Sample viewer

vx.netlux.org/Virus.DOS.Mainman.200

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:03:55.96475031Z 26 PC: 13e5f | Set disk transfer address
2018-12-17T23:03:55.966324152Z 71 PC: 13e69 | Get current directory
2018-12-17T23:03:55.971811795Z 78 PC: 13e73 | Find first file
2018-12-17T23:03:55.979318424Z 61 PC: 13e86 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:03:55.987737717Z 63 PC: 13e92 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:03:55.996120613Z 66 PC: 13eb2 | Move file pointer
2018-12-17T23:03:55.997858734Z 64 PC: 13ebf | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:03:56.000945405Z 66 PC: 13ec7 | Move file pointer
2018-12-17T23:03:56.022206655Z 64 PC: 13ed4 | Write file or device (Write 200 bytes on handle 5)
2018-12-17T23:03:56.038136286Z 62 PC: 13ed8 | Close file
2018-12-17T23:03:56.047241266Z 59 PC: 13ee0 | Change current directory
2018-12-17T23:03:56.052375792Z 59 PC: 13eea | Change current directory
2018-12-17T23:03:56.054555154Z 26 PC: 13ef3 | Set disk transfer address
2018-12-17T23:03:56.056144877Z 66 PC: 13efa | Move file pointer
2018-12-17T23:03:56.05846019Z 9 PC: 12a85 | Display string (String= 'Sophos Ltd, Oxford sacrificial COM goat 1400H bytes long ')
2018-12-17T23:03:56.065976965Z 0 PC: 12a89 | Program terminate