Sample viewer

vx.netlux.org/Virus.DOS.Zamoy.587

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:55:58.644633053Z 71 PC: 1ffec | Get current directory
2018-12-17T22:55:58.64858741Z 59 PC: 1fff6 | Change current directory
2018-12-17T22:55:58.653171295Z 26 PC: 2005d | Set disk transfer address
2018-12-17T22:55:58.654332035Z 59 PC: 20067 | Change current directory
2018-12-17T22:55:58.659594145Z 79 PC: 2006b | Find next file
2018-12-17T22:55:58.662448048Z 26 PC: 2005d | Set disk transfer address
2018-12-17T22:55:58.664500672Z 59 PC: 20067 | Change current directory
2018-12-17T22:55:58.66918634Z 79 PC: 2006b | Find next file
2018-12-17T22:55:58.674012713Z 26 PC: 2005d | Set disk transfer address
2018-12-17T22:55:58.676943061Z 59 PC: 20067 | Change current directory
2018-12-17T22:55:58.687620121Z 79 PC: 2006b | Find next file
2018-12-17T22:55:58.691270866Z 26 PC: 2005d | Set disk transfer address
2018-12-17T22:55:58.693437163Z 59 PC: 20067 | Change current directory
2018-12-17T22:55:58.698080068Z 79 PC: 2006b | Find next file
2018-12-17T22:55:58.700269425Z 59 PC: 20184 | Change current directory
2018-12-17T22:55:58.705007321Z 80 PC: 13fb9 | Set current PSP
2018-12-17T22:55:58.706003732Z 48 PC: 13fbe | Get DOS version
2018-12-17T22:55:58.708459282Z 101 PC: 14044 | Get extended country info
2018-12-17T22:55:58.710562289Z 99 PC: 1404a | Get DBCS lead byte table pointer
2018-12-17T22:55:58.712448042Z 74 PC: 140ac | Reallocate memory
2018-12-17T22:55:58.714398448Z 25 PC: 140e3 | Get default drive
2018-12-17T22:55:58.716477478Z 37 PC: 13ba3 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:55:58.718112688Z 37 PC: 13baa | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:55:58.719720806Z 37 PC: 13bb1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:55:58.723796817Z 2 PC: 13e6c | Character output (Char = '0d')
2018-12-17T22:55:58.726112639Z 2 PC: 13e6c | Character output (Char = '0a')
2018-12-17T22:55:58.731359138Z 2 PC: 13e6c | Character output (Char = '0d')
2018-12-17T22:55:58.740747244Z 2 PC: 13e6c | Character output (Char = '0a')
2018-12-17T22:55:58.745203755Z 2 PC: 13e6c | Character output (Char = '4d')
2018-12-17T22:55:58.747985405Z 2 PC: 13e6c | Character output (Char = '69')
2018-12-17T22:55:58.751843462Z 2 PC: 13e6c | Character output (Char = '63')
2018-12-17T22:55:58.754711288Z 2 PC: 13e6c | Character output (Char = '72')
2018-12-17T22:55:58.75757435Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:55:58.760939769Z 2 PC: 13e6c | Character output (Char = '73')
2018-12-17T22:55:58.76373373Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:55:58.766488799Z 2 PC: 13e6c | Character output (Char = '66')
2018-12-17T22:55:58.771714787Z 2 PC: 13e6c | Character output (Char = '74')
2018-12-17T22:55:58.77458432Z 2 PC: 13e6c | Character output (Char = '28')
2018-12-17T22:55:58.778423146Z 2 PC: 13e6c | Character output (Char = '52')
2018-12-17T22:55:58.781087506Z 2 PC: 13e6c | Character output (Char = '29')
2018-12-17T22:55:58.78434736Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.787084123Z 2 PC: 13e6c | Character output (Char = '4d')
2018-12-17T22:55:58.789833656Z 2 PC: 13e6c | Character output (Char = '53')
2018-12-17T22:55:58.792741161Z 2 PC: 13e6c | Character output (Char = '2d')
2018-12-17T22:55:58.794966156Z 2 PC: 13e6c | Character output (Char = '44')
2018-12-17T22:55:58.797159183Z 2 PC: 13e6c | Character output (Char = '4f')
2018-12-17T22:55:58.800414418Z 2 PC: 13e6c | Character output (Char = '53')
2018-12-17T22:55:58.802867184Z 2 PC: 13e6c | Character output (Char = '28')
2018-12-17T22:55:58.805876267Z 2 PC: 13e6c | Character output (Char = '52')
2018-12-17T22:55:58.81083107Z 2 PC: 13e6c | Character output (Char = '29')
2018-12-17T22:55:58.813202236Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.815471221Z 2 PC: 13e6c | Character output (Char = '56')
2018-12-17T22:55:58.818676763Z 2 PC: 13e6c | Character output (Char = '65')
2018-12-17T22:55:58.820987141Z 2 PC: 13e6c | Character output (Char = '72')
2018-12-17T22:55:58.823106389Z 2 PC: 13e6c | Character output (Char = '73')
2018-12-17T22:55:58.825963779Z 2 PC: 13e6c | Character output (Char = '69')
2018-12-17T22:55:58.828509763Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:55:58.831058643Z 2 PC: 13e6c | Character output (Char = '6e')
2018-12-17T22:55:58.834583794Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.83717007Z 2 PC: 13e6c | Character output (Char = '36')
2018-12-17T22:55:58.839871725Z 2 PC: 13e6c | Character output (Char = '2e')
2018-12-17T22:55:58.843132631Z 2 PC: 13e6c | Character output (Char = '32')
2018-12-17T22:55:58.84553399Z 2 PC: 13e6c | Character output (Char = '32')
2018-12-17T22:55:58.847769793Z 2 PC: 13e6c | Character output (Char = '0d')
2018-12-17T22:55:58.850735904Z 2 PC: 13e6c | Character output (Char = '0a')
2018-12-17T22:55:58.855018106Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.857305716Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.859719391Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.866945695Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.869692379Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.872472359Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.8754901Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.877960491Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.880303557Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.88297575Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.885374707Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.887700564Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.890897252Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.893266826Z 2 PC: 13e6c | Character output (Char = '28')
2018-12-17T22:55:58.895709142Z 2 PC: 13e6c | Character output (Char = '43')
2018-12-17T22:55:58.898730973Z 2 PC: 13e6c | Character output (Char = '29')
2018-12-17T22:55:58.90247246Z 2 PC: 13e6c | Character output (Char = '43')
2018-12-17T22:55:58.9049472Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:55:58.90785685Z 2 PC: 13e6c | Character output (Char = '70')
2018-12-17T22:55:58.910198453Z 2 PC: 13e6c | Character output (Char = '79')
2018-12-17T22:55:58.912554468Z 2 PC: 13e6c | Character output (Char = '72')
2018-12-17T22:55:58.915594983Z 2 PC: 13e6c | Character output (Char = '69')
2018-12-17T22:55:58.917893716Z 2 PC: 13e6c | Character output (Char = '67')
2018-12-17T22:55:58.920277371Z 2 PC: 13e6c | Character output (Char = '68')
2018-12-17T22:55:58.923314359Z 2 PC: 13e6c | Character output (Char = '74')
2018-12-17T22:55:58.925605106Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.928817303Z 2 PC: 13e6c | Character output (Char = '4d')
2018-12-17T22:55:58.93183285Z 2 PC: 13e6c | Character output (Char = '69')
2018-12-17T22:55:58.934298159Z 2 PC: 13e6c | Character output (Char = '63')
2018-12-17T22:55:58.936712492Z 2 PC: 13e6c | Character output (Char = '72')
2018-12-17T22:55:58.940444705Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:55:58.943194411Z 2 PC: 13e6c | Character output (Char = '73')
2018-12-17T22:55:58.945928509Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:55:58.949517549Z 2 PC: 13e6c | Character output (Char = '66')
2018-12-17T22:55:58.952919814Z 2 PC: 13e6c | Character output (Char = '74')
2018-12-17T22:55:58.955674899Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.959232515Z 2 PC: 13e6c | Character output (Char = '43')
2018-12-17T22:55:58.961948794Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:55:58.964695463Z 2 PC: 13e6c | Character output (Char = '72')
2018-12-17T22:55:58.968212709Z 2 PC: 13e6c | Character output (Char = '70')
2018-12-17T22:55:58.970723462Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:55:58.973146033Z 2 PC: 13e6c | Character output (Char = '31')
2018-12-17T22:55:58.975871208Z 2 PC: 13e6c | Character output (Char = '39')
2018-12-17T22:55:58.978223547Z 2 PC: 13e6c | Character output (Char = '38')
2018-12-17T22:55:58.980701692Z 2 PC: 13e6c | Character output (Char = '31')
2018-12-17T22:55:58.983283537Z 2 PC: 13e6c | Character output (Char = '2d')
2018-12-17T22:55:58.985486205Z 2 PC: 13e6c | Character output (Char = '31')
2018-12-17T22:55:58.987695836Z 2 PC: 13e6c | Character output (Char = '39')
2018-12-17T22:55:58.990358416Z 2 PC: 13e6c | Character output (Char = '39')
2018-12-17T22:55:58.992611972Z 2 PC: 13e6c | Character output (Char = '34')
2018-12-17T22:55:58.99488213Z 2 PC: 13e6c | Character output (Char = '2e')
2018-12-17T22:55:58.997662466Z 2 PC: 13e6c | Character output (Char = '0d')
2018-12-17T22:55:58.999811211Z 2 PC: 13e6c | Character output (Char = '0a')
2018-12-17T22:55:59.005098092Z 74 PC: 12d4c | Reallocate memory
2018-12-17T22:55:59.00707825Z 72 PC: 12d8d | Allocate memory
2018-12-17T22:55:59.008768766Z 72 PC: 12dc5 | Allocate memory
2018-12-17T22:55:59.023395549Z 72 PC: 12dcd | Allocate memory