Sample viewer

vx.netlux.org/Virus.DOS.Khizhnjak-based.Mirea.549

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:54:53.648454906Z 78 PC: 12bd7 | Find first file
2018-12-17T22:54:53.657404912Z 61 PC: 12bfe | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:54:53.664712859Z 63 PC: 12c14 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:54:53.671695443Z 66 PC: 12c34 | Move file pointer
2018-12-17T22:54:53.673602651Z 66 PC: 12c83 | Move file pointer
2018-12-17T22:54:53.676171614Z 64 PC: 12c92 | Write file or device (Write 549 bytes on handle 5)
2018-12-17T22:54:53.69741788Z 66 PC: 12ca2 | Move file pointer
2018-12-17T22:54:53.699195334Z 64 PC: 12cb0 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:54:53.707745277Z 62 PC: 12cb8 | Close file
2018-12-17T22:54:53.716698679Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T22:54:53.721226868Z 76 PC: 12a86 | Terminate with return code (Return code = '36')