Sample viewer

vx.netlux.org/Virus.DOS.Agiplan.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:54:16.913793963Z 53 PC: 12e26 | Get interrupt vector (Interrupt = '127' AKA 'UNKNOWN!')
2018-12-17T22:54:16.91762174Z 37 PC: 12e3a | Set interrupt vector (Interrupt = '127' AKA 'UNKNOWN!')
2018-12-17T22:54:16.919088371Z 53 PC: 12e3f | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:54:16.920666646Z 37 PC: 12e52 | Set interrupt vector (Interrupt = '126' AKA 'UNKNOWN!')
2018-12-17T22:54:16.922683416Z 37 PC: 12e60 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:54:16.925670814Z 53 PC: 12e65 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:54:16.932424151Z 37 PC: 12e78 | Set interrupt vector (Interrupt = '253' AKA 'UNKNOWN!')
2018-12-17T22:54:16.933771274Z 37 PC: 12e8e | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:54:16.935553864Z 42 PC: 12da0 | Get date 0x12da0: cmp cx, word ptr [0x5d1]
0x12da4: ja 0x12dc1
0x12da6: jb 0x12dae
0x12da8: cmp dx, word ptr [0x5d3]
0x12dac: ja 0x12dc1
0x12dae: cmp cx, word ptr [0x5d5]
0x12db2: ja 0x12dc4
0x12db4: jb 0x12dbc
0x12db6: cmp dx, word ptr [0x5d7]
0x12dba: ja 0x12dc4
0x12dbc: mov ax, 0
0x12dbf: jmp 0x12dc7
0x12dc1: or ax, 0xf0
0x12dc4: or ax, 0xf
0x12dc7: mov byte ptr [0x5d9], al
0x12dca: push dx
0x12dcb: push cx
0x12dcc: xor bx, bx
0x12dce: call 0x12de5
0x12dd1: pop cx
2018-12-17T22:54:16.937833432Z 74 PC: 12d58 | Reallocate memory
2018-12-17T22:54:16.939299584Z 72 PC: 12d6f | Allocate memory
2018-12-17T22:54:16.941624548Z 72 PC: 12d74 | Allocate memory
2018-12-17T22:54:16.943217525Z 9 PC: 143c6 | Display string (String= 'Hello - Copyright S & S International, 1990 ')
2018-12-17T22:54:16.947988678Z 77 PC: 11fe0 | Get program return code
2018-12-17T22:54:16.94994799Z 72 PC: 12174 | Allocate memory
2018-12-17T22:54:16.951836308Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:54:16.953946386Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:54:16.958592498Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:54:16.96057143Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:54:16.962803557Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:54:16.966245184Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:54:16.968348419Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:54:16.970451261Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:54:16.972800948Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:54:16.974895945Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:54:16.97694845Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:54:16.979890104Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:54:16.983835986Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:54:16.985901682Z 2 PC: 1268d | Character output (Char = '63')
2018-12-17T22:54:16.988504034Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:54:16.990520243Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:54:16.992517219Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T22:54:16.995009061Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:54:16.997046854Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:54:16.999108923Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:54:17.001782258Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:54:17.004862056Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:54:17.016565145Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:54:17.018724943Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:54:17.021007499Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:54:17.023626603Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:54:17.025528708Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:54:17.030341873Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:54:17.032802967Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:54:17.03535802Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:54:17.038515029Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:54:17.041166758Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:54:17.043528869Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:54:17.046326077Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:54:17.04945359Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:54:17.051596073Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:54:17.053885139Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:54:17.057431967Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:54:17.059657433Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:54:17.061800416Z 2 PC: 1268d | Character output (Char = '43')
2018-12-17T22:54:17.06476791Z 2 PC: 1268d | Character output (Char = '4f')
2018-12-17T22:54:17.066883812Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:54:17.068959997Z 2 PC: 1268d | Character output (Char = '4d')
2018-12-17T22:54:17.072202118Z 2 PC: 1268d | Character output (Char = '41')
2018-12-17T22:54:17.074588786Z 2 PC: 1268d | Character output (Char = '4e')
2018-12-17T22:54:17.076947684Z 2 PC: 1268d | Character output (Char = '44')
2018-12-17T22:54:17.083678385Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T22:54:17.091574761Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:54:17.097795165Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:54:17.100712077Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:54:17.103858344Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:54:17.106052209Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:54:17.109472552Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:54:17.111718628Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T22:54:17.114042508Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:54:17.116704647Z 2 PC: 1268d | Character output (Char = '68')
2018-12-17T22:54:17.119337581Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:54:17.121817378Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:54:17.124900722Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:54:17.127544399Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:54:17.130615674Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:54:17.133165584Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:54:17.136175739Z 2 PC: 1268d | Character output (Char = '0a')