Sample viewer

vx.netlux.org/Virus.DOS.NeverOne.442

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:43:41.482223821Z 26 PC: 12b21 | Set disk transfer address
2018-12-17T22:43:41.484617253Z 78 PC: 12b2c | Find first file
2018-12-17T22:43:41.490649205Z 61 PC: 12be3 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:43:41.497248031Z 66 PC: 12bf2 | Move file pointer
2018-12-17T22:43:41.499169485Z 63 PC: 12bfd | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:43:41.509178419Z 250 PC: 12c46 | UNKNOWN!
2018-12-17T22:43:41.509938677Z 66 PC: 12b40 | Move file pointer
2018-12-17T22:43:41.511198858Z 63 PC: 12b4b | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:43:41.514075662Z 66 PC: 12b54 | Move file pointer
2018-12-17T22:43:41.515785916Z 64 PC: 12b5f | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:43:41.51840069Z 66 PC: 12b75 | Move file pointer
2018-12-17T22:43:41.520567579Z 64 PC: 12b80 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:43:41.523159297Z 66 PC: 12b89 | Move file pointer
2018-12-17T22:43:41.525224892Z 64 PC: 12cba | Write file or device (Write 439 bytes on handle 5)
2018-12-17T22:43:41.541160966Z 62 PC: 12ba1 | Close file
2018-12-17T22:43:41.549693988Z 65 PC: 12ba9 | Delete file (Filename = 'CHKLIST.MS')
2018-12-17T22:43:41.555953396Z 26 PC: 12bb0 | Set disk transfer address