Sample viewer

vx.netlux.org/Virus.DOS.AAA.807

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:25:31.67609041Z 78 PC: 12b1f | Find first file
2018-12-17T22:25:31.682898268Z 61 PC: 12b5f | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:25:31.689869308Z 66 PC: 12ba4 | Move file pointer
2018-12-17T22:25:31.691964765Z 63 PC: 12bd0 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:25:31.699229407Z 66 PC: 12c25 | Move file pointer
2018-12-17T22:25:31.703879343Z 63 PC: 12c51 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:25:31.706349162Z 66 PC: 12c85 | Move file pointer
2018-12-17T22:25:31.707774553Z 64 PC: 12ce3 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:25:31.711191504Z 66 PC: 12d0a | Move file pointer
2018-12-17T22:25:31.712581716Z 64 PC: 12d49 | Write file or device (Write 1 bytes on handle 5)
2018-12-17T22:25:31.715181798Z 64 PC: 12d6d | Write file or device (Write 807 bytes on handle 5)
2018-12-17T22:25:31.730455699Z 62 PC: 12d7d | Close file
2018-12-17T22:25:31.73914671Z 64 PC: 12a5b | Write file or device (Write 40 bytes on handle 1)
2018-12-17T22:25:31.744557006Z 76 PC: 12a68 | Terminate with return code (Return code = '40')