Sample viewer

vx.netlux.org/Virus.DOS.Rycho.1024

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:59:22.122257701Z 78 PC: 13c95 | Find first file
2018-12-17T22:59:22.128414332Z 47 PC: 13c9e | Get disk transfer address
2018-12-17T22:59:22.129416474Z 61 PC: 13cac | Open file (Filename = 'TEST.EXE')
2018-12-17T22:59:22.135525897Z 87 PC: 13cba | Get or set file date and time
2018-12-17T22:59:22.137307375Z 66 PC: 13ce1 | Move file pointer
2018-12-17T22:59:22.138695825Z 66 PC: 13cf3 | Move file pointer
2018-12-17T22:59:22.140236343Z 63 PC: 13d02 | Read file or device (Read 32 bytes on handle 5)
2018-12-17T22:59:22.142900159Z 66 PC: 13d6f | Move file pointer
2018-12-17T22:59:22.144374796Z 64 PC: 13d7a | Write file or device (Write 32 bytes on handle 5)
2018-12-17T22:59:22.146758872Z 66 PC: 13d85 | Move file pointer
2018-12-17T22:59:22.147932375Z 64 PC: 13da4 | Write file or device (Write 16 bytes on handle 5)
2018-12-17T22:59:22.155117086Z 66 PC: 13daf | Move file pointer
2018-12-17T22:59:22.156741917Z 64 PC: 13dc5 | Write file or device (Write 1024 bytes on handle 5)
2018-12-17T22:59:22.298169307Z 87 PC: 13dd2 | Get or set file date and time
2018-12-17T22:59:22.303690179Z 62 PC: 13dd6 | Close file
2018-12-17T22:59:22.311399965Z 116 PC: 1788c | UNKNOWN!