Sample viewer

vx.netlux.org/Virus.DOS.Lewd.c

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:00:07.307434911Z 170 PC: 143b8 | UNKNOWN!
2018-12-17T23:00:07.309858054Z 9 PC: 12a82 | Display string (String= 'Goat file (EXE). Size=000003E8h/0000001000d bytes. ')
2018-12-17T23:00:07.314426169Z 76 PC: 12a86 | Terminate with return code (Return code = '36')
2018-12-17T23:00:07.319869077Z 77 PC: 11fe0 | Get program return code
2018-12-17T23:00:07.322095231Z 98 PC: 983e3 | Get current PSP
2018-12-17T23:00:07.323676092Z 72 PC: 12174 | Allocate memory
2018-12-17T23:00:07.326048981Z 98 PC: 983e3 | Get current PSP
2018-12-17T23:00:07.327950685Z 72 PC: 1218d | Allocate memory
2018-12-17T23:00:07.330714529Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T23:00:07.332495586Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:00:07.335476628Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:07.337407076Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.339630504Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.342239537Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.344600374Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.346377053Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.348412177Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.351870867Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.354062385Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.356240889Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.362542881Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.3646283Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.366754135Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.369677579Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.371451834Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.373300347Z 62 PC: 122ab | Close file
2018-12-17T23:00:07.378672643Z 61 PC: 12354 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T23:00:07.386736838Z 66 PC: 12372 | Move file pointer
2018-12-17T23:00:07.388391207Z 63 PC: 12383 | Read file or device (Read 44693 bytes on handle 5)
2018-12-17T23:00:07.416493919Z 62 PC: 1238a | Close file
2018-12-17T23:00:07.420885252Z 99 PC: 92767 | Get DBCS lead byte table pointer
2018-12-17T23:00:07.422444371Z 56 PC: 8cf89 | Get or set country info
2018-12-17T23:00:07.425485056Z 64 PC: 929d8 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T23:00:07.430422734Z 25 PC: 8cff2 | Get default drive
2018-12-17T23:00:07.433371065Z 71 PC: 8f26d | Get current directory
2018-12-17T23:00:07.444869703Z 64 PC: 929d8 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T23:00:07.449823042Z 2 PC: 8f242 | Character output (Char = '3e')
2018-12-17T23:00:07.45348847Z 93 PC: 8d0b0 | File sharing functions
2018-12-17T23:00:07.455350489Z 93 PC: 8d0b7 | File sharing functions
2018-12-17T23:00:07.457598444Z 10 PC: 8d0c9 | Buffered keyboard input
2018-12-17T23:00:22.288209537Z 0 PC: 0 | Program terminate
2018-12-17T23:00:23.644041599Z 0 PC: 0 | Program terminate
2018-12-17T23:00:23.747007051Z 64 PC: 929d8 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T23:00:23.753725145Z 41 PC: 8d13e | Parse filename
2018-12-17T23:00:23.757434226Z 41 PC: 8d1bf | Parse filename
2018-12-17T23:00:23.760864081Z 41 PC: 8d1dc | Parse filename
2018-12-17T23:00:23.763639327Z 26 PC: 90687 | Set disk transfer address
2018-12-17T23:00:23.76767997Z 71 PC: 90883 | Get current directory
2018-12-17T23:00:25.792828637Z 78 PC: 9088e | Find first file