Sample viewer

vx.netlux.org/Virus.DOS.Muze.1796

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:47:15.414713691Z 67 PC: 130b0 | Get or set file attributes
2018-12-17T22:47:15.420535442Z 61 PC: 130b0 | Open file (Filename = '')
2018-12-17T22:47:15.426450001Z 87 PC: 130b0 | Get or set file date and time
2018-12-17T22:47:15.42782753Z 63 PC: 130b0 | Read file or device (Read 28 bytes on handle 5)
2018-12-17T22:47:15.430780088Z 66 PC: 130b0 | Move file pointer
2018-12-17T22:47:15.43278055Z 66 PC: 12f84 | Move file pointer
2018-12-17T22:47:15.434347043Z 63 PC: 12f8e | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:47:15.437401635Z 66 PC: 130b0 | Move file pointer
2018-12-17T22:47:15.438870866Z 64 PC: 130b0 | Write file or device (Write 1789 bytes on handle 5)
2018-12-17T22:47:15.78777573Z 64 PC: 1308e | Write file or device (Write 7 bytes on handle 5)
2018-12-17T22:47:15.791488604Z 66 PC: 130b0 | Move file pointer
2018-12-17T22:47:15.79406621Z 64 PC: 130b0 | Write file or device (Write 28 bytes on handle 5)
2018-12-17T22:47:15.797577057Z 87 PC: 130b0 | Get or set file date and time
2018-12-17T22:47:15.799054881Z 62 PC: 130b0 | Close file
2018-12-17T22:47:15.806945714Z 65 PC: 130b0 | Delete file (Filename = ' Y')
2018-12-17T22:47:15.812964539Z 75 PC: 12bab | Execute program
2018-12-17T22:47:15.817677753Z 74 PC: 12bcb | Reallocate memory
2018-12-17T22:47:15.819962625Z 82 PC: 12bd0 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:47:15.834557232Z 53 PC: 12c2d | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:47:15.836192615Z 37 PC: 12c44 | Set interrupt vector (Interrupt = '33' AKA 'Random read')