Sample viewer

vx.netlux.org/Virus.DOS.Ambulance.795

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:21:22.951119767Z 47 PC: 12d10 | Get disk transfer address
2018-12-17T22:21:22.9526016Z 26 PC: 12d23 | Set disk transfer address
2018-12-17T22:21:22.955154746Z 78 PC: 12d2d | Find first file
2018-12-17T22:21:22.962106264Z 79 PC: 12d4e | Find next file
2018-12-17T22:21:22.965600215Z 79 PC: 12d4e | Find next file
2018-12-17T22:21:22.968982626Z 26 PC: 12d6f | Set disk transfer address
2018-12-17T22:21:22.970260213Z 61 PC: 12bcd | Open file (Filename = 'HELLO.COM')
2018-12-17T22:21:22.977740965Z 63 PC: 12be0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:21:22.99967641Z 66 PC: 12c34 | Move file pointer
2018-12-17T22:21:23.001152952Z 87 PC: 12c44 | Get or set file date and time
2018-12-17T22:21:23.002475786Z 64 PC: 12c55 | Write file or device (Write 792 bytes on handle 5)
2018-12-17T22:21:23.016985134Z 64 PC: 12c64 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:21:23.025297982Z 66 PC: 12c71 | Move file pointer
2018-12-17T22:21:23.026944874Z 64 PC: 12c80 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:21:23.034773441Z 87 PC: 12c8b | Get or set file date and time
2018-12-17T22:21:23.036482813Z 62 PC: 12c93 | Close file
2018-12-17T22:21:23.044967237Z 47 PC: 12d10 | Get disk transfer address
2018-12-17T22:21:23.04632678Z 26 PC: 12d23 | Set disk transfer address
2018-12-17T22:21:23.047783322Z 78 PC: 12d2d | Find first file
2018-12-17T22:21:23.057985915Z 79 PC: 12d4e | Find next file
2018-12-17T22:21:23.061511153Z 26 PC: 12d6f | Set disk transfer address
2018-12-17T22:21:23.064243557Z 61 PC: 12bcd | Open file (Filename = 'C:\DOS\FORMAT.COM')
2018-12-17T22:21:23.072409314Z 63 PC: 12be0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:21:23.079047845Z 66 PC: 12c34 | Move file pointer
2018-12-17T22:21:23.081447445Z 87 PC: 12c44 | Get or set file date and time
2018-12-17T22:21:23.083085238Z 64 PC: 12c55 | Write file or device (Write 792 bytes on handle 5)
2018-12-17T22:21:23.443427726Z 64 PC: 12c64 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:21:23.448299975Z 66 PC: 12c71 | Move file pointer
2018-12-17T22:21:23.451253225Z 64 PC: 12c80 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:21:23.455304523Z 87 PC: 12c8b | Get or set file date and time
2018-12-17T22:21:23.458844554Z 62 PC: 12c93 | Close file
2018-12-17T22:21:23.46681358Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T22:21:23.471955091Z 76 PC: 12a86 | Terminate with return code (Return code = '36')