Sample viewer




Time Syscall Op Syscall Name
2018-12-17T22:40:14.335085864Z 26 PC: 12e43 | Set disk transfer address
2018-12-17T22:40:14.336966836Z 78 PC: 12e53 | Find first file
2018-12-17T22:40:14.344581985Z 61 PC: 12eb3 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:40:14.351853342Z 87 PC: 12ebf | Get or set file date and time
2018-12-17T22:40:14.353732513Z 63 PC: 12ed0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:40:14.360816636Z 66 PC: 12ee4 | Move file pointer
2018-12-17T22:40:14.362280491Z 64 PC: 12f0a | Write file or device (Write 341 bytes on handle 5)
2018-12-17T22:40:14.790862522Z 66 PC: 12f1e | Move file pointer
2018-12-17T22:40:14.795111165Z 64 PC: 12f2c | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:40:14.802358752Z 87 PC: 12f45 | Get or set file date and time
2018-12-17T22:40:14.803977296Z 62 PC: 12f49 | Close file
2018-12-17T22:40:14.813158902Z 26 PC: 12f50 | Set disk transfer address
2018-12-17T22:40:14.814780128Z 9 PC: 12b36 | Display string (String= ' YOU HAVE JUST RELEASED A VIRUS! Entry=3h, Size=1000, Stack=0, Overlay(0)=0 not loaded, Fill=FFFF* COM file, code at start, JMP at start, SS:SP != CS:IP ')
2018-12-17T22:40:14.828087687Z 76 PC: 12b3a | Terminate with return code (Return code = '36')