Sample viewer

vx.netlux.org/Virus.DOS.Pepper.490

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:46:06.11519402Z 26 PC: 16d3f | Set disk transfer address
2018-12-17T22:46:06.116988576Z 71 PC: 16d4a | Get current directory
2018-12-17T22:46:06.12004171Z 78 PC: 16dcc | Find first file
2018-12-17T22:46:06.126014462Z 61 PC: 16d95 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:46:06.13333247Z 63 PC: 16da6 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:46:06.139674954Z 66 PC: 16daf | Move file pointer
2018-12-17T22:46:06.141099904Z 64 PC: 16ddf | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:06.144464392Z 64 PC: 16df8 | Write file or device (Write 485 bytes on handle 5)
2018-12-17T22:46:06.15971979Z 66 PC: 16e04 | Move file pointer
2018-12-17T22:46:06.161344144Z 64 PC: 16e23 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:46:06.168173792Z 87 PC: 16e35 | Get or set file date and time
2018-12-17T22:46:06.169560989Z 62 PC: 16e39 | Close file
2018-12-17T22:46:06.1770053Z 59 PC: 16d8b | Change current directory
2018-12-17T22:46:06.186225666Z 59 PC: 16d78 | Change current directory
2018-12-17T22:46:06.190391943Z 26 PC: 16e75 | Set disk transfer address
2018-12-17T22:46:06.191541998Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=000042D7h/0000017111d bytes. ')
2018-12-17T22:46:06.201892714Z 76 PC: 12a86 | Terminate with return code (Return code = '36')