Sample viewer

vx.netlux.org/Virus.DOS.G2.Empire.358

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:27:33.75179125Z 71 PC: 12a57 | Get current directory
2018-12-17T22:27:33.7570658Z 26 PC: 12a5f | Set disk transfer address
2018-12-17T22:27:33.759396334Z 53 PC: 12a66 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:27:33.761395594Z 37 PC: 12a6f | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T22:27:33.763383471Z 53 PC: 12a75 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:27:33.766974834Z 37 PC: 12a7f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:27:33.768976869Z 78 PC: 12acc | Find first file
2018-12-17T22:27:33.776062028Z 67 PC: 12ae0 | Get or set file attributes
2018-12-17T22:27:33.783447105Z 67 PC: 12aeb | Get or set file attributes
2018-12-17T22:27:33.832201129Z 61 PC: 12af3 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:27:33.840250177Z 87 PC: 12af9 | Get or set file date and time
2018-12-17T22:27:33.842978986Z 63 PC: 12b05 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:27:33.860865902Z 66 PC: 12b0c | Move file pointer
2018-12-17T22:27:33.862797676Z 87 PC: 12b68 | Get or set file date and time
2018-12-17T22:27:33.865444114Z 62 PC: 12b6b | Close file
2018-12-17T22:27:33.884943295Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T22:27:33.897264275Z 79 PC: 12acc | Find next file
2018-12-17T22:27:33.900483061Z 67 PC: 12ae0 | Get or set file attributes
2018-12-17T22:27:33.907553719Z 67 PC: 12aeb | Get or set file attributes
2018-12-17T22:27:33.918435657Z 61 PC: 12af3 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:27:33.925930502Z 87 PC: 12af9 | Get or set file date and time
2018-12-17T22:27:33.928847179Z 63 PC: 12b05 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:27:33.950512931Z 66 PC: 12b0c | Move file pointer
2018-12-17T22:27:33.952541953Z 87 PC: 12b68 | Get or set file date and time
2018-12-17T22:27:33.971350406Z 62 PC: 12b6b | Close file
2018-12-17T22:27:34.13407636Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T22:27:34.154112974Z 79 PC: 12acc | Find next file
2018-12-17T22:27:34.158104845Z 67 PC: 12ae0 | Get or set file attributes
2018-12-17T22:27:34.165146201Z 67 PC: 12aeb | Get or set file attributes
2018-12-17T22:27:34.185476486Z 61 PC: 12af3 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:27:34.194632566Z 87 PC: 12af9 | Get or set file date and time
2018-12-17T22:27:34.196605636Z 63 PC: 12b05 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:27:34.204080354Z 66 PC: 12b0c | Move file pointer
2018-12-17T22:27:34.206317614Z 87 PC: 12b68 | Get or set file date and time
2018-12-17T22:27:34.208516331Z 62 PC: 12b6b | Close file
2018-12-17T22:27:34.226022034Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T22:27:34.242162752Z 79 PC: 12acc | Find next file
2018-12-17T22:27:34.252001946Z 67 PC: 12ae0 | Get or set file attributes
2018-12-17T22:27:34.259430984Z 67 PC: 12aeb | Get or set file attributes
2018-12-17T22:27:34.290345Z 61 PC: 12af3 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:27:34.298569945Z 87 PC: 12af9 | Get or set file date and time
2018-12-17T22:27:34.300534354Z 63 PC: 12b05 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:27:34.307646288Z 66 PC: 12b0c | Move file pointer
2018-12-17T22:27:34.310274662Z 87 PC: 12b68 | Get or set file date and time
2018-12-17T22:27:34.32769888Z 62 PC: 12b6b | Close file
2018-12-17T22:27:34.351925735Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T22:27:34.3822773Z 79 PC: 12acc | Find next file
2018-12-17T22:27:34.386278954Z 67 PC: 12ae0 | Get or set file attributes
2018-12-17T22:27:34.392930968Z 67 PC: 12aeb | Get or set file attributes
2018-12-17T22:27:34.421761852Z 61 PC: 12af3 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:27:34.430254643Z 87 PC: 12af9 | Get or set file date and time
2018-12-17T22:27:34.432229341Z 63 PC: 12b05 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:27:34.439516925Z 66 PC: 12b0c | Move file pointer
2018-12-17T22:27:34.442550359Z 87 PC: 12b68 | Get or set file date and time
2018-12-17T22:27:34.444654289Z 62 PC: 12b6b | Close file
2018-12-17T22:27:34.48391687Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T22:27:34.525131669Z 79 PC: 12acc | Find next file
2018-12-17T22:27:34.5282783Z 67 PC: 12ae0 | Get or set file attributes
2018-12-17T22:27:34.535033817Z 67 PC: 12aeb | Get or set file attributes
2018-12-17T22:27:34.597553386Z 61 PC: 12af3 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:27:34.602019081Z 87 PC: 12af9 | Get or set file date and time
2018-12-17T22:27:34.6033016Z 63 PC: 12b05 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:27:34.608118534Z 66 PC: 12b0c | Move file pointer
2018-12-17T22:27:34.609398765Z 87 PC: 12b68 | Get or set file date and time
2018-12-17T22:27:34.610998605Z 62 PC: 12b6b | Close file
2018-12-17T22:27:34.664253813Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T22:27:34.72484155Z 79 PC: 12acc | Find next file
2018-12-17T22:27:34.728573402Z 67 PC: 12ae0 | Get or set file attributes
2018-12-17T22:27:34.735732053Z 67 PC: 12aeb | Get or set file attributes
2018-12-17T22:27:34.796462535Z 61 PC: 12af3 | Open file (Filename = 'PAH.COM')
2018-12-17T22:27:34.804441659Z 87 PC: 12af9 | Get or set file date and time
2018-12-17T22:27:34.806447961Z 63 PC: 12b05 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:27:34.8173906Z 66 PC: 12b0c | Move file pointer
2018-12-17T22:27:34.82451839Z 87 PC: 12b68 | Get or set file date and time
2018-12-17T22:27:34.827993469Z 62 PC: 12b6b | Close file
2018-12-17T22:27:34.910802654Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T22:27:34.997298162Z 79 PC: 12acc | Find next file
2018-12-17T22:27:35.001037828Z 67 PC: 12ae0 | Get or set file attributes
2018-12-17T22:27:35.009339856Z 67 PC: 12aeb | Get or set file attributes
2018-12-17T22:27:35.105448165Z 61 PC: 12af3 | Open file (Filename = 'TEST.COM')
2018-12-17T22:27:35.113558582Z 87 PC: 12af9 | Get or set file date and time
2018-12-17T22:27:35.116563155Z 63 PC: 12b05 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:27:35.135706704Z 66 PC: 12b0c | Move file pointer
2018-12-17T22:27:35.139881273Z 87 PC: 12b68 | Get or set file date and time
2018-12-17T22:27:35.143308613Z 62 PC: 12b6b | Close file
2018-12-17T22:27:35.261709236Z 67 PC: 12b6f | Get or set file attributes
2018-12-17T22:27:35.305592144Z 79 PC: 12acc | Find next file
2018-12-17T22:27:35.309706263Z 59 PC: 12aa5 | Change current directory
2018-12-17T22:27:35.32225234Z 59 PC: 12ab3 | Change current directory
2018-12-17T22:27:35.327472138Z 37 PC: 12ab9 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:27:35.329475811Z 26 PC: 12abf | Set disk transfer address