Sample viewer

vx.netlux.org/Virus.DOS.Spooky.393

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:44:27.221864611Z 47 PC: 12a5f | Get disk transfer address
2018-12-17T22:44:27.224849146Z 26 PC: 12a6b | Set disk transfer address
2018-12-17T22:44:27.227429772Z 78 PC: 12a76 | Find first file
2018-12-17T22:44:27.234450469Z 61 PC: 12a84 | Open file (Filename = 'TEST.EXE')
2018-12-17T22:44:27.243313986Z 63 PC: 12a91 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:44:27.246890232Z 66 PC: 12ae8 | Move file pointer
2018-12-17T22:44:27.248963286Z 64 PC: 12b21 | Write file or device (Write 393 bytes on handle 5)
2018-12-17T22:44:27.264736641Z 66 PC: 12b47 | Move file pointer
2018-12-17T22:44:27.268298841Z 64 PC: 12b52 | Write file or device (Write 26 bytes on handle 5)
2018-12-17T22:44:27.275863399Z 62 PC: 12b56 | Close file
2018-12-17T22:44:27.285078676Z 79 PC: 12a76 | Find next file
2018-12-17T22:44:27.298162039Z 26 PC: 12b61 | Set disk transfer address