Sample viewer

vx.netlux.org/Virus.DOS.PolyVirus.731

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:04:24.066682872Z 53 PC: 12aa0 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:04:24.071506916Z 37 PC: 12aaf | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:04:24.072970309Z 25 PC: 12b62 | Get default drive
2018-12-17T22:04:24.074059723Z 14 PC: 12b73 | Set default drive (Drive = 'C')
2018-12-17T22:04:24.077618096Z 47 PC: 12b83 | Get disk transfer address
2018-12-17T22:04:24.078666373Z 26 PC: 12b9c | Set disk transfer address
2018-12-17T22:04:24.079746044Z 78 PC: 12ba7 | Find first file
2018-12-17T22:04:24.08581664Z 67 PC: 12bd7 | Get or set file attributes
2018-12-17T22:04:24.091882896Z 67 PC: 12be9 | Get or set file attributes
2018-12-17T22:04:24.411241105Z 61 PC: 12bf0 | Open file (Filename = 'COMMAND.COM')
2018-12-17T22:04:24.418190225Z 66 PC: 12c05 | Move file pointer
2018-12-17T22:04:24.419768053Z 87 PC: 12c42 | Get or set file date and time
2018-12-17T22:04:24.421153965Z 66 PC: 12c68 | Move file pointer
2018-12-17T22:04:24.422601723Z 63 PC: 12c7b | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:04:24.426291462Z 66 PC: 12c86 | Move file pointer
2018-12-17T22:04:24.428384351Z 64 PC: 12c9d | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:04:24.43179821Z 66 PC: 12ca8 | Move file pointer
2018-12-17T22:04:24.434979175Z 64 PC: 12d15 | Write file or device (Write 731 bytes on handle 5)
2018-12-17T22:04:24.445806313Z 87 PC: 12d33 | Get or set file date and time
2018-12-17T22:04:24.447090392Z 62 PC: 12d37 | Close file
2018-12-17T22:04:24.452955687Z 26 PC: 12bc7 | Set disk transfer address
2018-12-17T22:04:24.454031518Z 37 PC: 12b31 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:04:24.455286034Z 14 PC: 12b4a | Set default drive (Drive = 'A')