Sample viewer

vx.netlux.org/Virus.DOS.Flow.198

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:29:38.735572767Z 26 PC: 12a5f | Set disk transfer address
2018-12-17T22:29:38.73721209Z 78 PC: 12a67 | Find first file
2018-12-17T22:29:38.744934412Z 61 PC: 12a72 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:29:38.752158985Z 63 PC: 12a7f | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:29:38.7592426Z 66 PC: 12a91 | Move file pointer
2018-12-17T22:29:38.761585551Z 63 PC: 12a9c | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:29:38.764350937Z 66 PC: 12aa5 | Move file pointer
2018-12-17T22:29:38.76594624Z 64 PC: 12ab8 | Write file or device (Write 198 bytes on handle 5)
2018-12-17T22:29:38.783486402Z 66 PC: 12ac1 | Move file pointer
2018-12-17T22:29:38.785422275Z 64 PC: 12acc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:29:38.793022736Z 62 PC: 12ad0 | Close file
2018-12-17T22:29:38.80455008Z 79 PC: 12ad4 | Find next file
2018-12-17T22:29:38.808939223Z 61 PC: 12a72 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:29:38.816729715Z 63 PC: 12a7f | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:29:38.825286086Z 66 PC: 12a91 | Move file pointer
2018-12-17T22:29:38.827240904Z 63 PC: 12a9c | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:29:38.830373188Z 66 PC: 12aa5 | Move file pointer
2018-12-17T22:29:38.832662933Z 64 PC: 12ab8 | Write file or device (Write 198 bytes on handle 5)
2018-12-17T22:29:38.848558431Z 66 PC: 12ac1 | Move file pointer
2018-12-17T22:29:38.850163129Z 64 PC: 12acc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:29:38.853105093Z 62 PC: 12ad0 | Close file
2018-12-17T22:29:38.862653683Z 79 PC: 12ad4 | Find next file
2018-12-17T22:29:38.866134169Z 61 PC: 12a72 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:29:38.873891376Z 63 PC: 12a7f | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:29:38.883389645Z 66 PC: 12a91 | Move file pointer
2018-12-17T22:29:38.885057579Z 63 PC: 12a9c | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:29:38.887787797Z 66 PC: 12aa5 | Move file pointer
2018-12-17T22:29:38.891325411Z 64 PC: 12ab8 | Write file or device (Write 198 bytes on handle 5)
2018-12-17T22:29:38.894954444Z 66 PC: 12ac1 | Move file pointer
2018-12-17T22:29:38.896786715Z 64 PC: 12acc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:29:38.900277715Z 62 PC: 12ad0 | Close file
2018-12-17T22:29:38.910952281Z 79 PC: 12ad4 | Find next file
2018-12-17T22:29:38.912931334Z 61 PC: 12a72 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:29:38.917242295Z 63 PC: 12a7f | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:29:38.922328657Z 66 PC: 12a91 | Move file pointer
2018-12-17T22:29:38.923581966Z 63 PC: 12a9c | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:29:38.925680446Z 66 PC: 12aa5 | Move file pointer
2018-12-17T22:29:38.934761135Z 64 PC: 12ab8 | Write file or device (Write 198 bytes on handle 5)
2018-12-17T22:29:38.938031322Z 66 PC: 12ac1 | Move file pointer
2018-12-17T22:29:38.940595139Z 64 PC: 12acc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:29:38.944639715Z 62 PC: 12ad0 | Close file
2018-12-17T22:29:38.954710069Z 79 PC: 12ad4 | Find next file
2018-12-17T22:29:38.958255541Z 61 PC: 12a72 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:29:38.967930594Z 63 PC: 12a7f | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:29:38.9770201Z 66 PC: 12a91 | Move file pointer
2018-12-17T22:29:38.97927948Z 63 PC: 12a9c | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:29:38.983473503Z 66 PC: 12aa5 | Move file pointer
2018-12-17T22:29:38.985322155Z 64 PC: 12ab8 | Write file or device (Write 198 bytes on handle 5)
2018-12-17T22:29:38.988877395Z 66 PC: 12ac1 | Move file pointer
2018-12-17T22:29:38.991990622Z 64 PC: 12acc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:29:38.996065452Z 62 PC: 12ad0 | Close file
2018-12-17T22:29:39.005084019Z 79 PC: 12ad4 | Find next file
2018-12-17T22:29:39.009214903Z 61 PC: 12a72 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:29:39.017547408Z 63 PC: 12a7f | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:29:39.026218583Z 66 PC: 12a91 | Move file pointer
2018-12-17T22:29:39.028448272Z 63 PC: 12a9c | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:29:39.032090381Z 66 PC: 12aa5 | Move file pointer
2018-12-17T22:29:39.034581602Z 64 PC: 12ab8 | Write file or device (Write 198 bytes on handle 5)
2018-12-17T22:29:39.043389113Z 66 PC: 12ac1 | Move file pointer
2018-12-17T22:29:39.045372964Z 64 PC: 12acc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:29:39.053228616Z 62 PC: 12ad0 | Close file
2018-12-17T22:29:39.063207714Z 79 PC: 12ad4 | Find next file
2018-12-17T22:29:39.067343567Z 61 PC: 12a72 | Open file (Filename = 'PAH.COM')
2018-12-17T22:29:39.075281733Z 63 PC: 12a7f | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:29:39.083031698Z 66 PC: 12a91 | Move file pointer
2018-12-17T22:29:39.08571315Z 63 PC: 12a9c | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:29:39.089136809Z 66 PC: 12aa5 | Move file pointer
2018-12-17T22:29:39.091398863Z 64 PC: 12ab8 | Write file or device (Write 198 bytes on handle 5)
2018-12-17T22:29:39.095499896Z 66 PC: 12ac1 | Move file pointer
2018-12-17T22:29:39.09821415Z 64 PC: 12acc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:29:39.101880363Z 62 PC: 12ad0 | Close file
2018-12-17T22:29:39.112987961Z 79 PC: 12ad4 | Find next file
2018-12-17T22:29:39.116804999Z 61 PC: 12a72 | Open file (Filename = 'TEST.COM')
2018-12-17T22:29:39.127181197Z 63 PC: 12a7f | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:29:39.131254883Z 62 PC: 12ad0 | Close file
2018-12-17T22:29:39.133559106Z 79 PC: 12ad4 | Find next file
2018-12-17T22:29:39.136665682Z 26 PC: 12add | Set disk transfer address
2018-12-17T22:29:39.138507673Z 26 PC: 12a5f | Set disk transfer address
2018-12-17T22:29:39.140279057Z 78 PC: 12a67 | Find first file
2018-12-17T22:29:39.142362527Z 26 PC: 12add | Set disk transfer address
2018-12-17T22:29:39.143782755Z 26 PC: 12a5f | Set disk transfer address
2018-12-17T22:29:39.145956305Z 78 PC: 12a67 | Find first file
2018-12-17T22:29:39.150525248Z 26 PC: 12add | Set disk transfer address
2018-12-17T22:29:39.151893069Z 26 PC: 11f | Set disk transfer address
2018-12-17T22:29:39.15437693Z 78 PC: 127 | Find first file
2018-12-17T22:29:39.159612739Z 26 PC: 19d | Set disk transfer address
2018-12-17T22:29:39.161363824Z 26 PC: 11f | Set disk transfer address
2018-12-17T22:29:39.164095155Z 10 PC: 127 | Buffered keyboard input