Sample viewer

vx.netlux.org/Virus.DOS.Chameleon.1236

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:51:33.378966955Z 48 PC: 12bf8 | Get DOS version
2018-12-17T22:51:33.381247427Z 47 PC: 12c06 | Get disk transfer address
2018-12-17T22:51:33.382591395Z 26 PC: 12c1b | Set disk transfer address
2018-12-17T22:51:33.383873431Z 78 PC: 12c9e | Find first file
2018-12-17T22:51:33.391029589Z 67 PC: 12cdd | Get or set file attributes
2018-12-17T22:51:33.397221402Z 67 PC: 12cee | Get or set file attributes
2018-12-17T22:51:33.414119445Z 61 PC: 12cf9 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:51:33.421804977Z 87 PC: 12d05 | Get or set file date and time
2018-12-17T22:51:33.423306597Z 63 PC: 12d18 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:51:33.430728646Z 66 PC: 12d32 | Move file pointer
2018-12-17T22:51:33.433062873Z 44 PC: 12d60 | Get time 0x12d60: xor dx, cx
0x12d62: int3
0x12d63: jno 0x12d5d
0x12d65: push si
2018-12-17T22:51:33.437603583Z 64 PC: 1317c | Write file or device (Write 1236 bytes on handle 5)
2018-12-17T22:51:33.447592904Z 66 PC: 12e30 | Move file pointer
2018-12-17T22:51:33.44908918Z 64 PC: 12e41 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:51:33.456203829Z 87 PC: 12e52 | Get or set file date and time
2018-12-17T22:51:33.457694375Z 62 PC: 12e56 | Close file
2018-12-17T22:51:33.465837851Z 67 PC: 12e64 | Get or set file attributes
2018-12-17T22:51:33.476983479Z 26 PC: 12e6f | Set disk transfer address
2018-12-17T22:51:33.478487472Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T22:51:33.483120297Z 76 PC: 12a86 | Terminate with return code (Return code = '36')