Sample viewer

vx.netlux.org/Virus.DOS.Rikki.1970

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:11:25.381049997Z 47 PC: 12b4d | Get disk transfer address
2018-12-17T23:11:25.383074438Z 171 PC: 12cf0 | UNKNOWN!
2018-12-17T23:11:25.383923619Z 26 PC: 12b98 | Set disk transfer address
2018-12-17T23:11:25.385045466Z 78 PC: 12bbe | Find first file
2018-12-17T23:11:25.392084298Z 67 PC: 12bcf | Get or set file attributes
2018-12-17T23:11:25.397592368Z 67 PC: 12bd7 | Get or set file attributes
2018-12-17T23:11:25.416062175Z 61 PC: 12bdc | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:11:25.423962359Z 66 PC: 12be7 | Move file pointer
2018-12-17T23:11:25.42537993Z 66 PC: 12bf3 | Move file pointer
2018-12-17T23:11:25.426805189Z 63 PC: 12bfe | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:11:25.433392112Z 66 PC: 12c1b | Move file pointer
2018-12-17T23:11:25.450664367Z 63 PC: 12c26 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T23:11:25.453454884Z 66 PC: 12c2f | Move file pointer
2018-12-17T23:11:25.45585869Z 66 PC: 12c4c | Move file pointer
2018-12-17T23:11:25.458445391Z 64 PC: 12c5a | Write file or device (Write 1970 bytes on handle 5)
2018-12-17T23:11:25.466909665Z 66 PC: 12c63 | Move file pointer
2018-12-17T23:11:25.468596098Z 64 PC: 12c7b | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:11:25.476463326Z 62 PC: 12c7f | Close file
2018-12-17T23:11:25.484819706Z 67 PC: 12c96 | Get or set file attributes
2018-12-17T23:11:25.494742955Z 9 PC: 12cac | Display string (String= ' Demo virus #2 by Rikki Cate 21/9/90 File infected: ')
2018-12-17T23:11:25.502772306Z 9 PC: 12cb3 | Display string (String= 'SLEEP.COM')
2018-12-17T23:11:25.506578204Z 9 PC: 12cb9 | Display string (String= ' Press key to continue ')