Sample viewer

vx.netlux.org/Virus.DOS.Faerie.276

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:58:34.990132195Z 26 PC: 12e3c | Set disk transfer address
2018-12-17T22:58:34.991969559Z 78 PC: 12e47 | Find first file
2018-12-17T22:58:34.999539607Z 53 PC: 12e7e | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:58:35.001184689Z 37 PC: 12e8e | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:58:35.002745894Z 67 PC: 12e9b | Get or set file attributes
2018-12-17T22:58:35.025598577Z 61 PC: 12ea4 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:58:35.033064961Z 63 PC: 12eb1 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:58:35.040338251Z 66 PC: 12eba | Move file pointer
2018-12-17T22:58:35.043180473Z 64 PC: 12ed0 | Write file or device (Write 276 bytes on handle 5)
2018-12-17T22:58:35.051932684Z 66 PC: 12ed9 | Move file pointer
2018-12-17T22:58:35.053805293Z 64 PC: 12ee4 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:58:35.062160047Z 87 PC: 12ef7 | Get or set file date and time
2018-12-17T22:58:35.06454536Z 62 PC: 12efb | Close file
2018-12-17T22:58:35.073090101Z 67 PC: 12f0a | Get or set file attributes
2018-12-17T22:58:35.084201946Z 26 PC: 12f11 | Set disk transfer address
2018-12-17T22:58:35.0865128Z 37 PC: 12f1a | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')