Sample viewer

vx.netlux.org/Virus.DOS.Trivial.81.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:23:48.174578666Z 78 PC: 12a5d | Find first file
2018-12-17T22:23:48.181952566Z 61 PC: 12a68 | Open file (Filename = '')
2018-12-17T22:23:48.188331277Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:23:48.194319182Z 66 PC: 12a80 | Move file pointer
2018-12-17T22:23:48.19583397Z 64 PC: 12a87 | Write file or device (Write 488 bytes on handle 5)
2018-12-17T22:23:48.199475769Z 79 PC: 12a5d | Find next file
2018-12-17T22:23:48.202147472Z 61 PC: 12a68 | Open file (Filename = '')
2018-12-17T22:23:48.208316505Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 6)
2018-12-17T22:23:48.215285835Z 66 PC: 12a80 | Move file pointer
2018-12-17T22:23:48.216573451Z 64 PC: 12a87 | Write file or device (Write 108 bytes on handle 6)
2018-12-17T22:23:48.219095131Z 79 PC: 12a5d | Find next file
2018-12-17T22:23:48.223209861Z 61 PC: 12a68 | Open file (Filename = '')
2018-12-17T22:23:48.229408442Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 7)
2018-12-17T22:23:48.23536908Z 66 PC: 12a80 | Move file pointer
2018-12-17T22:23:48.237501194Z 64 PC: 12a87 | Write file or device (Write 173 bytes on handle 7)
2018-12-17T22:23:48.240169086Z 79 PC: 12a5d | Find next file
2018-12-17T22:23:48.242704253Z 61 PC: 12a68 | Open file (Filename = '')
2018-12-17T22:23:48.24918322Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 8)
2018-12-17T22:23:48.255878544Z 66 PC: 12a80 | Move file pointer
2018-12-17T22:23:48.257503262Z 64 PC: 12a87 | Write file or device (Write 110 bytes on handle 8)
2018-12-17T22:23:48.260387264Z 79 PC: 12a5d | Find next file
2018-12-17T22:23:48.263688065Z 61 PC: 12a68 | Open file (Filename = '')
2018-12-17T22:23:48.271024496Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 9)
2018-12-17T22:23:48.277682205Z 66 PC: 12a80 | Move file pointer
2018-12-17T22:23:48.280580253Z 64 PC: 12a87 | Write file or device (Write 110 bytes on handle 9)
2018-12-17T22:23:48.283435907Z 79 PC: 12a5d | Find next file
2018-12-17T22:23:48.286017521Z 61 PC: 12a68 | Open file (Filename = '')
2018-12-17T22:23:48.293822159Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 10)
2018-12-17T22:23:48.3006399Z 66 PC: 12a80 | Move file pointer
2018-12-17T22:23:48.302391556Z 64 PC: 12a87 | Write file or device (Write 582 bytes on handle 10)
2018-12-17T22:23:48.334041795Z 79 PC: 12a5d | Find next file
2018-12-17T22:23:48.336750062Z 61 PC: 12a68 | Open file (Filename = '')
2018-12-17T22:23:48.343209065Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 11)
2018-12-17T22:23:48.353043659Z 66 PC: 12a80 | Move file pointer
2018-12-17T22:23:48.35464084Z 64 PC: 12a87 | Write file or device (Write 110 bytes on handle 11)
2018-12-17T22:23:48.359563921Z 79 PC: 12a5d | Find next file
2018-12-17T22:23:48.362164473Z 61 PC: 12a68 | Open file (Filename = '')
2018-12-17T22:23:48.370033925Z 63 PC: 12a73 | Read file or device (Read 65530 bytes on handle 12)
2018-12-17T22:23:48.372824282Z 66 PC: 12a80 | Move file pointer
2018-12-17T22:23:48.374466931Z 64 PC: 12a87 | Write file or device (Write 163 bytes on handle 12)
2018-12-17T22:23:48.377698524Z 79 PC: 12a5d | Find next file
2018-12-17T22:23:48.38608921Z 77 PC: 11fe0 | Get program return code
2018-12-17T22:23:48.387524801Z 72 PC: 12174 | Allocate memory
2018-12-17T22:23:48.390234457Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:23:48.392527678Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:23:48.396056964Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:23:48.398657553Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:23:48.401169997Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:23:48.403200659Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:23:48.406107458Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:23:48.408453052Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:23:48.410798449Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:23:48.413546322Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:23:48.415740496Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:23:48.418129798Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:23:48.421910881Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:23:48.424139562Z 2 PC: 1268d | Character output (Char = '63')
2018-12-17T22:23:48.426388741Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:23:48.429511775Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:23:48.433014689Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T22:23:48.435427065Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:23:48.438545498Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:23:48.441378046Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:23:48.443739218Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:23:48.446327634Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:23:48.449542954Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:23:48.451875189Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:23:48.45422417Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:23:48.458332767Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:23:48.463003205Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:23:48.46695334Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:23:48.470201045Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:23:48.472161941Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:23:48.474331297Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:23:48.479037125Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:23:48.481067208Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:23:48.483555525Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:23:48.486146883Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:23:48.488242918Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:23:48.492890854Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:23:48.495357188Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:23:48.497282534Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:23:48.499205175Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:23:48.502024317Z 2 PC: 1268d | Character output (Char = '4f')
2018-12-17T22:23:48.504238485Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:23:48.506365956Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:23:48.50935186Z 2 PC: 1268d | Character output (Char = '41')
2018-12-17T22:23:48.512150185Z 2 PC: 1268d | Character output (Char = '4e')
2018-12-17T22:23:48.514272565Z 2 PC: 1268d | Character output (Char = '44')
2018-12-17T22:23:48.517403575Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T22:23:48.519488016Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:23:48.521645472Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:23:48.524534577Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:23:48.52652134Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:23:48.528415303Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:23:48.531262041Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:23:48.533446947Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:23:48.535828891Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:23:48.538397662Z 2 PC: 1268d | Character output (Char = '68')
2018-12-17T22:23:48.541437341Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:23:48.544725696Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:23:48.547170224Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:23:48.549445678Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:23:48.551973504Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:23:48.554339346Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:23:48.557382139Z 2 PC: 1268d | Character output (Char = '0a')