Sample viewer

vx.netlux.org/Virus.DOS.Chad.749

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:30:52.277194817Z 78 PC: 12ab3 | Find first file
2018-12-17T22:30:52.284744462Z 47 PC: 12abc | Get disk transfer address
2018-12-17T22:30:52.286129746Z 61 PC: 12adf | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:30:52.293406299Z 63 PC: 12af9 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:30:52.30072357Z 66 PC: 12b02 | Move file pointer
2018-12-17T22:30:52.305917661Z 64 PC: 12b11 | Write file or device (Write 749 bytes on handle 5)
2018-12-17T22:30:52.321349223Z 66 PC: 12b1a | Move file pointer
2018-12-17T22:30:52.322928819Z 64 PC: 12b28 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:30:52.331069696Z 87 PC: 12b31 | Get or set file date and time
2018-12-17T22:30:52.333632003Z 62 PC: 12b35 | Close file
2018-12-17T22:30:52.343355297Z 76 PC: 12a47 | Terminate with return code (Return code = '0')