Sample viewer

vx.netlux.org/Virus.DOS.Caterpillar.j

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:12:17.537658234Z 53 PC: 17a17 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:12:17.539185404Z 61 PC: 17665 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T22:12:17.546041192Z 37 PC: 17674 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:12:17.547420676Z 66 PC: 17683 | Move file pointer
2018-12-17T22:12:17.550301644Z 63 PC: 17691 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:12:17.55331609Z 62 PC: 17695 | Close file
2018-12-17T22:12:17.556198757Z 37 PC: 176a4 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:12:17.557997758Z 61 PC: 176e4 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T22:12:17.564254173Z 87 PC: 17b61 | Get or set file date and time
2018-12-17T22:12:17.565725629Z 63 PC: 176fb | Read file or device (Read 12 bytes on handle 5)
2018-12-17T22:12:17.568958795Z 66 PC: 17704 | Move file pointer
2018-12-17T22:12:17.570543997Z 64 PC: 1772f | Write file or device (Write 1629 bytes on handle 5)
2018-12-17T22:12:17.908328176Z 66 PC: 17738 | Move file pointer
2018-12-17T22:12:17.911109153Z 64 PC: 17746 | Write file or device (Write 12 bytes on handle 5)
2018-12-17T22:12:17.914472399Z 87 PC: 17b7d | Get or set file date and time
2018-12-17T22:12:17.916342051Z 62 PC: 17751 | Close file
2018-12-17T22:12:17.925167114Z 99 PC: 13726 | Get DBCS lead byte table pointer
2018-12-17T22:12:17.926793453Z 68 PC: 13740 | I/O control for devices (Set for = '')
2018-12-17T22:12:17.928516077Z 68 PC: 1374b | I/O control for devices (Set for = '')
2018-12-17T22:12:17.930657283Z 68 PC: 13756 | I/O control for devices (Set for = '')
2018-12-17T22:12:17.933997119Z 68 PC: 1375e | I/O control for devices (Set for = 'bgtS3[r2W<t<u6u>>W')
2018-12-17T22:12:17.935855069Z 48 PC: 13763 | Get DOS version
2018-12-17T22:12:17.937787622Z 64 PC: 139e5 | Write file or device (Write 29 bytes on handle 2)
2018-12-17T22:12:17.947919928Z 64 PC: 139e5 | Write file or device (Write 9 bytes on handle 1)
2018-12-17T22:12:17.951125544Z 64 PC: 139e5 | Write file or device (Write 17 bytes on handle 1)
2018-12-17T22:12:17.956715977Z 76 PC: 147f8 | Terminate with return code (Return code = '4')