Sample viewer

vx.netlux.org/Virus.DOS.Sister.888

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:12:27.237422189Z 26 PC: 12a62 | Set disk transfer address
2018-12-17T22:12:27.239656435Z 53 PC: 12a71 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:12:27.240971913Z 37 PC: 12a80 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:12:27.242176731Z 71 PC: 12aa0 | Get current directory
2018-12-17T22:12:27.24551216Z 65 PC: 12aa7 | Delete file (Filename = ':\COMMAND.COM')
2018-12-17T22:12:27.250713945Z 65 PC: 12aae | Delete file (Filename = '')
2018-12-17T22:12:27.258805489Z 65 PC: 12ab5 | Delete file (Filename = '')
2018-12-17T22:12:27.26516113Z 78 PC: 12acb | Find first file
2018-12-17T22:12:27.271694425Z 78 PC: 12ae3 | Find first file
2018-12-17T22:12:27.280896098Z 78 PC: 12af0 | Find first file
2018-12-17T22:12:27.285270062Z 59 PC: 12afc | Change current directory
2018-12-17T22:12:27.290015535Z 59 PC: 12b0c | Change current directory
2018-12-17T22:12:27.29479189Z 37 PC: 12c5d | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:12:27.295772904Z 59 PC: 12c65 | Change current directory
2018-12-17T22:12:27.297972218Z 26 PC: 12c7e | Set disk transfer address