Sample viewer

vx.netlux.org/Virus.DOS.Invol.1401

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:18:14.369961449Z 61 PC: 13f31 | Open file (Filename = 'c:\config.sys')
2018-12-17T22:18:14.377878116Z 63 PC: 13f3f | Read file or device (Read 1024 bytes on handle 5)
2018-12-17T22:18:14.386721738Z 61 PC: 13fa7 | Open file (Filename = 'C:\WINDOWS\HIMEM.SYS')
2018-12-17T22:18:14.403228382Z 62 PC: 14044 | Close file
2018-12-17T22:18:14.40843178Z 63 PC: 14052 | Read file or device (Read 65535 bytes on handle 6)
2018-12-17T22:18:14.416381969Z 66 PC: 14087 | Move file pointer
2018-12-17T22:18:14.417879597Z 64 PC: 14099 | Write file or device (Write 20 bytes on handle 6)
2018-12-17T22:18:14.424324113Z 64 PC: 140a5 | Write file or device (Write 2812 bytes on handle 6)
2018-12-17T22:18:14.758352158Z 64 PC: 140b2 | Write file or device (Write 13824 bytes on handle 6)
2018-12-17T22:18:14.771545158Z 62 PC: 140b6 | Close file
2018-12-17T22:18:14.779773062Z 9 PC: 12a82 | Display string (Could not find end pointer)
2018-12-17T22:18:14.785201231Z 76 PC: 12a87 | Terminate with return code (Return code = '0')