Sample viewer

vx.netlux.org/Virus.DOS.Totobola.307

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:54:11.035296216Z 26 PC: 12a6b | Set disk transfer address
2018-12-17T21:54:11.038613675Z 78 PC: 12a76 | Find first file
2018-12-17T21:54:11.044622188Z 67 PC: 12a7d | Get or set file attributes
2018-12-17T21:54:11.049154957Z 67 PC: 12a89 | Get or set file attributes
2018-12-17T21:54:11.059130209Z 61 PC: 12a92 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:54:11.070536836Z 63 PC: 12a9f | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:54:11.077308806Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.079797038Z 64 PC: 12abf | Write file or device (Write 307 bytes on handle 5)
2018-12-17T21:54:11.101918325Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.10329739Z 64 PC: 12acf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:54:11.109902591Z 62 PC: 12ad3 | Close file
2018-12-17T21:54:11.118162445Z 67 PC: 12add | Get or set file attributes
2018-12-17T21:54:11.122377763Z 79 PC: 12ae1 | Find next file
2018-12-17T21:54:11.124946776Z 67 PC: 12a7d | Get or set file attributes
2018-12-17T21:54:11.129543857Z 67 PC: 12a89 | Get or set file attributes
2018-12-17T21:54:11.133732922Z 61 PC: 12a92 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:54:11.145337584Z 63 PC: 12a9f | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:54:11.152217593Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.153888124Z 64 PC: 12abf | Write file or device (Write 307 bytes on handle 5)
2018-12-17T21:54:11.156792029Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.159950481Z 64 PC: 12acf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:54:11.16273744Z 62 PC: 12ad3 | Close file
2018-12-17T21:54:11.175026287Z 67 PC: 12add | Get or set file attributes
2018-12-17T21:54:11.180478248Z 79 PC: 12ae1 | Find next file
2018-12-17T21:54:11.185910376Z 67 PC: 12a7d | Get or set file attributes
2018-12-17T21:54:11.191537664Z 67 PC: 12a89 | Get or set file attributes
2018-12-17T21:54:11.196550819Z 61 PC: 12a92 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:54:11.208642976Z 63 PC: 12a9f | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:54:11.214939908Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.217130549Z 64 PC: 12abf | Write file or device (Write 307 bytes on handle 5)
2018-12-17T21:54:11.219853183Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.221253785Z 64 PC: 12acf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:54:11.228069213Z 62 PC: 12ad3 | Close file
2018-12-17T21:54:11.23611736Z 67 PC: 12add | Get or set file attributes
2018-12-17T21:54:11.242347794Z 79 PC: 12ae1 | Find next file
2018-12-17T21:54:11.245161812Z 67 PC: 12a7d | Get or set file attributes
2018-12-17T21:54:11.251093695Z 67 PC: 12a89 | Get or set file attributes
2018-12-17T21:54:11.257064369Z 61 PC: 12a92 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:54:11.26875463Z 63 PC: 12a9f | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:54:11.276069977Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.278654888Z 64 PC: 12abf | Write file or device (Write 307 bytes on handle 5)
2018-12-17T21:54:11.281761091Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.284649079Z 64 PC: 12acf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:54:11.287607209Z 62 PC: 12ad3 | Close file
2018-12-17T21:54:11.29588761Z 67 PC: 12add | Get or set file attributes
2018-12-17T21:54:11.301473305Z 79 PC: 12ae1 | Find next file
2018-12-17T21:54:11.30489003Z 67 PC: 12a7d | Get or set file attributes
2018-12-17T21:54:11.309504752Z 67 PC: 12a89 | Get or set file attributes
2018-12-17T21:54:11.315267612Z 61 PC: 12a92 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:54:11.322085987Z 63 PC: 12a9f | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:54:11.329151654Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.332208527Z 64 PC: 12abf | Write file or device (Write 307 bytes on handle 5)
2018-12-17T21:54:11.335328311Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.336974241Z 64 PC: 12acf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:54:11.340038475Z 62 PC: 12ad3 | Close file
2018-12-17T21:54:11.349123718Z 67 PC: 12add | Get or set file attributes
2018-12-17T21:54:11.353320849Z 79 PC: 12ae1 | Find next file
2018-12-17T21:54:11.35586499Z 67 PC: 12a7d | Get or set file attributes
2018-12-17T21:54:11.360970933Z 67 PC: 12a89 | Get or set file attributes
2018-12-17T21:54:11.365601396Z 61 PC: 12a92 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:54:11.372285046Z 63 PC: 12a9f | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:54:11.379305982Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.380976727Z 64 PC: 12abf | Write file or device (Write 307 bytes on handle 5)
2018-12-17T21:54:11.389148855Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.392061349Z 64 PC: 12acf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:54:11.398767245Z 62 PC: 12ad3 | Close file
2018-12-17T21:54:11.407487879Z 67 PC: 12add | Get or set file attributes
2018-12-17T21:54:11.412799402Z 79 PC: 12ae1 | Find next file
2018-12-17T21:54:11.41636646Z 67 PC: 12a7d | Get or set file attributes
2018-12-17T21:54:11.420818041Z 67 PC: 12a89 | Get or set file attributes
2018-12-17T21:54:11.426106392Z 61 PC: 12a92 | Open file (Filename = 'PAH.COM')
2018-12-17T21:54:11.433166434Z 63 PC: 12a9f | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:54:11.439659536Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.442082498Z 64 PC: 12abf | Write file or device (Write 307 bytes on handle 5)
2018-12-17T21:54:11.445314784Z 66 PC: 12b65 | Move file pointer
2018-12-17T21:54:11.446943053Z 64 PC: 12acf | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:54:11.450429716Z 62 PC: 12ad3 | Close file
2018-12-17T21:54:11.458530464Z 67 PC: 12add | Get or set file attributes
2018-12-17T21:54:11.462996476Z 79 PC: 12ae1 | Find next file
2018-12-17T21:54:11.466030769Z 67 PC: 12a7d | Get or set file attributes
2018-12-17T21:54:11.470977421Z 67 PC: 12a89 | Get or set file attributes
2018-12-17T21:54:11.475781248Z 61 PC: 12a92 | Open file (Filename = 'TEST.COM')
2018-12-17T21:54:11.487494113Z 63 PC: 12a9f | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:54:11.494896501Z 62 PC: 12ad3 | Close file
2018-12-17T21:54:11.49697435Z 67 PC: 12add | Get or set file attributes
2018-12-17T21:54:11.502937685Z 79 PC: 12ae1 | Find next file
2018-12-17T21:54:11.506272962Z 9 PC: 12b5c | Display string (String= '[BELIRS] ToToBoLa ViRuS 1997-RiO gRaNdE/rS. ')