Sample viewer

vx.netlux.org/Virus.DOS.Gimon.2512

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:59:29.478768892Z 67 PC: 12a9c | Get or set file attributes
2018-12-17T22:59:29.826821529Z 90 PC: 12aa9 | Create unique file
2018-12-17T22:59:29.838191598Z 62 PC: 12aae | Close file
2018-12-17T22:59:29.840218577Z 65 PC: 12ab3 | Delete file (Filename = 'c:\ABAIDFDP')
2018-12-17T22:59:29.85038304Z 91 PC: 12acb | Create new file
2018-12-17T22:59:29.871580798Z 64 PC: 12ad7 | Write file or device (Write 2512 bytes on handle 5)
2018-12-17T22:59:29.881700397Z 62 PC: 12adb | Close file
2018-12-17T22:59:29.889819445Z 61 PC: 12aea | Open file (Filename = 'c:\config.sys')
2018-12-17T22:59:29.910348517Z 63 PC: 12af6 | Read file or device (Read 1000 bytes on handle 5)
2018-12-17T22:59:29.926091123Z 64 PC: 12b25 | Write file or device (Write 21 bytes on handle 5)
2018-12-17T22:59:29.929661223Z 62 PC: 12b29 | Close file
2018-12-17T22:59:29.939895717Z 58 PC: 12b2e | Remove subdirectory
2018-12-17T22:59:29.945156974Z 53 PC: 12b44 | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:59:29.947275386Z 37 PC: 12b4f | Set interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:59:29.950815108Z 37 PC: 12b5e | Set interrupt vector (Interrupt = '6' AKA 'Direct console I/O')