Sample viewer

vx.netlux.org/Virus.DOS.Digger.1000

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:47:29.470645559Z 61 PC: 12ffb | Open file (Filename = 'A:\TEST.COM')
2018-12-17T22:47:29.478054419Z 64 PC: 13007 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:47:29.482366099Z 66 PC: 13010 | Move file pointer
2018-12-17T22:47:29.484272751Z 66 PC: 1301b | Move file pointer
2018-12-17T22:47:29.486173101Z 64 PC: 13032 | Write file or device (Write 1000 bytes on handle 5)
2018-12-17T22:47:29.502998301Z 66 PC: 1303e | Move file pointer
2018-12-17T22:47:29.508391213Z 64 PC: 13042 | Write file or device (Write 0 bytes on handle 5)
2018-12-17T22:47:29.51787446Z 62 PC: 13046 | Close file
2018-12-17T22:47:29.527267096Z 74 PC: 13057 | Reallocate memory
2018-12-17T22:47:29.529179298Z 75 PC: 1307c | Execute program
2018-12-17T22:47:29.54514853Z 9 PC: 148a6 | Display string (String= 'Hello - This is a 5000 COM test file, 1993 ')
2018-12-17T22:47:29.552447934Z 77 PC: 13091 | Get program return code
2018-12-17T22:47:29.554572485Z 82 PC: 13308 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:47:29.556581579Z 80 PC: 13319 | Set current PSP
2018-12-17T22:47:29.558484524Z 74 PC: 13322 | Reallocate memory
2018-12-17T22:47:29.56117Z 80 PC: 13328 | Set current PSP
2018-12-17T22:47:29.562880644Z 76 PC: 13335 | Terminate with return code (Return code = '0')