Sample viewer

vx.netlux.org/Virus.DOS.HelloUser.364.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:55:58.785802312Z 26 PC: 17c2f | Set disk transfer address
2018-12-17T22:55:58.793556395Z 25 PC: 17c3e | Get default drive
2018-12-17T22:55:58.795409413Z 14 PC: 17c48 | Set default drive (Drive = 'C')
2018-12-17T22:55:58.797401313Z 78 PC: 17c52 | Find first file
2018-12-17T22:55:58.804807694Z 61 PC: 17c5f | Open file (Filename = 'COMMAND.COM')
2018-12-17T22:55:58.810927498Z 66 PC: 17d2d | Move file pointer
2018-12-17T22:55:58.812879747Z 62 PC: 17c88 | Close file
2018-12-17T22:55:58.815798713Z 79 PC: 17c52 | Find next file
2018-12-17T22:55:58.820714292Z 26 PC: 17d1e | Set disk transfer address
2018-12-17T22:55:58.821836828Z 14 PC: 17d26 | Set default drive (Drive = 'A')
2018-12-17T22:55:58.826196973Z 48 PC: 18097 | Get DOS version
2018-12-17T22:55:58.828023075Z 37 PC: 182f6 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:55:58.829445878Z 37 PC: 1832a | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:55:58.830510007Z 37 PC: 182c4 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')