Sample viewer

vx.netlux.org/Virus.DOS.Mini.95.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:38:23.955605474Z 78 PC: 12a65 | Find first file
2018-12-17T22:38:23.962482869Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:38:23.968804361Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:38:23.975128122Z 66 PC: 12a8a | Move file pointer
2018-12-17T22:38:23.977677586Z 64 PC: 12a91 | Write file or device (Write 502 bytes on handle 5)
2018-12-17T22:38:23.980368957Z 62 PC: 12a95 | Close file
2018-12-17T22:38:25.07834533Z 79 PC: 12a65 | Find next file
2018-12-17T22:38:25.081667996Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:38:25.088349275Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:38:25.094637918Z 66 PC: 12a8a | Move file pointer
2018-12-17T22:38:25.095907785Z 64 PC: 12a91 | Write file or device (Write 122 bytes on handle 5)
2018-12-17T22:38:25.099017392Z 62 PC: 12a95 | Close file
2018-12-17T22:38:25.131797299Z 79 PC: 12a65 | Find next file
2018-12-17T22:38:25.135181527Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:38:25.142030533Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:38:25.148692235Z 66 PC: 12a8a | Move file pointer
2018-12-17T22:38:25.150071378Z 64 PC: 12a91 | Write file or device (Write 187 bytes on handle 5)
2018-12-17T22:38:25.159878208Z 62 PC: 12a95 | Close file
2018-12-17T22:38:25.167570944Z 79 PC: 12a65 | Find next file
2018-12-17T22:38:25.170251392Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:38:25.177445815Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:38:25.18269488Z 66 PC: 12a8a | Move file pointer
2018-12-17T22:38:25.183702129Z 64 PC: 12a91 | Write file or device (Write 124 bytes on handle 5)
2018-12-17T22:38:25.186724557Z 62 PC: 12a95 | Close file
2018-12-17T22:38:25.194568741Z 79 PC: 12a65 | Find next file
2018-12-17T22:38:25.197061832Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:38:25.214671378Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:38:25.221857271Z 66 PC: 12a8a | Move file pointer
2018-12-17T22:38:25.223056216Z 64 PC: 12a91 | Write file or device (Write 124 bytes on handle 5)
2018-12-17T22:38:25.225863254Z 62 PC: 12a95 | Close file
2018-12-17T22:38:25.235484358Z 79 PC: 12a65 | Find next file
2018-12-17T22:38:25.237900385Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:38:25.24411425Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:38:25.265518018Z 66 PC: 12a8a | Move file pointer
2018-12-17T22:38:25.266797289Z 64 PC: 12a91 | Write file or device (Write 596 bytes on handle 5)
2018-12-17T22:38:25.274651032Z 62 PC: 12a95 | Close file
2018-12-17T22:38:25.282534578Z 79 PC: 12a65 | Find next file
2018-12-17T22:38:25.284955457Z 61 PC: 12a70 | Open file (Filename = '')
2018-12-17T22:38:25.291237215Z 63 PC: 12a7b | Read file or device (Read 65530 bytes on handle 5)
2018-12-17T22:38:25.298145454Z 66 PC: 12a8a | Move file pointer
2018-12-17T22:38:25.299335671Z 64 PC: 12a91 | Write file or device (Write 124 bytes on handle 5)
2018-12-17T22:38:25.301766972Z 62 PC: 12a95 | Close file
2018-12-17T22:38:25.309742493Z 79 PC: 12a65 | Find next file
2018-12-17T22:38:25.31180238Z 77 PC: 11fe0 | Get program return code
2018-12-17T22:38:25.312869099Z 72 PC: 12174 | Allocate memory
2018-12-17T22:38:25.315075954Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:38:25.316964277Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:38:25.320503642Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:38:25.322966938Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:38:25.324891101Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:38:25.326898645Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:38:25.329479528Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:38:25.331536083Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:38:25.333600211Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:38:25.335602304Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:38:25.3373539Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:38:25.340429542Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:38:25.34224728Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:38:25.343882702Z 2 PC: 1268d | Character output (Char = '63')
2018-12-17T22:38:25.345281453Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:38:25.348011194Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:38:25.350031159Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T22:38:25.351933411Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:38:25.354414098Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:38:25.356457269Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:38:25.358374852Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:38:25.360721539Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:38:25.362709237Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:38:25.364652396Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:38:25.367574064Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:38:25.369630508Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:38:25.372164348Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:38:25.375770116Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:38:25.377990941Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:38:25.379872635Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:38:25.381939642Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:38:25.384021105Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:38:25.385852073Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:38:25.388155676Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:38:25.390800243Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:38:25.392842748Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:38:25.395042697Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:38:25.39700547Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:38:25.413825212Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:38:25.415317679Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:38:25.417756439Z 2 PC: 1268d | Character output (Char = '4f')
2018-12-17T22:38:25.419961787Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:38:25.421882651Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:38:25.426258368Z 2 PC: 1268d | Character output (Char = '41')
2018-12-17T22:38:25.428183757Z 2 PC: 1268d | Character output (Char = '4e')
2018-12-17T22:38:25.430160679Z 2 PC: 1268d | Character output (Char = '44')
2018-12-17T22:38:25.432640471Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T22:38:25.434851498Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:38:25.43698511Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:38:25.439702577Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:38:25.442438901Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:38:25.444644068Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:38:25.446938837Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:38:25.448949342Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:38:25.451012546Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:38:25.453160273Z 2 PC: 1268d | Character output (Char = '68')
2018-12-17T22:38:25.455054531Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:38:25.458259563Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:38:25.461113531Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:38:25.481793599Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:38:25.48395996Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:38:25.486449683Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:38:25.488315466Z 2 PC: 1268d | Character output (Char = '0a')