Sample viewer

vx.netlux.org/Virus.DOS.Ash.317.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:57:01.422459891Z 26 PC: 13e5d | Set disk transfer address
2018-12-17T21:57:01.424622871Z 78 PC: 13e68 | Find first file
2018-12-17T21:57:01.430904159Z 67 PC: 13e93 | Get or set file attributes
2018-12-17T21:57:01.446951261Z 61 PC: 13eb2 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:57:01.4596873Z 66 PC: 13ec0 | Move file pointer
2018-12-17T21:57:01.46139846Z 63 PC: 13ecc | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:57:01.467755175Z 66 PC: 13ef4 | Move file pointer
2018-12-17T21:57:01.471545798Z 64 PC: 13eff | Write file or device (Write 4 bytes on handle 5)
2018-12-17T21:57:01.477764332Z 66 PC: 13f09 | Move file pointer
2018-12-17T21:57:01.47946628Z 64 PC: 13f14 | Write file or device (Write 0 bytes on handle 5)
2018-12-17T21:57:01.488135445Z 67 PC: 13f1d | Get or set file attributes
2018-12-17T21:57:01.493078277Z 87 PC: 13f2a | Get or set file date and time
2018-12-17T21:57:01.494902228Z 62 PC: 13f2e | Close file
2018-12-17T21:57:01.502102003Z 26 PC: 13f35 | Set disk transfer address
2018-12-17T21:57:01.504715018Z 9 PC: 12a85 | Display string (String= 'Sophos Ltd, Oxford sacrificial COM goat 1400H bytes long ')
2018-12-17T21:57:01.510397011Z 0 PC: 12a89 | Program terminate