Sample viewer

vx.netlux.org/Virus.DOS.Gimon.2555

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:57:52.055547494Z 67 PC: 12a9e | Get or set file attributes
2018-12-17T22:57:52.757265992Z 90 PC: 12aab | Create unique file
2018-12-17T22:57:52.776361949Z 62 PC: 12ab0 | Close file
2018-12-17T22:57:52.778139171Z 65 PC: 12ab5 | Delete file (Filename = 'c:\ABAHBADP')
2018-12-17T22:57:52.788573957Z 91 PC: 12acd | Create new file
2018-12-17T22:57:52.802305686Z 64 PC: 12ad9 | Write file or device (Write 2555 bytes on handle 5)
2018-12-17T22:57:52.81370507Z 62 PC: 12add | Close file
2018-12-17T22:57:52.826688706Z 61 PC: 12aec | Open file (Filename = 'c:\config.sys')
2018-12-17T22:57:52.834628287Z 63 PC: 12af8 | Read file or device (Read 1000 bytes on handle 5)
2018-12-17T22:57:52.84100227Z 64 PC: 12b2a | Write file or device (Write 21 bytes on handle 5)
2018-12-17T22:57:52.844234158Z 62 PC: 12b2e | Close file
2018-12-17T22:57:52.854931242Z 58 PC: 12b33 | Remove subdirectory
2018-12-17T22:57:52.859877181Z 53 PC: 12b4b | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:57:52.861438547Z 37 PC: 12b56 | Set interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:57:52.862841736Z 37 PC: 12b65 | Set interrupt vector (Interrupt = '6' AKA 'Direct console I/O')