Sample viewer

vx.netlux.org/Virus.DOS.Voronezh.1536.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:57:16.810298722Z 53 PC: 1336b | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:57:16.812747539Z 37 PC: 133a3 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:57:16.814090246Z 53 PC: 133a8 | Get interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-17T22:57:16.816163283Z 37 PC: 133c0 | Set interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-17T22:57:16.818255493Z 9 PC: 12a86 | Display string (String= 'Goat file (COM/....). Size=00000834h/0000002100d bytes. ')
2018-12-17T22:57:16.823680177Z 48 PC: 12a8f | Get DOS version
2018-12-17T22:57:16.833109159Z 67 PC: 9f6e4 | Get or set file attributes
2018-12-17T22:57:16.840270307Z 67 PC: 9f6ee | Get or set file attributes
2018-12-17T22:57:16.859035258Z 61 PC: 9f6f3 | Open file (Filename = '')