Sample viewer

vx.netlux.org/Virus.DOS.ECW.570

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:44:45.484778184Z 26 PC: 12b01 | Set disk transfer address
2018-12-17T22:44:45.487060659Z 78 PC: 12b12 | Find first file
2018-12-17T22:44:45.493360339Z 61 PC: 12b48 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:44:45.500167969Z 63 PC: 12b76 | Read file or device (Read 65535 bytes on handle 5)
2018-12-17T22:44:45.509159068Z 62 PC: 12bf2 | Close file
2018-12-17T22:44:45.523987055Z 65 PC: 12bfb | Delete file (Filename = 'SLEEP.COM')
2018-12-17T22:44:45.541696714Z 60 PC: 12c09 | Create or truncate file
2018-12-17T22:44:45.557008596Z 61 PC: 12c19 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:44:45.56455993Z 64 PC: 12c2e | Write file or device (Write 977 bytes on handle 6)
2018-12-17T22:44:45.572822459Z 62 PC: 12c38 | Close file
2018-12-17T22:44:45.742384358Z 9 PC: 12c42 | Display string (String= 'Evil Crusader Warrior X will rule..!!!!!!!!!!')
2018-12-17T22:44:45.745709631Z 76 PC: 12a48 | Terminate with return code (Return code = '0')