Sample viewer

vx.netlux.org/Virus.DOS.Armen.230.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:02:55.464041963Z 26 PC: 12a4e | Set disk transfer address
2018-12-17T23:02:55.466559509Z 78 PC: 12a58 | Find first file
2018-12-17T23:02:55.472809058Z 61 PC: 12a64 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:02:55.479601321Z 63 PC: 12a6f | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:02:55.486475576Z 66 PC: 12a95 | Move file pointer
2018-12-17T23:02:55.489254868Z 63 PC: 12aa1 | Read file or device (Read 230 bytes on handle 5)
2018-12-17T23:02:55.491937319Z 66 PC: 12aac | Move file pointer
2018-12-17T23:02:55.493635442Z 64 PC: 12ab8 | Write file or device (Write 230 bytes on handle 5)
2018-12-17T23:02:55.509458369Z 66 PC: 12ac1 | Move file pointer
2018-12-17T23:02:55.511113179Z 64 PC: 12acb | Write file or device (Write 230 bytes on handle 5)
2018-12-17T23:02:55.518068646Z 62 PC: 12acf | Close file
2018-12-17T23:02:55.550380269Z 26 PC: 12ad6 | Set disk transfer address
2018-12-17T23:02:55.551777374Z 9 PC: 12add | Display string (String= ' Virus Armenia v.0.3 ')
2018-12-17T23:02:55.557259231Z 26 PC: 12a4e | Set disk transfer address
2018-12-17T23:02:55.559896877Z 78 PC: 12a58 | Find first file
2018-12-17T23:02:55.566490668Z 61 PC: 12a64 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:02:55.573115336Z 63 PC: 12a6f | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:02:55.576926862Z 62 PC: 12a88 | Close file
2018-12-17T23:02:55.578830768Z 79 PC: 12a58 | Find next file
2018-12-17T23:02:55.581536909Z 61 PC: 12a64 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:02:55.587905671Z 63 PC: 12a6f | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:02:55.595530294Z 66 PC: 12a95 | Move file pointer
2018-12-17T23:02:55.597255739Z 63 PC: 12aa1 | Read file or device (Read 230 bytes on handle 5)
2018-12-17T23:02:55.600008635Z 66 PC: 12aac | Move file pointer
2018-12-17T23:02:55.602663894Z 64 PC: 12ab8 | Write file or device (Write 230 bytes on handle 5)
2018-12-17T23:02:55.605788082Z 66 PC: 12ac1 | Move file pointer
2018-12-17T23:02:55.607179364Z 64 PC: 12acb | Write file or device (Write 230 bytes on handle 5)
2018-12-17T23:02:55.611164977Z 62 PC: 12acf | Close file
2018-12-17T23:02:55.61924291Z 26 PC: 12ad6 | Set disk transfer address
2018-12-17T23:02:55.620595164Z 9 PC: 12add | Display string (String= ' Virus Armenia v.0.3 ')