Sample viewer

vx.netlux.org/Virus.DOS.Goma.1022

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:52:16.522953169Z 64 PC: 0 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:52:16.527635457Z 41 PC: 94fae | Parse filename
2018-12-17T22:52:16.538784743Z 41 PC: 9502f | Parse filename
2018-12-17T22:52:16.541419869Z 41 PC: 9504c | Parse filename
2018-12-17T22:52:16.544111803Z 26 PC: 984f7 | Set disk transfer address
2018-12-17T22:52:16.547857728Z 71 PC: 986f3 | Get current directory
2018-12-17T22:52:16.550643756Z 78 PC: 986fe | Find first file
2018-12-17T22:52:16.557599296Z 71 PC: 986f3 | Get current directory
2018-12-17T22:52:16.560440808Z 78 PC: 986fe | Find first file
2018-12-17T22:52:16.569048146Z 64 PC: 9a848 | Write file or device (Write 26 bytes on handle 2)
2018-12-17T22:52:16.574805432Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:52:16.576765536Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:52:16.590595072Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:16.591831744Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.594921835Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.600171531Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.601591567Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.603193208Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.606286049Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.608604369Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.610604391Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.613485436Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.615425357Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.617277127Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.619729238Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.621892031Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.623973008Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.627618981Z 62 PC: 122ab | Close file
2018-12-17T22:52:16.63024569Z 99 PC: 9a5d7 | Get DBCS lead byte table pointer
2018-12-17T22:52:16.631744747Z 56 PC: 94df9 | Get or set country info
2018-12-17T22:52:16.63435545Z 64 PC: 9a848 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:52:16.639456542Z 25 PC: 94e62 | Get default drive
2018-12-17T22:52:16.641263169Z 71 PC: 970dd | Get current directory
2018-12-17T22:52:16.652461581Z 64 PC: 9a848 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:52:16.656644668Z 2 PC: 970b2 | Character output (Char = '3e')
2018-12-17T22:52:16.662647331Z 93 PC: 94f20 | File sharing functions
2018-12-17T22:52:16.665437588Z 93 PC: 94f27 | File sharing functions
2018-12-17T22:52:16.668154604Z 10 PC: 94f39 | Buffered keyboard input
2018-12-17T22:52:31.569925186Z 0 PC: 0 | Program terminate
2018-12-17T22:52:32.924610905Z 0 PC: 0 | Program terminate
2018-12-17T22:52:33.026420381Z 64 PC: 9a848 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:52:33.030703912Z 41 PC: 94fae | Parse filename
2018-12-17T22:52:33.032263829Z 41 PC: 9502f | Parse filename
2018-12-17T22:52:33.03359404Z 41 PC: 9504c | Parse filename
2018-12-17T22:52:33.0351866Z 26 PC: 984f7 | Set disk transfer address
2018-12-17T22:52:33.036843886Z 71 PC: 986f3 | Get current directory
2018-12-17T22:52:33.045355362Z 78 PC: 986fe | Find first file
2018-12-17T22:52:33.055648947Z 71 PC: 9856c | Get current directory
2018-12-17T22:52:33.060421669Z 73 PC: 97c09 | Release memory
2018-12-17T22:52:33.061934667Z 75 PC: 11821 | Execute program
2018-12-17T22:52:33.08581359Z 9 PC: 12a47 | Display string (String= 'Hello, World! ')
2018-12-17T22:52:33.092607147Z 76 PC: 12a4b | Terminate with return code (Return code = '36')