Sample viewer

vx.netlux.org/Virus.DOS.Replicat.891

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:55:42.857389092Z 53 PC: 12a7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:55:42.859003707Z 37 PC: 12a8b | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:55:42.860670808Z 25 PC: 12b33 | Get default drive
2018-12-17T22:55:42.862113159Z 14 PC: 12b44 | Set default drive (Drive = 'C')
2018-12-17T22:55:42.863997239Z 47 PC: 12b52 | Get disk transfer address
2018-12-17T22:55:42.865764794Z 26 PC: 12b6b | Set disk transfer address
2018-12-17T22:55:42.867118985Z 78 PC: 12b76 | Find first file
2018-12-17T22:55:42.872878356Z 67 PC: 12ba5 | Get or set file attributes
2018-12-17T22:55:42.878870645Z 67 PC: 12bb0 | Get or set file attributes
2018-12-17T22:55:43.221328828Z 61 PC: 12bb7 | Open file (Filename = 'COMMAND.COM')
2018-12-17T22:55:43.227472502Z 66 PC: 12bcb | Move file pointer
2018-12-17T22:55:43.230621159Z 87 PC: 12c03 | Get or set file date and time
2018-12-17T22:55:43.23208639Z 66 PC: 12c33 | Move file pointer
2018-12-17T22:55:43.233530221Z 63 PC: 12c44 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:55:43.23714823Z 66 PC: 12c4f | Move file pointer
2018-12-17T22:55:43.238749691Z 64 PC: 12c64 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:55:43.242001039Z 66 PC: 12c6f | Move file pointer
2018-12-17T22:55:43.246890238Z 64 PC: 12ca3 | Write file or device (Write 891 bytes on handle 5)
2018-12-17T22:55:43.259213549Z 87 PC: 12cbd | Get or set file date and time
2018-12-17T22:55:43.261081128Z 62 PC: 12cc1 | Close file
2018-12-17T22:55:43.268791109Z 26 PC: 12b96 | Set disk transfer address
2018-12-17T22:55:43.270162103Z 37 PC: 12b03 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')