Sample viewer

vx.netlux.org/Virus.DOS.VCL_MUT.Empire.248

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:04:26.017620599Z 78 PC: 12a5d | Find first file
2018-12-17T23:04:26.021927368Z 47 PC: 12a6d | Get disk transfer address
2018-12-17T23:04:26.022918436Z 61 PC: 12a90 | Open file (Filename = 'TEST.EXE')
2018-12-17T23:04:26.029368544Z 63 PC: 12a9b | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:26.034510512Z 62 PC: 12a9f | Close file
2018-12-17T23:04:26.036298821Z 67 PC: 12abd | Get or set file attributes
2018-12-17T23:04:26.052602252Z 61 PC: 12ac2 | Open file (Filename = 'TEST.EXE')
2018-12-17T23:04:26.059402299Z 64 PC: 12acd | Write file or device (Write 248 bytes on handle 5)
2018-12-17T23:04:26.062154445Z 87 PC: 12ad8 | Get or set file date and time
2018-12-17T23:04:26.063512032Z 62 PC: 12adc | Close file
2018-12-17T23:04:26.070823788Z 67 PC: 12ae9 | Get or set file attributes
2018-12-17T23:04:26.084324168Z 78 PC: 12a5d | Find first file
2018-12-17T23:04:26.090467178Z 47 PC: 12a6d | Get disk transfer address
2018-12-17T23:04:26.091942114Z 61 PC: 12a90 | Open file (Filename = 'TEST.EXE')
2018-12-17T23:04:26.099113689Z 63 PC: 12a9b | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:26.105453479Z 62 PC: 12a9f | Close file
2018-12-17T23:04:26.107443475Z 78 PC: 12a5d | Find first file
2018-12-17T23:04:26.113992695Z 47 PC: 12a6d | Get disk transfer address
2018-12-17T23:04:26.115151171Z 61 PC: 12a90 | Open file (Filename = 'TEST.EXE')
2018-12-17T23:04:26.121866906Z 63 PC: 12a9b | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:26.126152346Z 62 PC: 12a9f | Close file
2018-12-17T23:04:26.128397972Z 76 PC: 12a53 | Terminate with return code (Return code = '0')