Sample viewer

vx.netlux.org/Virus.DOS.Muze.1860

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:01:22.634029188Z 67 PC: 130f0 | Get or set file attributes
2018-12-17T23:01:22.641626424Z 61 PC: 130f0 | Open file (Filename = 'k')
2018-12-17T23:01:22.649727499Z 87 PC: 130f0 | Get or set file date and time
2018-12-17T23:01:22.651881656Z 63 PC: 130f0 | Read file or device (Read 28 bytes on handle 5)
2018-12-17T23:01:22.65606173Z 66 PC: 130f0 | Move file pointer
2018-12-17T23:01:22.659458746Z 66 PC: 12fc4 | Move file pointer
2018-12-17T23:01:22.661130104Z 63 PC: 12fce | Read file or device (Read 7 bytes on handle 5)
2018-12-17T23:01:22.664874652Z 66 PC: 130f0 | Move file pointer
2018-12-17T23:01:22.667679426Z 64 PC: 130f0 | Write file or device (Write 1853 bytes on handle 5)
2018-12-17T23:01:23.016920444Z 64 PC: 130ce | Write file or device (Write 7 bytes on handle 5)
2018-12-17T23:01:23.020978098Z 66 PC: 130f0 | Move file pointer
2018-12-17T23:01:23.023831075Z 64 PC: 130f0 | Write file or device (Write 28 bytes on handle 5)
2018-12-17T23:01:23.028300476Z 87 PC: 130f0 | Get or set file date and time
2018-12-17T23:01:23.030658866Z 62 PC: 130f0 | Close file
2018-12-17T23:01:23.040533737Z 65 PC: 130f0 | Delete file (Filename = 'COM1 �')
2018-12-17T23:01:23.047478104Z 75 PC: 12bab | Execute program
2018-12-17T23:01:23.054932057Z 74 PC: 12bcb | Reallocate memory
2018-12-17T23:01:23.057173623Z 82 PC: 12bd0 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:01:23.075709103Z 53 PC: 12c2d | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:01:23.077468004Z 37 PC: 12c44 | Set interrupt vector (Interrupt = '33' AKA 'Random read')