Sample viewer

vx.netlux.org/Virus.DOS.Anni.453

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:07:57.092621955Z 53 PC: 13054 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:07:57.094266734Z 37 PC: 13065 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:07:57.09536962Z 26 PC: 12f2b | Set disk transfer address
2018-12-17T23:07:57.096329863Z 78 PC: 12f56 | Find first file
2018-12-17T23:07:57.102786554Z 61 PC: 12f61 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:07:57.109860801Z 66 PC: 1302f | Move file pointer
2018-12-17T23:07:57.111348572Z 62 PC: 12f85 | Close file
2018-12-17T23:07:57.113172989Z 79 PC: 12f56 | Find next file
2018-12-17T23:07:57.124542079Z 61 PC: 12f61 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:07:57.130980106Z 66 PC: 1302f | Move file pointer
2018-12-17T23:07:57.132702468Z 62 PC: 12f85 | Close file
2018-12-17T23:07:57.135047659Z 79 PC: 12f56 | Find next file
2018-12-17T23:07:57.137536317Z 61 PC: 12f61 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:07:57.144038523Z 66 PC: 1302f | Move file pointer
2018-12-17T23:07:57.146420996Z 62 PC: 12f85 | Close file
2018-12-17T23:07:57.148658937Z 79 PC: 12f56 | Find next file
2018-12-17T23:07:57.151628263Z 61 PC: 12f61 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:07:57.162110559Z 66 PC: 1302f | Move file pointer
2018-12-17T23:07:57.163165086Z 62 PC: 12f85 | Close file
2018-12-17T23:07:57.164877856Z 79 PC: 12f56 | Find next file
2018-12-17T23:07:57.167353329Z 61 PC: 12f61 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:07:57.17155885Z 66 PC: 1302f | Move file pointer
2018-12-17T23:07:57.172991932Z 62 PC: 12f85 | Close file
2018-12-17T23:07:57.174822487Z 79 PC: 12f56 | Find next file
2018-12-17T23:07:57.176622441Z 61 PC: 12f61 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:07:57.180660401Z 66 PC: 1302f | Move file pointer
2018-12-17T23:07:57.182534489Z 62 PC: 12f85 | Close file
2018-12-17T23:07:57.183797915Z 79 PC: 12f56 | Find next file
2018-12-17T23:07:57.185409137Z 61 PC: 12f61 | Open file (Filename = 'PAH.COM')
2018-12-17T23:07:57.192112089Z 66 PC: 1302f | Move file pointer
2018-12-17T23:07:57.194810318Z 62 PC: 12f85 | Close file
2018-12-17T23:07:57.196059982Z 79 PC: 12f56 | Find next file
2018-12-17T23:07:57.199093582Z 26 PC: 12f3f | Set disk transfer address
2018-12-17T23:07:57.200218178Z 37 PC: 13075 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')