Sample viewer

vx.netlux.org/Virus.DOS.Torm.157

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:15:41.61559702Z 26 PC: 1516a | Set disk transfer address
2018-12-17T23:15:41.618009285Z 78 PC: 15173 | Find first file
2018-12-17T23:15:41.626160456Z 67 PC: 15180 | Get or set file attributes
2018-12-17T23:15:41.630979153Z 61 PC: 15189 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:15:41.638224702Z 63 PC: 15198 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:15:41.64577826Z 66 PC: 151aa | Move file pointer
2018-12-17T23:15:41.647311863Z 64 PC: 151b9 | Write file or device (Write 157 bytes on handle 5)
2018-12-17T23:15:43.426165043Z 66 PC: 151c4 | Move file pointer
2018-12-17T23:15:43.429308551Z 64 PC: 151d0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:15:43.436975172Z 62 PC: 151d6 | Close file
2018-12-17T23:15:43.515827936Z 79 PC: 15173 | Find next file
2018-12-17T23:15:43.52027231Z 67 PC: 15180 | Get or set file attributes
2018-12-17T23:15:43.525914314Z 61 PC: 15189 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:15:43.533914452Z 63 PC: 15198 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:15:43.544553329Z 66 PC: 151aa | Move file pointer
2018-12-17T23:15:43.546867198Z 64 PC: 151b9 | Write file or device (Write 157 bytes on handle 5)
2018-12-17T23:15:43.549854754Z 66 PC: 151c4 | Move file pointer
2018-12-17T23:15:43.55149152Z 64 PC: 151d0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:15:43.565806477Z 62 PC: 151d6 | Close file
2018-12-17T23:15:43.574424365Z 79 PC: 15173 | Find next file
2018-12-17T23:15:43.578345917Z 67 PC: 15180 | Get or set file attributes
2018-12-17T23:15:43.588458735Z 61 PC: 15189 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:15:43.595566295Z 63 PC: 15198 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:15:43.602585939Z 66 PC: 151aa | Move file pointer
2018-12-17T23:15:43.60522022Z 64 PC: 151b9 | Write file or device (Write 157 bytes on handle 5)
2018-12-17T23:15:43.608451023Z 66 PC: 151c4 | Move file pointer
2018-12-17T23:15:43.610291904Z 64 PC: 151d0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:15:43.614618045Z 62 PC: 151d6 | Close file
2018-12-17T23:15:43.62288865Z 79 PC: 15173 | Find next file
2018-12-17T23:15:43.625618772Z 67 PC: 15180 | Get or set file attributes
2018-12-17T23:15:43.630215202Z 61 PC: 15189 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:15:43.637895328Z 63 PC: 15198 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:15:43.644923698Z 66 PC: 151aa | Move file pointer
2018-12-17T23:15:43.646756634Z 64 PC: 151b9 | Write file or device (Write 157 bytes on handle 5)
2018-12-17T23:15:43.65150038Z 66 PC: 151c4 | Move file pointer
2018-12-17T23:15:43.653089196Z 64 PC: 151d0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:15:43.65604356Z 62 PC: 151d6 | Close file
2018-12-17T23:15:43.665236399Z 79 PC: 15173 | Find next file
2018-12-17T23:15:43.668412449Z 67 PC: 15180 | Get or set file attributes
2018-12-17T23:15:43.673616991Z 61 PC: 15189 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:15:43.681813297Z 63 PC: 15198 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:15:43.689014143Z 66 PC: 151aa | Move file pointer
2018-12-17T23:15:43.691025493Z 64 PC: 151b9 | Write file or device (Write 157 bytes on handle 5)
2018-12-17T23:15:43.695795849Z 66 PC: 151c4 | Move file pointer
2018-12-17T23:15:43.699561888Z 64 PC: 151d0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:15:43.702608745Z 62 PC: 151d6 | Close file
2018-12-17T23:15:43.712043659Z 79 PC: 15173 | Find next file
2018-12-17T23:15:43.715035493Z 67 PC: 15180 | Get or set file attributes
2018-12-17T23:15:43.719799377Z 61 PC: 15189 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:15:43.727492898Z 63 PC: 15198 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:15:43.735379993Z 66 PC: 151aa | Move file pointer
2018-12-17T23:15:43.73716074Z 64 PC: 151b9 | Write file or device (Write 157 bytes on handle 5)
2018-12-17T23:15:43.749649915Z 66 PC: 151c4 | Move file pointer
2018-12-17T23:15:43.752878043Z 64 PC: 151d0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:15:43.760003696Z 62 PC: 151d6 | Close file
2018-12-17T23:15:43.768909245Z 79 PC: 15173 | Find next file
2018-12-17T23:15:43.77260369Z 67 PC: 15180 | Get or set file attributes
2018-12-17T23:15:43.778407659Z 61 PC: 15189 | Open file (Filename = 'PAH.COM')
2018-12-17T23:15:43.785599347Z 63 PC: 15198 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:15:43.794068115Z 66 PC: 151aa | Move file pointer
2018-12-17T23:15:43.795897754Z 64 PC: 151b9 | Write file or device (Write 157 bytes on handle 5)
2018-12-17T23:15:43.798851366Z 66 PC: 151c4 | Move file pointer
2018-12-17T23:15:43.80148213Z 64 PC: 151d0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:15:43.805071788Z 62 PC: 151d6 | Close file
2018-12-17T23:15:43.814349927Z 79 PC: 15173 | Find next file
2018-12-17T23:15:43.817600206Z 67 PC: 15180 | Get or set file attributes
2018-12-17T23:15:43.823448599Z 61 PC: 15189 | Open file (Filename = 'TEST.COM')
2018-12-17T23:15:43.830580755Z 63 PC: 15198 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:15:43.833677005Z 79 PC: 15173 | Find next file
2018-12-17T23:15:43.839472528Z 9 PC: 12bb5 | Display string (String= '')
2018-12-17T23:15:43.842464061Z 9 PC: 12bbc | Display string (Could not find end pointer)
2018-12-17T23:15:43.853740557Z 76 PC: 12bd2 | Terminate with return code (Return code = '0')