Sample viewer

vx.netlux.org/Virus.DOS.ATB.1522.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:59:50.791468744Z 53 PC: 17535 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:59:50.793513425Z 81 PC: 17542 | Get current PSP
2018-12-17T22:59:50.794735766Z 53 PC: 1758c | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:59:50.796213184Z 37 PC: 1759c | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:59:50.798693391Z 99 PC: 13726 | Get DBCS lead byte table pointer
2018-12-17T22:59:50.800065339Z 68 PC: 13740 | I/O control for devices (Set for = '')
2018-12-17T22:59:50.80154491Z 68 PC: 1374b | I/O control for devices (Set for = '')
2018-12-17T22:59:50.803941874Z 68 PC: 13756 | I/O control for devices (Set for = '')
2018-12-17T22:59:50.805885141Z 68 PC: 1375e | I/O control for devices (Set for = '��b���g�t�S3����[r�2��W�<t�<u�6�u����>��>W')
2018-12-17T22:59:50.807799554Z 48 PC: 13763 | Get DOS version
2018-12-17T22:59:50.809901664Z 37 PC: 1666f | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:59:50.811421862Z 53 PC: 16678 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:59:50.812959113Z 37 PC: 1668f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:59:50.815402211Z 25 PC: 165ed | Get default drive
2018-12-17T22:59:50.816860098Z 71 PC: 165f7 | Get current directory
2018-12-17T22:59:50.820690701Z 64 PC: 139e5 | Write file or device (Write 30 bytes on handle 2)
2018-12-17T22:59:50.826790342Z 64 PC: 139e5 | Write file or device (Write 9 bytes on handle 1)
2018-12-17T22:59:50.829933956Z 64 PC: 139e5 | Write file or device (Write 17 bytes on handle 1)
2018-12-17T22:59:50.834498423Z 76 PC: 147f8 | Terminate with return code (Return code = '4')