Sample viewer

vx.netlux.org/Virus.DOS.KYCC.506

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:18:42.733874006Z 26 PC: 12c6c | Set disk transfer address
2018-12-17T22:18:42.735334273Z 78 PC: 12c79 | Find first file
2018-12-17T22:18:42.74117598Z 61 PC: 12c84 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:18:42.747681464Z 63 PC: 12c96 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:18:42.754531704Z 66 PC: 12cba | Move file pointer
2018-12-17T22:18:42.756612492Z 64 PC: 12ccb | Write file or device (Write 506 bytes on handle 5)
2018-12-17T22:18:42.771624801Z 66 PC: 12cd7 | Move file pointer
2018-12-17T22:18:42.773454247Z 64 PC: 12ce6 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:18:42.780169387Z 62 PC: 12cec | Close file
2018-12-17T22:18:42.78804812Z 26 PC: 12cfa | Set disk transfer address
2018-12-17T22:18:42.789188023Z 26 PC: 12a72 | Set disk transfer address
2018-12-17T22:18:42.790850512Z 78 PC: 12a7f | Find first file
2018-12-17T22:18:42.796776797Z 61 PC: 12a8a | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:18:42.803043795Z 63 PC: 12a9c | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:18:42.806488692Z 62 PC: 12aad | Close file
2018-12-17T22:18:42.808140471Z 79 PC: 12a7f | Find next file
2018-12-17T22:18:42.810715964Z 61 PC: 12a8a | Open file (Filename = 'PRINT.COM')
2018-12-17T22:18:42.817553493Z 63 PC: 12a9c | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:18:42.823706161Z 66 PC: 12ac0 | Move file pointer
2018-12-17T22:18:42.824955584Z 64 PC: 12ad1 | Write file or device (Write 506 bytes on handle 5)
2018-12-17T22:18:42.833567792Z 66 PC: 12add | Move file pointer
2018-12-17T22:18:42.834804572Z 64 PC: 12aec | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:18:42.840976907Z 62 PC: 12af2 | Close file
2018-12-17T22:18:42.849383415Z 26 PC: 12b00 | Set disk transfer address