Sample viewer

vx.netlux.org/Virus.DOS.MPS.640

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:48:53.112887427Z 47 PC: 1309c | Get disk transfer address
2018-12-17T22:48:53.11490049Z 26 PC: 130b3 | Set disk transfer address
2018-12-17T22:48:53.117025643Z 71 PC: 130be | Get current directory
2018-12-17T22:48:53.120675921Z 78 PC: 130d7 | Find first file
2018-12-17T22:48:53.127676705Z 79 PC: 130e8 | Find next file
2018-12-17T22:48:53.131729049Z 79 PC: 130e8 | Find next file
2018-12-17T22:48:53.135257188Z 79 PC: 130e8 | Find next file
2018-12-17T22:48:53.138320634Z 79 PC: 130e8 | Find next file
2018-12-17T22:48:53.147318189Z 79 PC: 130e8 | Find next file
2018-12-17T22:48:53.150802316Z 79 PC: 130e8 | Find next file
2018-12-17T22:48:53.154060397Z 79 PC: 130e8 | Find next file
2018-12-17T22:48:53.158280537Z 79 PC: 130e8 | Find next file
2018-12-17T22:48:53.161774912Z 79 PC: 130e8 | Find next file
2018-12-17T22:48:53.164636398Z 78 PC: 13195 | Find first file
2018-12-17T22:48:53.171396209Z 67 PC: 131ae | Get or set file attributes
2018-12-17T22:48:53.189650768Z 61 PC: 131b3 | Open file (Filename = '\SLEEP.COM')
2018-12-17T22:48:53.197461954Z 63 PC: 131c7 | Read file or device (Read 10 bytes on handle 5)
2018-12-17T22:48:53.204823095Z 66 PC: 131d5 | Move file pointer
2018-12-17T22:48:53.207806802Z 64 PC: 1320f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:53.21126026Z 66 PC: 13218 | Move file pointer
2018-12-17T22:48:53.213526157Z 64 PC: 13221 | Write file or device (Write 640 bytes on handle 5)
2018-12-17T22:48:53.225059798Z 62 PC: 13225 | Close file
2018-12-17T22:48:53.234787095Z 79 PC: 1322e | Find next file
2018-12-17T22:48:53.238404361Z 67 PC: 131ae | Get or set file attributes
2018-12-17T22:48:53.250620785Z 61 PC: 131b3 | Open file (Filename = '\PRINT.COM')
2018-12-17T22:48:53.259408897Z 63 PC: 131c7 | Read file or device (Read 10 bytes on handle 5)
2018-12-17T22:48:53.267251101Z 66 PC: 131d5 | Move file pointer
2018-12-17T22:48:53.274790076Z 64 PC: 1320f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:53.277791956Z 66 PC: 13218 | Move file pointer
2018-12-17T22:48:53.279273971Z 64 PC: 13221 | Write file or device (Write 640 bytes on handle 5)
2018-12-17T22:48:53.289389638Z 62 PC: 13225 | Close file
2018-12-17T22:48:53.299173991Z 79 PC: 1322e | Find next file
2018-12-17T22:48:53.302291789Z 67 PC: 131ae | Get or set file attributes
2018-12-17T22:48:53.313608041Z 61 PC: 131b3 | Open file (Filename = '\HELLO.COM')
2018-12-17T22:48:53.322047879Z 63 PC: 131c7 | Read file or device (Read 10 bytes on handle 5)
2018-12-17T22:48:53.329583147Z 66 PC: 131d5 | Move file pointer
2018-12-17T22:48:53.331342242Z 64 PC: 1320f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:53.335067702Z 66 PC: 13218 | Move file pointer
2018-12-17T22:48:53.336709527Z 64 PC: 13221 | Write file or device (Write 640 bytes on handle 5)
2018-12-17T22:48:53.345172347Z 62 PC: 13225 | Close file
2018-12-17T22:48:53.354904653Z 79 PC: 1322e | Find next file
2018-12-17T22:48:53.358101079Z 67 PC: 131ae | Get or set file attributes
2018-12-17T22:48:53.369248484Z 61 PC: 131b3 | Open file (Filename = '\PHANG.COM')
2018-12-17T22:48:53.377640712Z 63 PC: 131c7 | Read file or device (Read 10 bytes on handle 5)
2018-12-17T22:48:53.384684727Z 66 PC: 131d5 | Move file pointer
2018-12-17T22:48:53.386849735Z 64 PC: 1320f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:53.390582508Z 66 PC: 13218 | Move file pointer
2018-12-17T22:48:53.392291349Z 64 PC: 13221 | Write file or device (Write 640 bytes on handle 5)
2018-12-17T22:48:53.400781642Z 62 PC: 13225 | Close file
2018-12-17T22:48:53.409838909Z 79 PC: 1322e | Find next file
2018-12-17T22:48:53.413082594Z 67 PC: 131ae | Get or set file attributes
2018-12-17T22:48:53.424163163Z 61 PC: 131b3 | Open file (Filename = '\PRINTA~1.COM')
2018-12-17T22:48:53.431817285Z 63 PC: 131c7 | Read file or device (Read 10 bytes on handle 5)
2018-12-17T22:48:53.438796338Z 66 PC: 131d5 | Move file pointer
2018-12-17T22:48:53.44066026Z 64 PC: 1320f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:53.443735608Z 66 PC: 13218 | Move file pointer
2018-12-17T22:48:53.445842787Z 64 PC: 13221 | Write file or device (Write 640 bytes on handle 5)
2018-12-17T22:48:53.454930212Z 62 PC: 13225 | Close file
2018-12-17T22:48:53.463676254Z 79 PC: 1322e | Find next file
2018-12-17T22:48:53.467986343Z 67 PC: 131ae | Get or set file attributes
2018-12-17T22:48:53.479147373Z 61 PC: 131b3 | Open file (Filename = '\MANDEL.COM')
2018-12-17T22:48:53.487243906Z 63 PC: 131c7 | Read file or device (Read 10 bytes on handle 5)
2018-12-17T22:48:53.495536857Z 66 PC: 131d5 | Move file pointer
2018-12-17T22:48:53.497339774Z 64 PC: 1320f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:53.502098185Z 66 PC: 13218 | Move file pointer
2018-12-17T22:48:53.50511313Z 64 PC: 13221 | Write file or device (Write 640 bytes on handle 5)
2018-12-17T22:48:53.514816832Z 62 PC: 13225 | Close file
2018-12-17T22:48:53.523857689Z 79 PC: 1322e | Find next file
2018-12-17T22:48:53.531667212Z 67 PC: 131ae | Get or set file attributes
2018-12-17T22:48:53.543290642Z 61 PC: 131b3 | Open file (Filename = '\PAH.COM')
2018-12-17T22:48:53.550997432Z 63 PC: 131c7 | Read file or device (Read 10 bytes on handle 5)
2018-12-17T22:48:53.55854349Z 66 PC: 131d5 | Move file pointer
2018-12-17T22:48:53.561352848Z 64 PC: 1320f | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:48:53.564520761Z 66 PC: 13218 | Move file pointer
2018-12-17T22:48:53.566290176Z 64 PC: 13221 | Write file or device (Write 640 bytes on handle 5)
2018-12-17T22:48:53.575224432Z 62 PC: 13225 | Close file
2018-12-17T22:48:53.583842845Z 79 PC: 1322e | Find next file
2018-12-17T22:48:53.587024763Z 67 PC: 131ae | Get or set file attributes
2018-12-17T22:48:53.598636431Z 61 PC: 131b3 | Open file (Filename = '\TEST.COM')
2018-12-17T22:48:53.605803096Z 63 PC: 131c7 | Read file or device (Read 10 bytes on handle 5)
2018-12-17T22:48:53.609654091Z 66 PC: 131d5 | Move file pointer
2018-12-17T22:48:53.611875455Z 62 PC: 13225 | Close file
2018-12-17T22:48:53.614887525Z 79 PC: 1322e | Find next file
2018-12-17T22:48:53.618000043Z 26 PC: 1324d | Set disk transfer address
2018-12-17T22:48:53.620332085Z 48 PC: 12eb1 | Get DOS version
2018-12-17T22:48:53.622129312Z 9 PC: 12ebd | Display string (String= 'Incorrect DOS version ')
2018-12-17T22:48:53.627308913Z 76 PC: 12ec1 | Terminate with return code (Return code = '36')