Sample viewer

vx.netlux.org/Virus.DOS.Khizhnjak.406

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:54:38.970705065Z 26 PC: 12baf | Set disk transfer address
2018-12-17T21:54:38.972407454Z 78 PC: 12bb9 | Find first file
2018-12-17T21:54:38.97808017Z 61 PC: 12bc5 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:54:38.984721253Z 63 PC: 12c0d | Read file or device (Read 3 bytes on handle 5)
2018-12-17T21:54:38.991344272Z 66 PC: 12c39 | Move file pointer
2018-12-17T21:54:38.992571337Z 63 PC: 12c49 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T21:54:38.994910345Z 66 PC: 12c68 | Move file pointer
2018-12-17T21:54:38.996367603Z 64 PC: 12c86 | Write file or device (Write 406 bytes on handle 5)
2018-12-17T21:54:39.012339278Z 66 PC: 12c95 | Move file pointer
2018-12-17T21:54:39.013536423Z 64 PC: 12ca5 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T21:54:39.019782568Z 87 PC: 12cb6 | Get or set file date and time
2018-12-17T21:54:39.021229329Z 62 PC: 12cc6 | Close file
2018-12-17T21:54:39.028505858Z 26 PC: 12ce5 | Set disk transfer address
2018-12-17T21:54:39.029461521Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T21:54:39.034556008Z 76 PC: 12a86 | Terminate with return code (Return code = '36')