Sample viewer

vx.netlux.org/Virus.DOS.Rescue.3774

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:07:37.645450666Z 25 PC: 12a68 | Get default drive
2018-12-17T23:07:37.647095877Z 68 PC: 12a84 | I/O control for devices (Set for = '')
2018-12-17T23:07:37.657858885Z 71 PC: 12bbc | Get current directory
2018-12-17T23:07:37.660035909Z 59 PC: 12bcd | Change current directory
2018-12-17T23:07:37.663454936Z 78 PC: 12ccc | Find first file
2018-12-17T23:07:37.669549496Z 47 PC: 12ce1 | Get disk transfer address
2018-12-17T23:07:37.670581654Z 67 PC: 12d22 | Get or set file attributes
2018-12-17T23:07:37.676587307Z 67 PC: 12d32 | Get or set file attributes
2018-12-17T23:07:37.686875743Z 61 PC: 12d3b | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:07:37.693490561Z 66 PC: 12d4d | Move file pointer
2018-12-17T23:07:37.697223019Z 63 PC: 12d57 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T23:07:37.703800317Z 66 PC: 12d8f | Move file pointer
2018-12-17T23:07:37.705461551Z 87 PC: 12d99 | Get or set file date and time
2018-12-17T23:07:37.708450219Z 108 PC: 12dab | Extended open/create file
2018-12-17T23:07:37.71989278Z 63 PC: 12dbc | Read file or device (Read 1024 bytes on handle 5)
2018-12-17T23:07:37.72229611Z 64 PC: 12dce | Write file or device (Write 407 bytes on handle 6)
2018-12-17T23:07:37.726035506Z 66 PC: 12de8 | Move file pointer
2018-12-17T23:07:37.727707743Z 66 PC: 12df8 | Move file pointer
2018-12-17T23:07:37.728951252Z 64 PC: 12e06 | Write file or device (Write 3758 bytes on handle 5)
2018-12-17T23:07:37.739930549Z 63 PC: 12e14 | Read file or device (Read 1024 bytes on handle 6)
2018-12-17T23:07:37.741957852Z 64 PC: 12e26 | Write file or device (Write 407 bytes on handle 5)
2018-12-17T23:07:37.747264143Z 64 PC: 12e3e | Write file or device (Write 16 bytes on handle 5)
2018-12-17T23:07:37.749469184Z 87 PC: 12e4a | Get or set file date and time
2018-12-17T23:07:37.751154892Z 67 PC: 12e57 | Get or set file attributes
2018-12-17T23:07:37.757818687Z 62 PC: 12e5f | Close file
2018-12-17T23:07:37.762549152Z 62 PC: 12e67 | Close file
2018-12-17T23:07:37.767411105Z 65 PC: 12e6e | Delete file (Filename = 'tmp.tmp')
2018-12-17T23:07:37.779912884Z 59 PC: 137ec | Change current directory