Sample viewer

vx.netlux.org/Virus.DOS.Bv.572

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:00:48.696444342Z 26 PC: 1412e | Set disk transfer address
2018-12-17T22:00:48.69791228Z 53 PC: 14136 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:00:48.699671026Z 37 PC: 14146 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:00:48.700816842Z 78 PC: 14156 | Find first file
2018-12-17T22:00:48.707076275Z 67 PC: 14316 | Get or set file attributes
2018-12-17T22:00:48.721561701Z 61 PC: 14166 | Open file (Filename = 'TEST.EXE')
2018-12-17T22:00:48.726943615Z 63 PC: 14173 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:00:48.729551183Z 66 PC: 1417f | Move file pointer
2018-12-17T22:00:48.730764918Z 87 PC: 14196 | Get or set file date and time
2018-12-17T22:00:48.731929453Z 62 PC: 1419c | Close file
2018-12-17T22:00:48.738037186Z 67 PC: 14316 | Get or set file attributes
2018-12-17T22:00:48.746110424Z 79 PC: 14156 | Find next file
2018-12-17T22:00:48.748366773Z 37 PC: 141c0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:00:48.749637403Z 26 PC: 141cc | Set disk transfer address
2018-12-17T22:00:48.751299533Z 48 PC: 12a6d | Get DOS version
2018-12-17T22:00:48.752310874Z 9 PC: 12a84 | Display string (Could not find end pointer)
2018-12-17T22:00:48.76040578Z 61 PC: 12cc4 | Open file (Filename = '')
2018-12-17T22:00:48.766845121Z 9 PC: 12a92 | Display string (Could not find end pointer)
2018-12-17T22:00:48.768619685Z 93 PC: 12b31 | File sharing functions
2018-12-17T22:00:48.770279446Z 9 PC: 12b10 | Display string (String= 'Size change=+023Dh/00573d. Virus might be activ? ')
2018-12-17T22:00:48.789500122Z 76 PC: 12b16 | Terminate with return code (Return code = '1')