Sample viewer

vx.netlux.org/Virus.DOS.SillyC.563

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:10:52.535818054Z 53 PC: 12b2f | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:10:52.5370196Z 37 PC: 12b38 | Set interrupt vector (Interrupt = '99' AKA 'Get DBCS lead byte table pointer')
2018-12-17T23:10:52.538525753Z 53 PC: 12b3d | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:10:52.539761456Z 37 PC: 12b46 | Set interrupt vector (Interrupt = '100' AKA 'Set wait for external event flag')
2018-12-17T23:10:52.541078904Z 37 PC: 12b52 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:10:52.542653296Z 37 PC: 12b5a | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:10:52.54394044Z 54 PC: 12b70 | Get free disk space
2018-12-17T23:10:52.554275287Z 26 PC: 12b7f | Set disk transfer address
2018-12-17T23:10:52.555943602Z 78 PC: 12b89 | Find first file
2018-12-17T23:10:52.562646711Z 61 PC: 12ba7 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:10:52.569838351Z 63 PC: 12bb8 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:10:52.578655104Z 66 PC: 12bd5 | Move file pointer
2018-12-17T23:10:52.580094496Z 63 PC: 12be5 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:10:52.582863446Z 66 PC: 12c16 | Move file pointer
2018-12-17T23:10:52.58466075Z 63 PC: 12c2e | Read file or device (Read 8 bytes on handle 5)
2018-12-17T23:10:52.587359093Z 66 PC: 12c40 | Move file pointer
2018-12-17T23:10:52.588778925Z 64 PC: 12c66 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:10:52.591764591Z 66 PC: 12c76 | Move file pointer
2018-12-17T23:10:52.593388337Z 64 PC: 12c8a | Write file or device (Write 563 bytes on handle 5)
2018-12-17T23:10:52.609064427Z 62 PC: 12c93 | Close file
2018-12-17T23:10:52.617945942Z 26 PC: 12c9a | Set disk transfer address
2018-12-17T23:10:52.620130365Z 53 PC: 12c9f | Get interrupt vector (Interrupt = '99' AKA 'Get DBCS lead byte table pointer')
2018-12-17T23:10:52.621496746Z 37 PC: 12ca8 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:10:52.622757931Z 53 PC: 12cad | Get interrupt vector (Interrupt = '100' AKA 'Set wait for external event flag')
2018-12-17T23:10:52.625434426Z 37 PC: 12cb6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:10:52.62685151Z 9 PC: 12aa2 | Display string (String= 'ABCDE - This is a 100 byte COM test, 1994 ')