Sample viewer

vx.netlux.org/Virus.DOS.MutaGen.110.HiTek.2193

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:47:40.720135827Z 26 PC: 12af7 | Set disk transfer address
2018-12-17T22:47:40.721538689Z 71 PC: 12b5b | Get current directory
2018-12-17T22:47:40.726390771Z 78 PC: 12b8e | Find first file
2018-12-17T22:47:40.734147181Z 61 PC: 12bf1 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:47:40.741613812Z 63 PC: 12c03 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:47:40.750321719Z 66 PC: 12c7d | Move file pointer
2018-12-17T22:47:40.752143264Z 64 PC: 12c2f | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:47:40.758652118Z 64 PC: 12c51 | Write file or device (Write 2244 bytes on handle 5)
2018-12-17T22:47:40.776497686Z 66 PC: 12c7d | Move file pointer
2018-12-17T22:47:40.77890161Z 64 PC: 12c5d | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:47:40.784202562Z 87 PC: 12c6c | Get or set file date and time
2018-12-17T22:47:40.786365651Z 62 PC: 12c70 | Close file
2018-12-17T22:47:40.792260985Z 79 PC: 12bd0 | Find next file
2018-12-17T22:47:40.794937554Z 79 PC: 12bd0 | Find next file
2018-12-17T22:47:40.797798407Z 61 PC: 12bf1 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:47:40.802597879Z 63 PC: 12c03 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:47:40.814338896Z 66 PC: 12c7d | Move file pointer
2018-12-17T22:47:40.816027694Z 64 PC: 12c2f | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:47:40.823699002Z 64 PC: 12c51 | Write file or device (Write 2237 bytes on handle 5)
2018-12-17T22:47:40.833690856Z 66 PC: 12c7d | Move file pointer
2018-12-17T22:47:40.83527629Z 64 PC: 12c5d | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:47:40.844046002Z 87 PC: 12c6c | Get or set file date and time
2018-12-17T22:47:40.845730157Z 62 PC: 12c70 | Close file
2018-12-17T22:47:40.854419561Z 59 PC: 12b7d | Change current directory
2018-12-17T22:47:40.862909491Z 26 PC: 12b0c | Set disk transfer address
2018-12-17T22:47:40.865753002Z 9 PC: 12a62 | Display string (String= 'This is a 100 byte COM file that has been exposed to a virus.')
2018-12-17T22:47:40.870784932Z 76 PC: 12a66 | Terminate with return code (Return code = '36')