Sample viewer

vx.netlux.org/Virus.DOS.Vpp.728

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:25:29.412345579Z 53 PC: 12bea | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:25:29.413796817Z 37 PC: 12c17 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:25:29.414815043Z 47 PC: 12c1d | Get disk transfer address
2018-12-17T22:25:29.415964179Z 26 PC: 12c2c | Set disk transfer address
2018-12-17T22:25:29.417894344Z 78 PC: 12c36 | Find first file
2018-12-17T22:25:29.426149172Z 67 PC: 12c61 | Get or set file attributes
2018-12-17T22:25:29.45103018Z 61 PC: 12c67 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:25:29.463444346Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.468470672Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.470834622Z 63 PC: 12c90 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:25:29.477693487Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.480979795Z 63 PC: 12cd2 | Read file or device (Read 256 bytes on handle 5)
2018-12-17T22:25:29.484170496Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.485944588Z 64 PC: 12d4a | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:25:29.489680161Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.491835711Z 64 PC: 12e00 | Write file or device (Write 77 bytes on handle 5)
2018-12-17T22:25:29.494771223Z 64 PC: 12e25 | Write file or device (Write 728 bytes on handle 5)
2018-12-17T22:25:29.508409734Z 62 PC: 12ca1 | Close file
2018-12-17T22:25:29.518083769Z 67 PC: 12caf | Get or set file attributes
2018-12-17T22:25:29.528231247Z 87 PC: 12cbb | Get or set file date and time
2018-12-17T22:25:29.530874708Z 79 PC: 12c36 | Find next file
2018-12-17T22:25:29.533892167Z 67 PC: 12c61 | Get or set file attributes
2018-12-17T22:25:29.543853047Z 61 PC: 12c67 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:25:29.551663032Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.558754904Z 62 PC: 12ca1 | Close file
2018-12-17T22:25:29.560587184Z 67 PC: 12caf | Get or set file attributes
2018-12-17T22:25:29.570188961Z 87 PC: 12cbb | Get or set file date and time
2018-12-17T22:25:29.572066142Z 79 PC: 12c36 | Find next file
2018-12-17T22:25:29.574743231Z 67 PC: 12c61 | Get or set file attributes
2018-12-17T22:25:29.584211041Z 61 PC: 12c67 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:25:29.591591245Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.592774721Z 62 PC: 12ca1 | Close file
2018-12-17T22:25:29.594533188Z 67 PC: 12caf | Get or set file attributes
2018-12-17T22:25:29.604665176Z 87 PC: 12cbb | Get or set file date and time
2018-12-17T22:25:29.60615683Z 79 PC: 12c36 | Find next file
2018-12-17T22:25:29.608615252Z 67 PC: 12c61 | Get or set file attributes
2018-12-17T22:25:29.618662123Z 61 PC: 12c67 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:25:29.62589791Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.627363617Z 62 PC: 12ca1 | Close file
2018-12-17T22:25:29.629676777Z 67 PC: 12caf | Get or set file attributes
2018-12-17T22:25:29.639468395Z 87 PC: 12cbb | Get or set file date and time
2018-12-17T22:25:29.641290715Z 79 PC: 12c36 | Find next file
2018-12-17T22:25:29.644724387Z 67 PC: 12c61 | Get or set file attributes
2018-12-17T22:25:29.655022063Z 61 PC: 12c67 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:25:29.661959705Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.664226204Z 62 PC: 12ca1 | Close file
2018-12-17T22:25:29.666305157Z 67 PC: 12caf | Get or set file attributes
2018-12-17T22:25:29.67611142Z 87 PC: 12cbb | Get or set file date and time
2018-12-17T22:25:29.678953294Z 79 PC: 12c36 | Find next file
2018-12-17T22:25:29.681663063Z 67 PC: 12c61 | Get or set file attributes
2018-12-17T22:25:29.691606664Z 61 PC: 12c67 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:25:29.69850837Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.701985811Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.703411459Z 63 PC: 12c90 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:25:29.710263342Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.711578457Z 63 PC: 12cd2 | Read file or device (Read 256 bytes on handle 5)
2018-12-17T22:25:29.714017235Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.715711749Z 64 PC: 12d4a | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:25:29.71844079Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.72021468Z 64 PC: 12e00 | Write file or device (Write 56 bytes on handle 5)
2018-12-17T22:25:29.728335524Z 64 PC: 12e25 | Write file or device (Write 728 bytes on handle 5)
2018-12-17T22:25:29.736958462Z 62 PC: 12ca1 | Close file
2018-12-17T22:25:29.744788608Z 67 PC: 12caf | Get or set file attributes
2018-12-17T22:25:29.754400258Z 87 PC: 12cbb | Get or set file date and time
2018-12-17T22:25:29.757314167Z 79 PC: 12c36 | Find next file
2018-12-17T22:25:29.760574346Z 67 PC: 12c61 | Get or set file attributes
2018-12-17T22:25:29.770193117Z 61 PC: 12c67 | Open file (Filename = 'PAH.COM')
2018-12-17T22:25:29.779758867Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.78081833Z 62 PC: 12ca1 | Close file
2018-12-17T22:25:29.78219232Z 67 PC: 12caf | Get or set file attributes
2018-12-17T22:25:29.788456089Z 87 PC: 12cbb | Get or set file date and time
2018-12-17T22:25:29.789542336Z 79 PC: 12c36 | Find next file
2018-12-17T22:25:29.791397218Z 67 PC: 12c61 | Get or set file attributes
2018-12-17T22:25:29.798115976Z 61 PC: 12c67 | Open file (Filename = 'TEST.COM')
2018-12-17T22:25:29.802250436Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.803346643Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:25:29.805170264Z 63 PC: 12c90 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:25:29.811821278Z 62 PC: 12ca1 | Close file
2018-12-17T22:25:29.813502998Z 67 PC: 12caf | Get or set file attributes
2018-12-17T22:25:29.826254788Z 87 PC: 12cbb | Get or set file date and time
2018-12-17T22:25:29.827651804Z 79 PC: 12c36 | Find next file
2018-12-17T22:25:29.829827995Z 26 PC: 12c3f | Set disk transfer address
2018-12-17T22:25:29.831189953Z 37 PC: 12c52 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:25:29.832146669Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T22:25:29.836054702Z 76 PC: 12a86 | Terminate with return code (Return code = '36')