Sample viewer

vx.netlux.org/Virus.DOS.Later.959

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:58:06.131433485Z 48 PC: 12a45 | Get DOS version
2018-12-17T22:58:06.133076633Z 179 PC: 12a75 | UNKNOWN!
2018-12-17T22:58:06.134184806Z 53 PC: 12a9a | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:58:06.135961586Z 37 PC: 12aa6 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:58:06.137758073Z 67 PC: 12aef | Get or set file attributes
2018-12-17T22:58:06.145106917Z 53 PC: 12dbb | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:58:06.152053144Z 37 PC: 12dca | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:58:06.15349784Z 67 PC: 12afc | Get or set file attributes
2018-12-17T22:58:06.178171038Z 61 PC: 12b06 | Open file (Filename = 'A:\TEST.COM')
2018-12-17T22:58:06.186665445Z 87 PC: 12b12 | Get or set file date and time
2018-12-17T22:58:06.189133214Z 64 PC: 12b2f | Write file or device (Write 931 bytes on handle 5)
2018-12-17T22:58:06.224875538Z 66 PC: 12b3a | Move file pointer
2018-12-17T22:58:06.227095812Z 64 PC: 12b40 | Write file or device (Write 0 bytes on handle 5)
2018-12-17T22:58:06.235918857Z 87 PC: 12b47 | Get or set file date and time
2018-12-17T22:58:06.238486032Z 62 PC: 12b4b | Close file
2018-12-17T22:58:06.247301954Z 67 PC: 12b54 | Get or set file attributes
2018-12-17T22:58:06.257625849Z 37 PC: 12ddb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:58:06.2590839Z 9 PC: 12a47 | Display string (String= ' Drug-959 ')