Sample viewer

vx.netlux.org/Virus.DOS.Taek.1846

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:51:43.858859062Z 247 PC: 137cd | UNKNOWN!
2018-12-17T22:51:43.87732531Z 74 PC: 137ef | Reallocate memory
2018-12-17T22:51:43.878949761Z 74 PC: 137fc | Reallocate memory
2018-12-17T22:51:43.880140283Z 72 PC: 13808 | Allocate memory
2018-12-17T22:51:43.882062842Z 72 PC: 13818 | Allocate memory
2018-12-17T22:51:43.883511214Z 74 PC: 13857 | Reallocate memory
2018-12-17T22:51:43.8867472Z 74 PC: 9ef55 | Reallocate memory
2018-12-17T22:51:43.888216817Z 75 PC: 9ef7e | Execute program
2018-12-17T22:51:43.904274521Z 9 PC: 13488 | Display string (Could not find end pointer)
2018-12-17T22:51:43.91018432Z 48 PC: 13491 | Get DOS version
2018-12-17T22:51:43.912488719Z 54 PC: 9edbe | Get free disk space
2018-12-17T22:51:43.923322851Z 67 PC: 9edef | Get or set file attributes
2018-12-17T22:51:43.929021019Z 61 PC: 9ee15 | Open file (Filename = '')
2018-12-17T22:51:43.936567084Z 87 PC: 9eff6 | Get or set file date and time
2018-12-17T22:51:43.938939072Z 66 PC: 9f01c | Move file pointer
2018-12-17T22:51:43.940678852Z 66 PC: 9f045 | Move file pointer
2018-12-17T22:51:43.942361746Z 63 PC: 9f058 | Read file or device (Read 64 bytes on handle 5)
2018-12-17T22:51:43.945695827Z 66 PC: 9f079 | Move file pointer
2018-12-17T22:51:43.947128144Z 63 PC: 9f08c | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:51:43.949752315Z 62 PC: 9ee30 | Close file
2018-12-17T22:51:43.952772262Z 67 PC: 9ee3c | Get or set file attributes
2018-12-17T22:51:43.973244593Z 61 PC: 1355e | Open file (Filename = '')
2018-12-17T22:51:43.979940139Z 93 PC: 13500 | File sharing functions
2018-12-17T22:51:43.982467969Z 9 PC: 13488 | Display string (String= 'Size change=0736h/01846d. ')
2018-12-17T22:51:43.986296245Z 76 PC: 134e5 | Terminate with return code (Return code = '1')
2018-12-17T22:51:43.989177044Z 73 PC: 9ef87 | Release memory
2018-12-17T22:51:43.991342516Z 77 PC: 9ef8b | Get program return code
2018-12-17T22:51:43.992645012Z 76 PC: 9ef8f | Terminate with return code (Return code = '1')