Sample viewer

vx.netlux.org/Virus.DOS.Devore.370

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:26:29.256655902Z 26 PC: 1328e | Set disk transfer address
2018-12-17T22:26:29.25787315Z 53 PC: 132b4 | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:26:29.259404588Z 37 PC: 132bf | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:26:29.260898882Z 78 PC: 132ca | Find first file
2018-12-17T22:26:29.266811934Z 67 PC: 132d9 | Get or set file attributes
2018-12-17T22:26:29.273339162Z 67 PC: 132e6 | Get or set file attributes
2018-12-17T22:26:29.289953933Z 61 PC: 132eb | Open file (Filename = '[email protected]nS ')
2018-12-17T22:26:29.296519308Z 63 PC: 13300 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:26:29.304295754Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.305975099Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.307253084Z 64 PC: 1334d | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:26:29.310176372Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.311445062Z 64 PC: 1335c | Write file or device (Write 370 bytes on handle 5)
2018-12-17T22:26:29.322433825Z 87 PC: 13368 | Get or set file date and time
2018-12-17T22:26:29.324353898Z 87 PC: 1336c | Get or set file date and time
2018-12-17T22:26:29.3257787Z 62 PC: 13370 | Close file
2018-12-17T22:26:29.33353963Z 67 PC: 1337b | Get or set file attributes
2018-12-17T22:26:29.343689374Z 79 PC: 13389 | Find next file
2018-12-17T22:26:29.346348396Z 67 PC: 132d9 | Get or set file attributes
2018-12-17T22:26:29.352158116Z 67 PC: 132e6 | Get or set file attributes
2018-12-17T22:26:29.36228757Z 61 PC: 132eb | Open file (Filename = '[email protected]nS ')
2018-12-17T22:26:29.373441751Z 63 PC: 13300 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:26:29.379713963Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.382178333Z 62 PC: 13370 | Close file
2018-12-17T22:26:29.384582095Z 67 PC: 1337b | Get or set file attributes
2018-12-17T22:26:29.394332961Z 79 PC: 13389 | Find next file
2018-12-17T22:26:29.397185148Z 67 PC: 132d9 | Get or set file attributes
2018-12-17T22:26:29.403017306Z 67 PC: 132e6 | Get or set file attributes
2018-12-17T22:26:29.412687327Z 61 PC: 132eb | Open file (Filename = '[email protected]nS ')
2018-12-17T22:26:29.419318269Z 63 PC: 13300 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:26:29.426488593Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.427906303Z 62 PC: 13370 | Close file
2018-12-17T22:26:29.429861311Z 67 PC: 1337b | Get or set file attributes
2018-12-17T22:26:29.440591989Z 79 PC: 13389 | Find next file
2018-12-17T22:26:29.443440447Z 67 PC: 132d9 | Get or set file attributes
2018-12-17T22:26:29.454064283Z 67 PC: 132e6 | Get or set file attributes
2018-12-17T22:26:29.463995605Z 61 PC: 132eb | Open file (Filename = '[email protected]nS ')
2018-12-17T22:26:29.470356703Z 63 PC: 13300 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:26:29.476458581Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.47867622Z 62 PC: 13370 | Close file
2018-12-17T22:26:29.480185363Z 67 PC: 1337b | Get or set file attributes
2018-12-17T22:26:29.489840188Z 79 PC: 13389 | Find next file
2018-12-17T22:26:29.49318526Z 67 PC: 132d9 | Get or set file attributes
2018-12-17T22:26:29.498645379Z 67 PC: 132e6 | Get or set file attributes
2018-12-17T22:26:29.511528028Z 61 PC: 132eb | Open file (Filename = '[email protected]nS ')
2018-12-17T22:26:29.519191703Z 63 PC: 13300 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:26:29.525455927Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.5267779Z 62 PC: 13370 | Close file
2018-12-17T22:26:29.529480767Z 67 PC: 1337b | Get or set file attributes
2018-12-17T22:26:29.539020925Z 79 PC: 13389 | Find next file
2018-12-17T22:26:29.541778533Z 67 PC: 132d9 | Get or set file attributes
2018-12-17T22:26:29.548184068Z 67 PC: 132e6 | Get or set file attributes
2018-12-17T22:26:29.558199663Z 61 PC: 132eb | Open file (Filename = '[email protected]nS ')
2018-12-17T22:26:29.569702818Z 63 PC: 13300 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:26:29.57810836Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.579680896Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.581312392Z 64 PC: 1334d | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:26:29.585098591Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.586477381Z 64 PC: 1335c | Write file or device (Write 370 bytes on handle 5)
2018-12-17T22:26:29.594921454Z 87 PC: 13368 | Get or set file date and time
2018-12-17T22:26:29.596917708Z 87 PC: 1336c | Get or set file date and time
2018-12-17T22:26:29.598282107Z 62 PC: 13370 | Close file
2018-12-17T22:26:29.605571868Z 67 PC: 1337b | Get or set file attributes
2018-12-17T22:26:29.616187912Z 79 PC: 13389 | Find next file
2018-12-17T22:26:29.618936779Z 67 PC: 132d9 | Get or set file attributes
2018-12-17T22:26:29.624498451Z 67 PC: 132e6 | Get or set file attributes
2018-12-17T22:26:29.635267457Z 61 PC: 132eb | Open file (Filename = '[email protected]nS ')
2018-12-17T22:26:29.646733507Z 63 PC: 13300 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:26:29.652902015Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.654304841Z 62 PC: 13370 | Close file
2018-12-17T22:26:29.656112203Z 67 PC: 1337b | Get or set file attributes
2018-12-17T22:26:29.665944593Z 79 PC: 13389 | Find next file
2018-12-17T22:26:29.668713358Z 67 PC: 132d9 | Get or set file attributes
2018-12-17T22:26:29.674743695Z 67 PC: 132e6 | Get or set file attributes
2018-12-17T22:26:29.684225811Z 61 PC: 132eb | Open file (Filename = '[email protected]nS ')
2018-12-17T22:26:29.690699448Z 63 PC: 13300 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:26:29.700250563Z 66 PC: 133b9 | Move file pointer
2018-12-17T22:26:29.702187831Z 62 PC: 13370 | Close file
2018-12-17T22:26:29.7044491Z 67 PC: 1337b | Get or set file attributes
2018-12-17T22:26:29.718032194Z 79 PC: 13389 | Find next file
2018-12-17T22:26:29.720354335Z 26 PC: 13395 | Set disk transfer address
2018-12-17T22:26:29.721494717Z 37 PC: 1339c | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:26:29.72334897Z 9 PC: 12a86 | Display string (String= 'Goat file (COM/....). Size=00000834h/0000002100d bytes. ')
2018-12-17T22:26:29.728614276Z 48 PC: 12a8f | Get DOS version
2018-12-17T22:26:29.729769604Z 61 PC: 12b5c | Open file (Filename = '')
2018-12-17T22:26:29.737721397Z 93 PC: 12afe | File sharing functions
2018-12-17T22:26:29.739525191Z 9 PC: 12a86 | Display string (String= 'Size change=0172h/00370d. ')
2018-12-17T22:26:29.743397654Z 76 PC: 12ae3 | Terminate with return code (Return code = '1')