Sample viewer

vx.netlux.org/Virus.DOS.Likha.2833

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:54:51.457878362Z 240 PC: 14470 | UNKNOWN!
2018-12-17T22:54:51.460383966Z 74 PC: 13390 | Reallocate memory
2018-12-17T22:54:51.462181953Z 53 PC: 133a2 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:54:51.463721018Z 37 PC: 1312f | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:54:51.465588799Z 53 PC: 1312f | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:54:51.466974231Z 37 PC: 1312f | Set interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:54:51.468207611Z 26 PC: 1312f | Set disk transfer address
2018-12-17T22:54:51.469537926Z 78 PC: 1312f | Find first file
2018-12-17T22:54:51.476093082Z 75 PC: 1312f | Execute program
2018-12-17T22:54:51.493947595Z 9 PC: 13875 | Display string (String= ' Mabuhay! This program came from Bahay Kawayan at http://come.to/hexfiles Putoksa Kawayan [email protected] ')
2018-12-17T22:54:51.50825905Z 76 PC: 13879 | Terminate with return code (Return code = '36')
2018-12-17T22:54:51.511930775Z 73 PC: 1312f | Release memory
2018-12-17T22:54:51.513582476Z 49 PC: 133fb | Terminate and stay resident (Return code = '125' | Memory size = '204')