Sample viewer

vx.netlux.org/Virus.DOS.Nygus.278

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:46:41.355338042Z 26 PC: 12bac | Set disk transfer address
2018-12-17T22:46:41.356647586Z 78 PC: 12bac | Find first file
2018-12-17T22:46:41.360816958Z 67 PC: 12b01 | Get or set file attributes
2018-12-17T22:46:41.364229977Z 61 PC: 12bac | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:46:41.371466879Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.383197619Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.385568772Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.39098174Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.407804381Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.410378445Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.411642798Z 64 PC: 12b5c | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:41.414660802Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.416063205Z 64 PC: 12bac | Write file or device (Write 278 bytes on handle 5)
2018-12-17T22:46:41.429892226Z 62 PC: 12b70 | Close file
2018-12-17T22:46:41.450463519Z 79 PC: 12bac | Find next file
2018-12-17T22:46:41.45341246Z 67 PC: 12b01 | Get or set file attributes
2018-12-17T22:46:41.459311092Z 61 PC: 12bac | Open file (Filename = 'PRINT.COM')
2018-12-17T22:46:41.466712214Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.468221046Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.469626121Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.476707896Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.479879716Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.483233593Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.484865104Z 64 PC: 12b5c | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:41.488786612Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.490484824Z 64 PC: 12bac | Write file or device (Write 278 bytes on handle 5)
2018-12-17T22:46:41.493395333Z 62 PC: 12b70 | Close file
2018-12-17T22:46:41.513687545Z 79 PC: 12bac | Find next file
2018-12-17T22:46:41.51630818Z 67 PC: 12b01 | Get or set file attributes
2018-12-17T22:46:41.52179832Z 61 PC: 12bac | Open file (Filename = 'HELLO.COM')
2018-12-17T22:46:41.534032977Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.535754813Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.537429211Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.54864515Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.550151113Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.552749117Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.554915872Z 64 PC: 12b5c | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:41.558393108Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.56023673Z 64 PC: 12bac | Write file or device (Write 278 bytes on handle 5)
2018-12-17T22:46:41.564095366Z 62 PC: 12b70 | Close file
2018-12-17T22:46:41.572173728Z 79 PC: 12bac | Find next file
2018-12-17T22:46:41.574864333Z 67 PC: 12b01 | Get or set file attributes
2018-12-17T22:46:41.580549308Z 61 PC: 12bac | Open file (Filename = 'PHANG.COM')
2018-12-17T22:46:41.58842982Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.590150124Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.592186441Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.600588115Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.602024741Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.606117525Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.609379542Z 64 PC: 12b5c | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:41.61290726Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.61455105Z 64 PC: 12bac | Write file or device (Write 278 bytes on handle 5)
2018-12-17T22:46:41.620343336Z 62 PC: 12b70 | Close file
2018-12-17T22:46:41.62923052Z 79 PC: 12bac | Find next file
2018-12-17T22:46:41.632067399Z 67 PC: 12b01 | Get or set file attributes
2018-12-17T22:46:41.639651924Z 61 PC: 12bac | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:46:41.647501597Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.649514838Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.652499058Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.659567207Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.661718617Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.664700001Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.667497403Z 64 PC: 12b5c | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:41.670844241Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.672750551Z 64 PC: 12bac | Write file or device (Write 278 bytes on handle 5)
2018-12-17T22:46:41.67730294Z 62 PC: 12b70 | Close file
2018-12-17T22:46:41.685444764Z 79 PC: 12bac | Find next file
2018-12-17T22:46:41.689482005Z 67 PC: 12b01 | Get or set file attributes
2018-12-17T22:46:41.697212962Z 61 PC: 12bac | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:46:41.704109807Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.705927974Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.708450371Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.715887917Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.71763208Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.721488236Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.723523925Z 64 PC: 12b5c | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:41.726528779Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.729705255Z 64 PC: 12bac | Write file or device (Write 278 bytes on handle 5)
2018-12-17T22:46:41.737893687Z 62 PC: 12b70 | Close file
2018-12-17T22:46:41.746009441Z 79 PC: 12bac | Find next file
2018-12-17T22:46:41.749135399Z 67 PC: 12b01 | Get or set file attributes
2018-12-17T22:46:41.755580442Z 61 PC: 12bac | Open file (Filename = 'PAH.COM')
2018-12-17T22:46:41.762212607Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.764873198Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.766455892Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.77380812Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.775439468Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.779027376Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.780772015Z 64 PC: 12b5c | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:41.783591871Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.786090656Z 64 PC: 12bac | Write file or device (Write 278 bytes on handle 5)
2018-12-17T22:46:41.788877445Z 62 PC: 12b70 | Close file
2018-12-17T22:46:41.797444331Z 79 PC: 12bac | Find next file
2018-12-17T22:46:41.801094757Z 67 PC: 12b01 | Get or set file attributes
2018-12-17T22:46:41.806935844Z 61 PC: 12bac | Open file (Filename = 'TEST.COM')
2018-12-17T22:46:41.814161634Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.81652238Z 66 PC: 12ba7 | Move file pointer
2018-12-17T22:46:41.818236733Z 63 PC: 12bac | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:41.824814061Z 62 PC: 12b70 | Close file
2018-12-17T22:46:41.82740335Z 79 PC: 12bac | Find next file
2018-12-17T22:46:41.829175502Z 1 PC: 12a42 | Character input