Sample viewer

vx.netlux.org/Virus.DOS.Este.303

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:43:44.656220128Z 26 PC: 12cba | Set disk transfer address
2018-12-17T22:43:44.658091273Z 78 PC: 12cc6 | Find first file
2018-12-17T22:43:44.665273264Z 67 PC: 12ce4 | Get or set file attributes
2018-12-17T22:43:44.670922825Z 67 PC: 12cf0 | Get or set file attributes
2018-12-17T22:43:44.676477049Z 61 PC: 12cf5 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:43:44.682889848Z 63 PC: 12d07 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:43:44.688995191Z 66 PC: 12d17 | Move file pointer
2018-12-17T22:43:44.690916918Z 64 PC: 12d27 | Write file or device (Write 303 bytes on handle 5)
2018-12-17T22:43:44.705068124Z 66 PC: 12d32 | Move file pointer
2018-12-17T22:43:44.706796815Z 64 PC: 12d3b | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:43:44.714150668Z 87 PC: 12d4d | Get or set file date and time
2018-12-17T22:43:44.716687451Z 62 PC: 12d51 | Close file
2018-12-17T22:43:44.724546871Z 67 PC: 12d5f | Get or set file attributes
2018-12-17T22:43:44.729309782Z 9 PC: 12b6a | Display string (String= '(C) 1993 American Eagle Poblications Inc., All Rights Reserved. Unauthorized use will be prosecuted under applicable copyright and software piracy laws. HOST #6 - You have just released a virus!')
2018-12-17T22:43:44.738155295Z 76 PC: 12b6f | Terminate with return code (Return code = '0')