Sample viewer

vx.netlux.org/Virus.DOS.Companion.Baby.236

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:28:06.691803608Z 74 PC: 12a4e | Reallocate memory
2018-12-17T22:28:06.693512458Z 75 PC: 12a6c | Execute program
2018-12-17T22:28:06.696701006Z 26 PC: 12a83 | Set disk transfer address
2018-12-17T22:28:06.698133852Z 78 PC: 12a9a | Find first file
2018-12-17T22:28:06.706239377Z 61 PC: 12aa4 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:28:06.714112343Z 63 PC: 12aaf | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:28:06.721054386Z 62 PC: 12ab3 | Close file
2018-12-17T22:28:06.722987417Z 86 PC: 12af7 | Rename file
2018-12-17T22:28:06.741738724Z 60 PC: 12b00 | Create or truncate file
2018-12-17T22:28:06.753598523Z 64 PC: 12b0c | Write file or device (Write 236 bytes on handle 5)
2018-12-17T22:28:06.757615604Z 62 PC: 12b10 | Close file
2018-12-17T22:28:06.780749564Z 79 PC: 12a9a | Find next file
2018-12-17T22:28:06.783532767Z 61 PC: 12aa4 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:28:06.790418203Z 63 PC: 12aaf | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:28:06.797672688Z 62 PC: 12ab3 | Close file
2018-12-17T22:28:06.799992579Z 86 PC: 12af7 | Rename file
2018-12-17T22:28:06.813497942Z 60 PC: 12b00 | Create or truncate file
2018-12-17T22:28:06.825583667Z 64 PC: 12b0c | Write file or device (Write 236 bytes on handle 5)
2018-12-17T22:28:06.829775251Z 62 PC: 12b10 | Close file
2018-12-17T22:28:06.838810647Z 79 PC: 12a9a | Find next file
2018-12-17T22:28:06.843122151Z 61 PC: 12aa4 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:28:06.851017144Z 63 PC: 12aaf | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:28:06.858143857Z 62 PC: 12ab3 | Close file
2018-12-17T22:28:06.860015644Z 86 PC: 12af7 | Rename file
2018-12-17T22:28:06.872741981Z 60 PC: 12b00 | Create or truncate file
2018-12-17T22:28:06.884858742Z 64 PC: 12b0c | Write file or device (Write 236 bytes on handle 5)
2018-12-17T22:28:06.889083655Z 62 PC: 12b10 | Close file
2018-12-17T22:28:06.898548665Z 79 PC: 12a9a | Find next file
2018-12-17T22:28:06.901650771Z 61 PC: 12aa4 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:28:06.909686369Z 63 PC: 12aaf | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:28:06.917644089Z 62 PC: 12ab3 | Close file
2018-12-17T22:28:06.919670206Z 86 PC: 12af7 | Rename file
2018-12-17T22:28:06.932148371Z 60 PC: 12b00 | Create or truncate file
2018-12-17T22:28:06.944496747Z 64 PC: 12b0c | Write file or device (Write 236 bytes on handle 5)
2018-12-17T22:28:06.948532281Z 62 PC: 12b10 | Close file
2018-12-17T22:28:06.957450075Z 79 PC: 12a9a | Find next file
2018-12-17T22:28:06.961298352Z 61 PC: 12aa4 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:28:06.974605219Z 63 PC: 12aaf | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:28:06.981270157Z 62 PC: 12ab3 | Close file
2018-12-17T22:28:06.983415963Z 86 PC: 12af7 | Rename file
2018-12-17T22:28:07.282013515Z 60 PC: 12b00 | Create or truncate file
2018-12-17T22:28:07.299511077Z 64 PC: 12b0c | Write file or device (Write 236 bytes on handle 5)
2018-12-17T22:28:07.302271225Z 62 PC: 12b10 | Close file
2018-12-17T22:28:07.307872377Z 79 PC: 12a9a | Find next file
2018-12-17T22:28:07.309796032Z 61 PC: 12aa4 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:28:07.317701744Z 63 PC: 12aaf | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:28:07.325380833Z 62 PC: 12ab3 | Close file
2018-12-17T22:28:07.327638841Z 86 PC: 12af7 | Rename file
2018-12-17T22:28:07.339523667Z 60 PC: 12b00 | Create or truncate file
2018-12-17T22:28:07.350672767Z 64 PC: 12b0c | Write file or device (Write 236 bytes on handle 5)
2018-12-17T22:28:07.353676639Z 62 PC: 12b10 | Close file
2018-12-17T22:28:07.35993284Z 79 PC: 12a9a | Find next file
2018-12-17T22:28:07.362516081Z 61 PC: 12aa4 | Open file (Filename = 'PAH.COM')
2018-12-17T22:28:07.375822226Z 63 PC: 12aaf | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:28:07.383148331Z 62 PC: 12ab3 | Close file
2018-12-17T22:28:07.385558773Z 86 PC: 12af7 | Rename file
2018-12-17T22:28:07.398649026Z 60 PC: 12b00 | Create or truncate file
2018-12-17T22:28:07.411007957Z 64 PC: 12b0c | Write file or device (Write 236 bytes on handle 5)
2018-12-17T22:28:07.415550797Z 62 PC: 12b10 | Close file
2018-12-17T22:28:07.424632209Z 79 PC: 12a9a | Find next file
2018-12-17T22:28:07.427623996Z 78 PC: 12a9a | Find first file
2018-12-17T22:28:07.4412148Z 61 PC: 12aa4 | Open file (Filename = 'TEST.EXE')
2018-12-17T22:28:07.449629579Z 63 PC: 12aaf | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:28:07.456983872Z 62 PC: 12ab3 | Close file
2018-12-17T22:28:07.459021124Z 86 PC: 12af7 | Rename file
2018-12-17T22:28:07.472943066Z 60 PC: 12b00 | Create or truncate file
2018-12-17T22:28:07.485307666Z 64 PC: 12b0c | Write file or device (Write 236 bytes on handle 5)
2018-12-17T22:28:07.489416027Z 62 PC: 12b10 | Close file
2018-12-17T22:28:07.499296949Z 79 PC: 12a9a | Find next file
2018-12-17T22:28:07.502254765Z 76 PC: 12a94 | Terminate with return code (Return code = '2')