Sample viewer

vx.netlux.org/Virus.DOS.Faerie.276.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:10:32.4604332Z 26 PC: 12a57 | Set disk transfer address
2018-12-17T22:10:32.461862857Z 78 PC: 12a62 | Find first file
2018-12-17T22:10:32.467751952Z 53 PC: 12a97 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:10:32.468807505Z 37 PC: 12aa7 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:10:32.4702195Z 67 PC: 12ab4 | Get or set file attributes
2018-12-17T22:10:32.485137003Z 61 PC: 12abd | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:10:32.491448888Z 63 PC: 12aca | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:10:32.498057905Z 66 PC: 12ad3 | Move file pointer
2018-12-17T22:10:32.499428707Z 64 PC: 12ae9 | Write file or device (Write 276 bytes on handle 5)
2018-12-17T22:10:32.507096202Z 66 PC: 12af2 | Move file pointer
2018-12-17T22:10:32.508645592Z 64 PC: 12afd | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:10:32.527866422Z 87 PC: 12b10 | Get or set file date and time
2018-12-17T22:10:32.529400209Z 62 PC: 12b14 | Close file
2018-12-17T22:10:32.538432099Z 67 PC: 12b23 | Get or set file attributes
2018-12-17T22:10:32.546170594Z 26 PC: 12b2a | Set disk transfer address
2018-12-17T22:10:32.554046764Z 37 PC: 12b33 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')