Sample viewer

vx.netlux.org/Virus.DOS.Trivial.Malice.833

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:25:12.03688224Z 59 PC: 12a47 | Change current directory
2018-12-17T22:25:12.063076165Z 78 PC: 12a51 | Find first file
2018-12-17T22:25:12.077691856Z 79 PC: 12a58 | Find next file
2018-12-17T22:25:12.093545119Z 67 PC: 12a61 | Get or set file attributes
2018-12-17T22:25:12.099901363Z 67 PC: 12a6d | Get or set file attributes
2018-12-17T22:25:12.130365127Z 61 PC: 12a75 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:25:12.138395832Z 64 PC: 12a80 | Write file or device (Write 833 bytes on handle 5)
2018-12-17T22:25:12.148226368Z 62 PC: 12a84 | Close file
2018-12-17T22:25:12.158369767Z 79 PC: 12a58 | Find next file
2018-12-17T22:25:12.162778274Z 67 PC: 12a61 | Get or set file attributes
2018-12-17T22:25:12.169766146Z 67 PC: 12a6d | Get or set file attributes
2018-12-17T22:25:12.182499647Z 61 PC: 12a75 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:25:12.195144694Z 64 PC: 12a80 | Write file or device (Write 833 bytes on handle 5)
2018-12-17T22:25:12.204710251Z 62 PC: 12a84 | Close file
2018-12-17T22:25:12.215123343Z 79 PC: 12a58 | Find next file
2018-12-17T22:25:12.21832032Z 67 PC: 12a61 | Get or set file attributes
2018-12-17T22:25:12.225438462Z 67 PC: 12a6d | Get or set file attributes
2018-12-17T22:25:12.237993798Z 61 PC: 12a75 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:25:12.246212609Z 64 PC: 12a80 | Write file or device (Write 833 bytes on handle 5)
2018-12-17T22:25:12.256003178Z 62 PC: 12a84 | Close file
2018-12-17T22:25:12.265949076Z 79 PC: 12a58 | Find next file
2018-12-17T22:25:12.269713454Z 67 PC: 12a61 | Get or set file attributes
2018-12-17T22:25:12.27675399Z 67 PC: 12a6d | Get or set file attributes
2018-12-17T22:25:12.288336689Z 61 PC: 12a75 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:25:12.303069804Z 64 PC: 12a80 | Write file or device (Write 833 bytes on handle 5)
2018-12-17T22:25:12.31260308Z 62 PC: 12a84 | Close file
2018-12-17T22:25:12.322421833Z 79 PC: 12a58 | Find next file
2018-12-17T22:25:12.326836919Z 67 PC: 12a61 | Get or set file attributes
2018-12-17T22:25:12.333886302Z 67 PC: 12a6d | Get or set file attributes
2018-12-17T22:25:12.349036989Z 61 PC: 12a75 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:25:12.358143792Z 64 PC: 12a80 | Write file or device (Write 833 bytes on handle 5)
2018-12-17T22:25:12.367442095Z 62 PC: 12a84 | Close file
2018-12-17T22:25:12.377272342Z 59 PC: 12a9b | Change current directory
2018-12-17T22:25:12.382840727Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.385600131Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.388362318Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.396240056Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.40109087Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.405763314Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.408794484Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.412510643Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.431697677Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.434920354Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.440988372Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.444110968Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.448643492Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.452831075Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.456288391Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.462218535Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.468329533Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.471411115Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.474429029Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.478363246Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.484801406Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.487758297Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.491253507Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.495943323Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.500857126Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.505886043Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.509822429Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.512919056Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.517451852Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.526164977Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.531339156Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.534281267Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.539758501Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.542763806Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.545722647Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.550582428Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.556490291Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.559471809Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.562457212Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.566387104Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.573421227Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.576367267Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.580181978Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.583456353Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.587853132Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.59379239Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.596757477Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.599702927Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.604077538Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.607933052Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.612704079Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.615643158Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.621050072Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.624009074Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.626981518Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.633343919Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.651415336Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.65998878Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.668091748Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.67157217Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.67815206Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.681302186Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.684987058Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.687870011Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.6922287Z 9 PC: 12aad | Display string (String= ' EvuLz MaLiCe ')
2018-12-17T22:25:12.702325104Z 0 PC: 12b07 | Program terminate