Sample viewer

vx.netlux.org/Virus.DOS.Spooky.392

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:38:54.712850582Z 47 PC: 12a52 | Get disk transfer address
2018-12-17T22:38:54.714446578Z 26 PC: 12a5e | Set disk transfer address
2018-12-17T22:38:54.715560456Z 78 PC: 12a76 | Find first file
2018-12-17T22:38:54.721932345Z 61 PC: 12a84 | Open file (Filename = 'TEST.EXE')
2018-12-17T22:38:54.728473143Z 63 PC: 12a91 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:38:54.731345029Z 66 PC: 12adf | Move file pointer
2018-12-17T22:38:54.732622208Z 64 PC: 12b3b | Write file or device (Write 392 bytes on handle 5)
2018-12-17T22:38:54.749343507Z 66 PC: 12b44 | Move file pointer
2018-12-17T22:38:54.751651045Z 64 PC: 12b4f | Write file or device (Write 26 bytes on handle 5)
2018-12-17T22:38:54.758352221Z 62 PC: 12b53 | Close file
2018-12-17T22:38:54.766375503Z 79 PC: 12a76 | Find next file
2018-12-17T22:38:54.774646824Z 26 PC: 12b5e | Set disk transfer address