Sample viewer

vx.netlux.org/Virus.DOS.Zhel.629

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:04:34.507115379Z 64 PC: 12c5b | Write file or device (Write 0 bytes on handle 0)
2018-12-17T23:04:34.510569595Z 26 PC: 12c5b | Set disk transfer address
2018-12-17T23:04:34.512896091Z 71 PC: 12c5b | Get current directory
2018-12-17T23:04:34.517453573Z 78 PC: 12a9d | Find first file
2018-12-17T23:04:34.524104211Z 61 PC: 12c5b | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:04:34.533177225Z 63 PC: 12abb | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:04:34.540426039Z 87 PC: 12c5b | Get or set file date and time
2018-12-17T23:04:34.542624764Z 66 PC: 12c5b | Move file pointer
2018-12-17T23:04:34.545635096Z 64 PC: 12c05 | Write file or device (Write 629 bytes on handle 5)
2018-12-17T23:04:34.565444473Z 66 PC: 12c5b | Move file pointer
2018-12-17T23:04:34.567511861Z 64 PC: 12c1a | Write file or device (Write 4 bytes on handle 5)
2018-12-17T23:04:34.575712084Z 87 PC: 12c5b | Get or set file date and time
2018-12-17T23:04:34.578192299Z 62 PC: 12c26 | Close file
2018-12-17T23:04:34.587441134Z 26 PC: 12b76 | Set disk transfer address
2018-12-17T23:04:34.589065939Z 59 PC: 12b83 | Change current directory