Sample viewer

vx.netlux.org/Virus.DOS.Anti-AV.930

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:56:10.512098216Z 65 PC: 12abe | Delete file (Filename = 'chklist.tav')
2018-12-17T22:56:10.519449794Z 65 PC: 12ac9 | Delete file (Filename = 'chklist.cps')
2018-12-17T22:56:10.525975864Z 65 PC: 12ad4 | Delete file (Filename = 'chklist.ms')
2018-12-17T22:56:10.532221028Z 53 PC: 12b91 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:56:10.533307598Z 37 PC: 12ba0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:56:10.535292507Z 47 PC: 12d84 | Get disk transfer address
2018-12-17T22:56:10.536608228Z 26 PC: 12d93 | Set disk transfer address
2018-12-17T22:56:10.538040167Z 78 PC: 12c3d | Find first file
2018-12-17T22:56:10.550242886Z 79 PC: 12c43 | Find next file
2018-12-17T22:56:10.553136498Z 79 PC: 12c43 | Find next file
2018-12-17T22:56:10.555992631Z 79 PC: 12c43 | Find next file
2018-12-17T22:56:10.559398544Z 79 PC: 12c43 | Find next file
2018-12-17T22:56:10.562535882Z 79 PC: 12c43 | Find next file
2018-12-17T22:56:10.565669024Z 79 PC: 12c43 | Find next file
2018-12-17T22:56:10.569331186Z 79 PC: 12c43 | Find next file
2018-12-17T22:56:10.572385238Z 79 PC: 12c43 | Find next file
2018-12-17T22:56:10.57508972Z 78 PC: 12c3d | Find first file
2018-12-17T22:56:10.585978357Z 79 PC: 12c43 | Find next file
2018-12-17T22:56:10.590788691Z 67 PC: 12c76 | Get or set file attributes
2018-12-17T22:56:10.597379379Z 67 PC: 12c86 | Get or set file attributes
2018-12-17T22:56:10.943513875Z 61 PC: 12c95 | Open file (Filename = 'C:\DOS\FORMAT.COM')
2018-12-17T22:56:10.955440978Z 87 PC: 12ca3 | Get or set file date and time
2018-12-17T22:56:10.957207865Z 63 PC: 12cb5 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:56:10.963820882Z 66 PC: 12cef | Move file pointer
2018-12-17T22:56:10.966121121Z 64 PC: 12d12 | Write file or device (Write 930 bytes on handle 5)
2018-12-17T22:56:10.974864444Z 66 PC: 12d1f | Move file pointer
2018-12-17T22:56:10.976825651Z 64 PC: 12d35 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:56:10.980954863Z 87 PC: 12d46 | Get or set file date and time
2018-12-17T22:56:10.982868614Z 62 PC: 12d4a | Close file
2018-12-17T22:56:10.99112645Z 67 PC: 12d57 | Get or set file attributes
2018-12-17T22:56:11.003397836Z 26 PC: 12aa1 | Set disk transfer address
2018-12-17T22:56:11.005731133Z 37 PC: 12bbc | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')