Sample viewer

vx.netlux.org/Virus.DOS.Search.778

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:17:06.534642871Z 53 PC: 12e62 | Get interrupt vector (Interrupt = '51' AKA 'Get or set Ctrl-Break')
2018-12-17T22:17:06.536739928Z 48 PC: 12e89 | Get DOS version
2018-12-17T22:17:06.538540482Z 25 PC: 12e6c | Get default drive
2018-12-17T22:17:06.541026406Z 78 PC: 12f34 | Find first file
2018-12-17T22:17:06.547211328Z 61 PC: 12f73 | Open file (Filename = 'c:\COMMAND.COM')
2018-12-17T22:17:06.554503421Z 63 PC: 12fe5 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:17:06.557380059Z 66 PC: 12ffc | Move file pointer
2018-12-17T22:17:06.559633466Z 63 PC: 13006 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:17:06.562891217Z 66 PC: 12f82 | Move file pointer
2018-12-17T22:17:06.564685036Z 63 PC: 12fac | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:17:06.567906153Z 66 PC: 12f8d | Move file pointer
2018-12-17T22:17:06.569915944Z 64 PC: 12fd4 | Write file or device (Write 778 bytes on handle 5)
2018-12-17T22:17:06.912617946Z 66 PC: 12f82 | Move file pointer
2018-12-17T22:17:06.91666404Z 64 PC: 12fc0 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T22:17:06.920375374Z 62 PC: 12fd9 | Close file
2018-12-17T22:17:06.928306553Z 9 PC: 12e26 | Display string (String= 'Hello - Copyright S & S International, 1990 ')