Sample viewer

vx.netlux.org/Virus.DOS.Nygus.397

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:35:01.080957009Z 47 PC: 15171 | Get disk transfer address
2018-12-17T22:35:01.083628963Z 71 PC: 15183 | Get current directory
2018-12-17T22:35:01.086451143Z 59 PC: 15194 | Change current directory
2018-12-17T22:35:01.090263697Z 26 PC: 1519c | Set disk transfer address
2018-12-17T22:35:01.093532866Z 78 PC: 151a7 | Find first file
2018-12-17T22:35:01.097888167Z 61 PC: 151e1 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:35:01.102305631Z 66 PC: 151ed | Move file pointer
2018-12-17T22:35:01.104272223Z 63 PC: 151f8 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:35:01.10844886Z 66 PC: 15202 | Move file pointer
2018-12-17T22:35:01.109621001Z 64 PC: 1521b | Write file or device (Write 7 bytes on handle 5)
2018-12-17T22:35:01.113462871Z 66 PC: 15225 | Move file pointer
2018-12-17T22:35:01.117783691Z 64 PC: 15230 | Write file or device (Write 397 bytes on handle 5)
2018-12-17T22:35:01.132189705Z 87 PC: 15235 | Get or set file date and time
2018-12-17T22:35:01.137786146Z 87 PC: 15242 | Get or set file date and time
2018-12-17T22:35:01.139353536Z 62 PC: 15246 | Close file
2018-12-17T22:35:01.147136782Z 59 PC: 15251 | Change current directory
2018-12-17T22:35:01.156157467Z 26 PC: 15257 | Set disk transfer address
2018-12-17T22:35:01.157598042Z 9 PC: 12a51 | Display string (String= 'This is a sample! (10.000 bytes)')
2018-12-17T22:35:01.159953211Z 76 PC: 12a56 | Terminate with return code (Return code = '0')