Sample viewer

vx.netlux.org/Virus.DOS.Xmark.611

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:41:05.429444007Z 26 PC: 12b7e | Set disk transfer address
2018-12-17T22:41:05.43132381Z 78 PC: 12b95 | Find first file
2018-12-17T22:41:05.43805405Z 61 PC: 12ba8 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:41:05.444104073Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:41:05.450817428Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:05.452378645Z 64 PC: 12c5a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:41:05.455327119Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:05.458955329Z 64 PC: 12c5a | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:41:05.768568056Z 64 PC: 12c5a | Write file or device (Write 319 bytes on handle 5)
2018-12-17T22:41:05.773656415Z 62 PC: 12bfb | Close file
2018-12-17T22:41:05.968370974Z 79 PC: 12b95 | Find next file
2018-12-17T22:41:05.970429386Z 61 PC: 12ba8 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:41:05.978354866Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:41:05.984732143Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:05.986808658Z 64 PC: 12c5a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:41:05.989218929Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:05.991656957Z 64 PC: 12c5a | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:41:05.994615161Z 64 PC: 12c5a | Write file or device (Write 319 bytes on handle 5)
2018-12-17T22:41:06.099773042Z 62 PC: 12bfb | Close file
2018-12-17T22:41:06.108145466Z 79 PC: 12b95 | Find next file
2018-12-17T22:41:06.111286258Z 61 PC: 12ba8 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:41:06.123369202Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:41:06.140002437Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:06.14486873Z 64 PC: 12c5a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:41:06.148218079Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:06.162008784Z 64 PC: 12c5a | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:41:06.168366909Z 64 PC: 12c5a | Write file or device (Write 319 bytes on handle 5)
2018-12-17T22:41:06.179319193Z 62 PC: 12bfb | Close file
2018-12-17T22:41:06.195483863Z 79 PC: 12b95 | Find next file
2018-12-17T22:41:06.199138636Z 61 PC: 12ba8 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:41:06.206355421Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:41:06.212831934Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:06.215763181Z 64 PC: 12c5a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:41:06.218761413Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:06.221653328Z 64 PC: 12c5a | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:41:06.227307225Z 64 PC: 12c5a | Write file or device (Write 319 bytes on handle 5)
2018-12-17T22:41:06.233980381Z 62 PC: 12bfb | Close file
2018-12-17T22:41:06.242349713Z 79 PC: 12b95 | Find next file
2018-12-17T22:41:06.245874208Z 61 PC: 12ba8 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:41:06.253307341Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:41:06.260236577Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:06.262668565Z 64 PC: 12c5a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:41:06.26595141Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:06.268646197Z 64 PC: 12c5a | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:41:06.272362847Z 64 PC: 12c5a | Write file or device (Write 319 bytes on handle 5)
2018-12-17T22:41:06.281374065Z 62 PC: 12bfb | Close file
2018-12-17T22:41:06.289588397Z 79 PC: 12b95 | Find next file
2018-12-17T22:41:06.292843443Z 61 PC: 12ba8 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:41:06.300388907Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:41:06.306659914Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:06.307921982Z 64 PC: 12c5a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:41:06.311369525Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:06.313962871Z 64 PC: 12c5a | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:41:06.32263011Z 64 PC: 12c5a | Write file or device (Write 319 bytes on handle 5)
2018-12-17T22:41:06.331586031Z 62 PC: 12bfb | Close file
2018-12-17T22:41:06.339575446Z 79 PC: 12b95 | Find next file
2018-12-17T22:41:06.342081147Z 61 PC: 12ba8 | Open file (Filename = 'PAH.COM')
2018-12-17T22:41:06.349716742Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:41:06.379919476Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:06.381429784Z 64 PC: 12c5a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:41:06.385467077Z 66 PC: 12c55 | Move file pointer
2018-12-17T22:41:06.388079987Z 64 PC: 12c5a | Write file or device (Write 292 bytes on handle 5)
2018-12-17T22:41:06.391378077Z 64 PC: 12c5a | Write file or device (Write 319 bytes on handle 5)
2018-12-17T22:41:06.41474774Z 62 PC: 12bfb | Close file
2018-12-17T22:41:06.425295875Z 79 PC: 12b95 | Find next file
2018-12-17T22:41:06.428138752Z 61 PC: 12ba8 | Open file (Filename = 'TEST.COM')
2018-12-17T22:41:06.435532402Z 63 PC: 12bb4 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:41:06.438151373Z 62 PC: 12bfb | Close file
2018-12-17T22:41:06.440606919Z 79 PC: 12b95 | Find next file
2018-12-17T22:41:06.44386247Z 26 PC: 12b88 | Set disk transfer address