Sample viewer

vx.netlux.org/Virus.DOS.Eddie.1762

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:57:13.379652082Z 73 PC: 12b6f | Release memory
2018-12-17T22:57:13.382226742Z 72 PC: 12b76 | Allocate memory
2018-12-17T22:57:13.386788368Z 73 PC: 12b6f | Release memory
2018-12-17T22:57:13.388772077Z 72 PC: 12b76 | Allocate memory
2018-12-17T22:57:13.392219639Z 90 PC: 170a3 | Create unique file
2018-12-17T22:57:13.413678682Z 62 PC: 170ad | Close file
2018-12-17T22:57:13.416471903Z 90 PC: 170b4 | Create unique file
2018-12-17T22:57:13.433833273Z 62 PC: 170bf | Close file
2018-12-17T22:57:13.437467585Z 61 PC: 16eba | Open file (Filename = 'F��')
2018-12-17T22:57:13.448509634Z 89 PC: 16f9c | Get extended error info
2018-12-17T22:57:13.451409515Z 64 PC: 19838 | Write file or device (Write 30 bytes on handle 2)
2018-12-17T22:57:13.456107227Z 64 PC: 19838 | Write file or device (Write 7 bytes on handle 2)
2018-12-17T22:57:13.461280493Z 64 PC: 19838 | Write file or device (Write 2 bytes on handle 2)
2018-12-17T22:57:13.465281074Z 41 PC: 19d8b | Parse filename
2018-12-17T22:57:13.467127185Z 46 PC: 13d69 | Set verify flag