z 61 PC: 15174 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:53:54.479293988Z 63 PC: 15183 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:53:54.48613832Z 66 PC: 15195 | Move file pointer
2018-12-17T21:53:54.487895478Z 64 PC: 151a4 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T21:53:54.490440949Z 66 PC: 151af | Move file pointer
2018-12-17T21:53:54.492380121Z 64 PC: 151bb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:53:54.494857165Z 62 PC: 151c1 | Close file
2018-12-17T21:53:54.50293594Z 79 PC: 1516a | Find next file
2018-12-17T21:53:54.506941663Z 61 PC: 15174 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:53:54.51315233Z 63 PC: 15183 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:53:54.519529872Z 66 PC: 15195 | Move file pointer
2018-12-17T21:53:54.521627846Z 64 PC: 151a4 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T21:53:54.524089572Z 66 PC: 151af | Move file pointer
2018-12-17T21:53:54.525429883Z 64 PC: 151bb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:53:54.52859046Z 62 PC: 151c1 | Close file
2018-12-17T21:53:54.536159146Z 79 PC: 1516a | Find next file
2018-12-17T21:53:54.538664778Z 61 PC: 15174 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:53:54.545175083Z 63 PC: 15183 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:53:54.551836328Z 66 PC: 15195 | Move file pointer
2018-12-17T21:53:54.553148046Z 64 PC: 151a4 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T21:53:54.55678891Z 66 PC: 151af | Move file pointer
2018-12-17T21:53:54.558005158Z 64 PC: 151bb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:53:54.560641617Z 62 PC: 151c1 | Close file
2018-12-17T21:53:54.568381128Z 79 PC: 1516a | Find next file
2018-12-17T21:53:54.570898538Z 61 PC: 15174 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:53:54.577163311Z 63 PC: 15183 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:53:54.583430542Z 66 PC: 15195 | Move file pointer
2018-12-17T21:53:54.585047882Z 64 PC: 151a4 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T21:53:54.587460705Z 66 PC: 151af | Move file pointer
2018-12-17T21:53:54.589350762Z 64 PC: 151bb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:53:54.591736718Z 62 PC: 151c1 | Close file
2018-12-17T21:53:54.598860391Z 79 PC: 1516a | Find next file
2018-12-17T21:53:54.601393841Z 61 PC: 15174 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:53:54.607829488Z 63 PC: 15183 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:53:54.614218844Z 66 PC: 15195 | Move file pointer
2018-12-17T21:53:54.615424868Z 64 PC: 151a4 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T21:53:54.623574145Z 66 PC: 151af | Move file pointer
2018-12-17T21:53:54.624892444Z 64 PC: 151bb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:53:54.63111817Z 62 PC: 151c1 | Close file
2018-12-17T21:53:54.639325605Z 79 PC: 1516a | Find next file
2018-12-17T21:53:54.641775585Z 61 PC: 15174 | Open file (Filename = 'PAH.COM')
2018-12-17T21:53:54.64807132Z 63 PC: 15183 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:53:54.655384965Z 66 PC: 15195 | Move file pointer
2018-12-17T21:53:54.657053349Z 64 PC: 151a4 | Write file or device (Write 136 bytes on handle 5)
2018-12-17T21:53:54.659910368Z 66 PC: 151af | Move file pointer
2018-12-17T21:53:54.662338688Z 64 PC: 151bb | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:53:54.665330158Z 62 PC: 151c1 | Close file
2018-12-17T21:53:54.67255359Z 79 PC: 1516a | Find next file
2018-12-17T21:53:54.675524335Z 61 PC: 15174 | Open file (Filename = 'TEST.COM')
2018-12-17T21:53:54.682375228Z 63 PC: 15183 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:53:54.684744792Z 79 PC: 1516a | Find next file
2018-12-17T21:53:54.689529739Z 9 PC: 12bb5 | Display string (String= '')
2018-12-17T21:53:54.691500368Z 9 PC: 12bbc | Display string (Could not find end pointer)
2018-12-17T21:53:54.702128441Z 76 PC: 12bd2 | Terminate with return code (Return code = '0')