Sample viewer

vx.netlux.org/Virus.DOS.Caterpillar.e

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:24:38.482629772Z 53 PC: 13f36 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:24:38.484884788Z 61 PC: 13b85 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T22:24:38.493770833Z 37 PC: 13b94 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:24:38.495144829Z 66 PC: 13ba3 | Move file pointer
2018-12-17T22:24:38.496758638Z 63 PC: 13bb1 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:24:38.500873104Z 62 PC: 13bb5 | Close file
2018-12-17T22:24:38.50340919Z 37 PC: 13bc4 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:24:38.50509317Z 61 PC: 13c04 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T22:24:38.512724813Z 63 PC: 13c18 | Read file or device (Read 12 bytes on handle 5)
2018-12-17T22:24:38.516172954Z 66 PC: 13c21 | Move file pointer
2018-12-17T22:24:38.518074199Z 64 PC: 13c4b | Write file or device (Write 1586 bytes on handle 5)
2018-12-17T22:24:38.863431495Z 66 PC: 13c54 | Move file pointer
2018-12-17T22:24:38.879503277Z 64 PC: 13c62 | Write file or device (Write 12 bytes on handle 5)
2018-12-17T22:24:38.889861194Z 62 PC: 13c6a | Close file