Sample viewer

vx.netlux.org/Virus.DOS.Khizhnjak.782

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:18:50.618829027Z 78 PC: 12bc8 | Find first file
2018-12-17T22:18:50.625749746Z 67 PC: 12c15 | Get or set file attributes
2018-12-17T22:18:50.721622138Z 61 PC: 12c23 | Open file (Filename = '=!s')
2018-12-17T22:18:50.730074252Z 63 PC: 12c3a | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:18:50.737321585Z 66 PC: 12c4f | Move file pointer
2018-12-17T22:18:50.739096758Z 66 PC: 12c89 | Move file pointer
2018-12-17T22:18:50.740562748Z 63 PC: 12c9d | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:18:50.743223857Z 66 PC: 12cc9 | Move file pointer
2018-12-17T22:18:50.745520964Z 64 PC: 12cdb | Write file or device (Write 782 bytes on handle 5)
2018-12-17T22:18:50.754809859Z 66 PC: 12ced | Move file pointer
2018-12-17T22:18:50.756483671Z 64 PC: 12cfe | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:18:50.765534351Z 9 PC: 12d1f | Display string (Could not find end pointer)
2018-12-17T22:18:50.767638927Z 62 PC: 12d2e | Close file
2018-12-17T22:18:50.775032579Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T22:18:50.779493903Z 76 PC: 12a86 | Terminate with return code (Return code = '36')