Sample viewer

vx.netlux.org/Virus.DOS.Kat.431

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:45:56.85644533Z 78 PC: 13037 | Find first file
2018-12-17T22:45:56.863821082Z 61 PC: 13041 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:45:56.871899284Z 63 PC: 13050 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:56.879415241Z 66 PC: 13062 | Move file pointer
2018-12-17T22:45:56.881421718Z 64 PC: 13071 | Write file or device (Write 431 bytes on handle 5)
2018-12-17T22:45:56.898080529Z 66 PC: 1307c | Move file pointer
2018-12-17T22:45:56.900198099Z 64 PC: 13088 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:56.908400649Z 62 PC: 1308e | Close file
2018-12-17T22:45:56.918977105Z 79 PC: 13037 | Find next file
2018-12-17T22:45:56.922746351Z 61 PC: 13041 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:45:56.930526899Z 63 PC: 13050 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:56.939010189Z 66 PC: 13062 | Move file pointer
2018-12-17T22:45:56.941353362Z 64 PC: 13071 | Write file or device (Write 431 bytes on handle 5)
2018-12-17T22:45:56.944755529Z 66 PC: 1307c | Move file pointer
2018-12-17T22:45:56.946729743Z 64 PC: 13088 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:56.95103164Z 62 PC: 1308e | Close file
2018-12-17T22:45:56.960217571Z 79 PC: 13037 | Find next file
2018-12-17T22:45:56.964390653Z 61 PC: 13041 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:45:56.977086529Z 63 PC: 13050 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:56.997233818Z 66 PC: 13062 | Move file pointer
2018-12-17T22:45:56.999044514Z 64 PC: 13071 | Write file or device (Write 431 bytes on handle 5)
2018-12-17T22:45:57.008830465Z 66 PC: 1307c | Move file pointer
2018-12-17T22:45:57.010820831Z 64 PC: 13088 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:57.01851336Z 62 PC: 1308e | Close file
2018-12-17T22:45:57.029572662Z 79 PC: 13037 | Find next file
2018-12-17T22:45:57.037041643Z 61 PC: 13041 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:45:57.044746673Z 63 PC: 13050 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:57.052662655Z 66 PC: 13062 | Move file pointer
2018-12-17T22:45:57.054804201Z 64 PC: 13071 | Write file or device (Write 431 bytes on handle 5)
2018-12-17T22:45:57.05822784Z 66 PC: 1307c | Move file pointer
2018-12-17T22:45:57.060032328Z 64 PC: 13088 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:57.071062683Z 62 PC: 1308e | Close file
2018-12-17T22:45:57.089588533Z 79 PC: 13037 | Find next file
2018-12-17T22:45:57.093103062Z 61 PC: 13041 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:45:57.101873113Z 63 PC: 13050 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:57.108962277Z 66 PC: 13062 | Move file pointer
2018-12-17T22:45:57.110620542Z 64 PC: 13071 | Write file or device (Write 431 bytes on handle 5)
2018-12-17T22:45:57.114194641Z 66 PC: 1307c | Move file pointer
2018-12-17T22:45:57.123408658Z 64 PC: 13088 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:57.126256383Z 62 PC: 1308e | Close file
2018-12-17T22:45:57.135787327Z 79 PC: 13037 | Find next file
2018-12-17T22:45:57.139426176Z 61 PC: 13041 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:45:57.147216048Z 63 PC: 13050 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:57.158158724Z 66 PC: 13062 | Move file pointer
2018-12-17T22:45:57.164897982Z 64 PC: 13071 | Write file or device (Write 431 bytes on handle 5)
2018-12-17T22:45:57.174011211Z 66 PC: 1307c | Move file pointer
2018-12-17T22:45:57.176127791Z 64 PC: 13088 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:57.184539695Z 62 PC: 1308e | Close file
2018-12-17T22:45:57.194168316Z 79 PC: 13037 | Find next file
2018-12-17T22:45:57.197416313Z 61 PC: 13041 | Open file (Filename = 'PAH.COM')
2018-12-17T22:45:57.205629467Z 63 PC: 13050 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:57.212863865Z 66 PC: 13062 | Move file pointer
2018-12-17T22:45:57.214516252Z 64 PC: 13071 | Write file or device (Write 431 bytes on handle 5)
2018-12-17T22:45:57.218298307Z 66 PC: 1307c | Move file pointer
2018-12-17T22:45:57.220913057Z 64 PC: 13088 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:57.224110887Z 62 PC: 1308e | Close file
2018-12-17T22:45:57.234150186Z 79 PC: 13037 | Find next file
2018-12-17T22:45:57.237716388Z 61 PC: 13041 | Open file (Filename = 'TEST.COM')
2018-12-17T22:45:57.245317084Z 63 PC: 13050 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:45:57.249336267Z 79 PC: 13037 | Find next file
2018-12-17T22:45:57.252715507Z 59 PC: 13099 | Change current directory
2018-12-17T22:45:57.255033336Z 78 PC: 130a3 | Find first file
2018-12-17T22:45:57.257328465Z 2 PC: 131ca | Character output (Char = '4b')
2018-12-17T22:45:57.26113852Z 2 PC: 131ca | Character output (Char = '61')
2018-12-17T22:45:57.263867087Z 2 PC: 131ca | Character output (Char = '74')
2018-12-17T22:45:57.266612986Z 9 PC: 13018 | Display string (String= ' Testovaci soubor .COM o delce 1500 - ALWIL Software Testing .COM file long 1500 bytes - ALWIL Software')
2018-12-17T22:45:57.274306298Z 76 PC: 1301c | Terminate with return code (Return code = '36')