Sample viewer

vx.netlux.org/Virus.DOS.Faerie.286

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:20:44.760878077Z 26 PC: 12e3b | Set disk transfer address
2018-12-17T22:20:44.76335993Z 78 PC: 12e47 | Find first file
2018-12-17T22:20:44.76952156Z 53 PC: 12e80 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:20:44.770707644Z 37 PC: 12e90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:20:44.772740815Z 67 PC: 12e9d | Get or set file attributes
2018-12-17T22:20:45.060614641Z 61 PC: 12ea6 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:20:45.067499259Z 63 PC: 12eb3 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:20:45.073916506Z 66 PC: 12ebc | Move file pointer
2018-12-17T22:20:45.075479643Z 64 PC: 12ed2 | Write file or device (Write 286 bytes on handle 5)
2018-12-17T22:20:45.083256194Z 66 PC: 12edb | Move file pointer
2018-12-17T22:20:45.085589652Z 64 PC: 12ee6 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:20:45.093099108Z 87 PC: 12efd | Get or set file date and time
2018-12-17T22:20:45.094825886Z 62 PC: 12f01 | Close file
2018-12-17T22:20:45.102606653Z 67 PC: 12f10 | Get or set file attributes
2018-12-17T22:20:45.113428692Z 26 PC: 12f17 | Set disk transfer address
2018-12-17T22:20:45.115517604Z 37 PC: 12f20 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')