Sample viewer

vx.netlux.org/Virus.DOS.Hafen.1640

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:40:31.305664059Z 47 PC: 15713 | Get disk transfer address
2018-12-17T22:40:31.307761309Z 26 PC: 15726 | Set disk transfer address
2018-12-17T22:40:31.311298142Z 78 PC: 15730 | Find first file
2018-12-17T22:40:31.31816565Z 26 PC: 1577b | Set disk transfer address
2018-12-17T22:40:31.319897283Z 61 PC: 15795 | Open file
2018-12-17T22:40:31.330311353Z 63 PC: 157aa | Read file or device (Read 24 bytes on handle 5)
2018-12-17T22:40:31.333380537Z 87 PC: 157b3 | Get or set file date and time
2018-12-17T22:40:31.33622511Z 66 PC: 157d8 | Move file pointer
2018-12-17T22:40:31.338198727Z 63 PC: 157e7 | Read file or device (Read 8 bytes on handle 5)
2018-12-17T22:40:31.341669186Z 62 PC: 158ac | Close file
2018-12-17T22:40:31.344018318Z 47 PC: 15713 | Get disk transfer address
2018-12-17T22:40:31.346012463Z 26 PC: 15726 | Set disk transfer address
2018-12-17T22:40:31.34766126Z 78 PC: 15730 | Find first file
2018-12-17T22:40:31.357876677Z 79 PC: 15758 | Find next file
2018-12-17T22:40:31.361484443Z 26 PC: 1577b | Set disk transfer address
2018-12-17T22:40:31.363240993Z 61 PC: 15795 | Open file
2018-12-17T22:40:31.3713487Z 63 PC: 157aa | Read file or device (Read 24 bytes on handle 5)
2018-12-17T22:40:31.377606013Z 87 PC: 157b3 | Get or set file date and time
2018-12-17T22:40:31.381319518Z 66 PC: 157d8 | Move file pointer
2018-12-17T22:40:31.382760845Z 63 PC: 157e7 | Read file or device (Read 8 bytes on handle 5)
2018-12-17T22:40:31.388963946Z 64 PC: 1582e | Write file or device (Write 1636 bytes on handle 5)
2018-12-17T22:40:31.726956243Z 64 PC: 1583d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:40:31.730706727Z 66 PC: 15886 | Move file pointer
2018-12-17T22:40:31.732810148Z 64 PC: 15895 | Write file or device (Write 24 bytes on handle 5)
2018-12-17T22:40:31.737284873Z 87 PC: 158a0 | Get or set file date and time
2018-12-17T22:40:31.739609609Z 62 PC: 158ac | Close file
2018-12-17T22:40:31.749983584Z 47 PC: 153d0 | Get disk transfer address
2018-12-17T22:40:31.751842004Z 26 PC: 153e3 | Set disk transfer address
2018-12-17T22:40:31.754200043Z 78 PC: 153ed | Find first file
2018-12-17T22:40:31.762351013Z 26 PC: 1542f | Set disk transfer address
2018-12-17T22:40:31.764388499Z 61 PC: 1528d | Open file (Filename = 'C:\DOS\EDIT.COM')
2018-12-17T22:40:31.773474625Z 63 PC: 152a0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:40:31.779759119Z 66 PC: 152f4 | Move file pointer
2018-12-17T22:40:31.781752903Z 87 PC: 15304 | Get or set file date and time
2018-12-17T22:40:31.784734664Z 64 PC: 15315 | Write file or device (Write 792 bytes on handle 5)
2018-12-17T22:40:31.793231272Z 64 PC: 15324 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:40:31.796519439Z 66 PC: 15331 | Move file pointer
2018-12-17T22:40:31.798971985Z 64 PC: 15340 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:40:31.80501225Z 87 PC: 1534b | Get or set file date and time
2018-12-17T22:40:31.806724476Z 62 PC: 15353 | Close file
2018-12-17T22:40:31.814181111Z 9 PC: 12a54 | Display string (Could not find end pointer)
2018-12-17T22:40:31.816664185Z 76 PC: 12a59 | Terminate with return code (Return code = '0')