Sample viewer

vx.netlux.org/Virus.DOS.RatSoft.828

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:43:30.315753163Z 78 PC: 12c3e | Find first file
2018-12-17T22:43:30.323851312Z 87 PC: 12c81 | Get or set file date and time
2018-12-17T22:43:30.33270626Z 67 PC: 12c9b | Get or set file attributes
2018-12-17T22:43:30.350731104Z 61 PC: 12ca8 | Open file (Filename = 'AAAAAAAAAAAAAAAAAAAAAAAAAAAAAA´ ºÍ!Í 3')
2018-12-17T22:43:30.358736509Z 63 PC: 12cbe | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:43:30.366754585Z 66 PC: 12cd3 | Move file pointer
2018-12-17T22:43:30.368851953Z 66 PC: 12d0d | Move file pointer
2018-12-17T22:43:30.3709617Z 63 PC: 12d1f | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:43:30.374709886Z 66 PC: 12d4b | Move file pointer
2018-12-17T22:43:30.376391946Z 64 PC: 12d5b | Write file or device (Write 828 bytes on handle 5)
2018-12-17T22:43:30.386260668Z 66 PC: 12d6d | Move file pointer
2018-12-17T22:43:30.38847967Z 64 PC: 12d7d | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:43:30.396021488Z 9 PC: 12d86 | Display string (String= '!rº<´ Í!ƒ>Mÿt'‹M´>Í!º=µŠO¸CÍ!‹M¸W‹1‹3Í!.ƒ>ÿt¹»Š‡W.ˆCâöŒÈ£5ê¸LÍ! ratsoft co ')
2018-12-17T22:43:30.402962219Z 62 PC: 12d95 | Close file
2018-12-17T22:43:30.415035616Z 67 PC: 12da3 | Get or set file attributes
2018-12-17T22:43:30.426553356Z 87 PC: 12db4 | Get or set file date and time
2018-12-17T22:43:30.42858711Z 9 PC: 12aa2 | Display string (String= 'ABCDE - This is a 100 byte COM test, 1994 ')