Sample viewer

vx.netlux.org/Virus.DOS.7son.332.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:58:01.673863859Z 51 PC: 140fb | Get or set Ctrl-Break
2018-12-17T21:58:01.675132815Z 51 PC: 14103 | Get or set Ctrl-Break
2018-12-17T21:58:01.675821334Z 53 PC: 14108 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:58:01.676789223Z 37 PC: 14114 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:58:01.679798539Z 26 PC: 1411c | Set disk transfer address
2018-12-17T21:58:01.680840651Z 78 PC: 14147 | Find first file
2018-12-17T21:58:01.686751202Z 67 PC: 14170 | Get or set file attributes
2018-12-17T21:58:01.693329312Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:01.708953107Z 61 PC: 1417d | Open file (Filename = '------ (c) 1995-2001 by ROSE SWE, Dipl.-Ing. Ralph Roth - Version 1.18 - Freeware $ -=[ registered: VSP-Kunden ]=- $')
2018-12-17T21:58:01.715302149Z 87 PC: 14185 | Get or set file date and time
2018-12-17T21:58:01.716736392Z 63 PC: 14192 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:58:01.723172272Z 66 PC: 141f7 | Move file pointer
2018-12-17T21:58:01.724752323Z 87 PC: 141da | Get or set file date and time
2018-12-17T21:58:01.726050747Z 62 PC: 141de | Close file
2018-12-17T21:58:01.733282225Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:01.7434967Z 79 PC: 14152 | Find next file
2018-12-17T21:58:01.746148254Z 67 PC: 14170 | Get or set file attributes
2018-12-17T21:58:01.752835143Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:01.762584438Z 61 PC: 1417d | Open file (Filename = '------ (c) 1995-2001 by ROSE SWE, Dipl.-Ing. Ralph Roth - Version 1.18 - Freeware $ -=[ registered: VSP-Kunden ]=- $')
2018-12-17T21:58:01.768899474Z 87 PC: 14185 | Get or set file date and time
2018-12-17T21:58:01.77139993Z 63 PC: 14192 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:58:01.777488309Z 66 PC: 141f7 | Move file pointer
2018-12-17T21:58:01.778715193Z 87 PC: 141da | Get or set file date and time
2018-12-17T21:58:01.780669797Z 62 PC: 141de | Close file
2018-12-17T21:58:01.787480279Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:01.796975267Z 79 PC: 14152 | Find next file
2018-12-17T21:58:01.800498269Z 67 PC: 14170 | Get or set file attributes
2018-12-17T21:58:01.806134003Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:01.818478065Z 61 PC: 1417d | Open file (Filename = '------ (c) 1995-2001 by ROSE SWE, Dipl.-Ing. Ralph Roth - Version 1.18 - Freeware $ -=[ registered: VSP-Kunden ]=- $')
2018-12-17T21:58:01.833840456Z 87 PC: 14185 | Get or set file date and time
2018-12-17T21:58:01.835192425Z 63 PC: 14192 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:58:01.841337215Z 66 PC: 141f7 | Move file pointer
2018-12-17T21:58:01.842801553Z 87 PC: 141da | Get or set file date and time
2018-12-17T21:58:01.84478762Z 62 PC: 141de | Close file
2018-12-17T21:58:01.85222082Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:01.862255474Z 79 PC: 14152 | Find next file
2018-12-17T21:58:01.864911897Z 67 PC: 14170 | Get or set file attributes
2018-12-17T21:58:01.870404585Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:01.882625328Z 61 PC: 1417d | Open file (Filename = '------ (c) 1995-2001 by ROSE SWE, Dipl.-Ing. Ralph Roth - Version 1.18 - Freeware $ -=[ registered: VSP-Kunden ]=- $')
2018-12-17T21:58:01.890559045Z 87 PC: 14185 | Get or set file date and time
2018-12-17T21:58:01.891923764Z 63 PC: 14192 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:58:01.898043021Z 66 PC: 141f7 | Move file pointer
2018-12-17T21:58:01.900096635Z 87 PC: 141da | Get or set file date and time
2018-12-17T21:58:01.901501292Z 62 PC: 141de | Close file
2018-12-17T21:58:01.908216932Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:01.918257983Z 79 PC: 14152 | Find next file
2018-12-17T21:58:01.92078122Z 67 PC: 14170 | Get or set file attributes
2018-12-17T21:58:01.926495168Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:01.945724372Z 61 PC: 1417d | Open file (Filename = '------ (c) 1995-2001 by ROSE SWE, Dipl.-Ing. Ralph Roth - Version 1.18 - Freeware $ -=[ registered: VSP-Kunden ]=- $')
2018-12-17T21:58:01.95689296Z 87 PC: 14185 | Get or set file date and time
2018-12-17T21:58:01.958130123Z 63 PC: 14192 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:58:01.964414524Z 66 PC: 141f7 | Move file pointer
2018-12-17T21:58:01.965739517Z 87 PC: 141da | Get or set file date and time
2018-12-17T21:58:01.967040289Z 62 PC: 141de | Close file
2018-12-17T21:58:01.974496573Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:01.983904427Z 79 PC: 14152 | Find next file
2018-12-17T21:58:01.986313969Z 67 PC: 14170 | Get or set file attributes
2018-12-17T21:58:01.993263162Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:02.002848284Z 61 PC: 1417d | Open file (Filename = '------ (c) 1995-2001 by ROSE SWE, Dipl.-Ing. Ralph Roth - Version 1.18 - Freeware $ -=[ registered: VSP-Kunden ]=- $')
2018-12-17T21:58:02.013918892Z 87 PC: 14185 | Get or set file date and time
2018-12-17T21:58:02.016368745Z 63 PC: 14192 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:58:02.023105778Z 66 PC: 141f7 | Move file pointer
2018-12-17T21:58:02.024415946Z 87 PC: 141da | Get or set file date and time
2018-12-17T21:58:02.027002823Z 62 PC: 141de | Close file
2018-12-17T21:58:02.033786659Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:02.043148065Z 79 PC: 14152 | Find next file
2018-12-17T21:58:02.046909333Z 67 PC: 14170 | Get or set file attributes
2018-12-17T21:58:02.052352348Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:02.061793435Z 61 PC: 1417d | Open file (Filename = '------ (c) 1995-2001 by ROSE SWE, Dipl.-Ing. Ralph Roth - Version 1.18 - Freeware $ -=[ registered: VSP-Kunden ]=- $')
2018-12-17T21:58:02.07437206Z 87 PC: 14185 | Get or set file date and time
2018-12-17T21:58:02.076159004Z 63 PC: 14192 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:58:02.083170918Z 66 PC: 141f7 | Move file pointer
2018-12-17T21:58:02.084661315Z 87 PC: 141da | Get or set file date and time
2018-12-17T21:58:02.087133251Z 62 PC: 141de | Close file
2018-12-17T21:58:02.0950506Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:02.104873415Z 79 PC: 14152 | Find next file
2018-12-17T21:58:02.108716896Z 67 PC: 14170 | Get or set file attributes
2018-12-17T21:58:02.114530609Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:02.124438424Z 61 PC: 1417d | Open file (Filename = '------ (c) 1995-2001 by ROSE SWE, Dipl.-Ing. Ralph Roth - Version 1.18 - Freeware $ -=[ registered: VSP-Kunden ]=- $')
2018-12-17T21:58:02.132806266Z 87 PC: 14185 | Get or set file date and time
2018-12-17T21:58:02.134458306Z 63 PC: 14192 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:58:02.141002125Z 87 PC: 141da | Get or set file date and time
2018-12-17T21:58:02.143676116Z 62 PC: 141de | Close file
2018-12-17T21:58:02.153055145Z 67 PC: 141e8 | Get or set file attributes
2018-12-17T21:58:02.162621384Z 79 PC: 14152 | Find next file
2018-12-17T21:58:02.165965347Z 37 PC: 1415b | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:58:02.167100181Z 51 PC: 14161 | Get or set Ctrl-Break
2018-12-17T21:58:02.168046449Z 48 PC: 12a63 | Get DOS version
2018-12-17T21:58:02.169594093Z 9 PC: 12a7a | Display string (String= ' --=[ Selfchecking AntiStealth Goat COM/EXE file, 01/06/01 ]=------------------ (c) 1995-2001 by ROSE SWE, Dipl.-Ing. Ralph Roth - Version 1.18 - Freeware ')
2018-12-17T21:58:02.17923286Z 61 PC: 12cb7 | Open file (Filename = '')
2018-12-17T21:58:02.185828751Z 9 PC: 12a88 | Display string (String= 'Self test: ')
2018-12-17T21:58:02.188731605Z 93 PC: 12b24 | File sharing functions
2018-12-17T21:58:02.190601528Z 9 PC: 12b03 | Display string (String= 'Size change=+014Ch/00332d. Virus might be activ? ')
2018-12-17T21:58:02.195862634Z 76 PC: 12b09 | Terminate with return code (Return code = '1')