Sample viewer

vx.netlux.org/Virus.DOS.V.948

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:02:55.189401946Z 250 PC: 12d24 | UNKNOWN!
2018-12-17T23:02:55.191799078Z 53 PC: 12d54 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:02:55.193363045Z 37 PC: 12d65 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:02:55.195093532Z 37 PC: 12d6e | Set interrupt vector (Interrupt = '97' AKA 'Reserved')
2018-12-17T23:02:55.19713214Z 25 PC: 12d77 | Get default drive
2018-12-17T23:02:55.214810664Z 67 PC: 12cfe | Get or set file attributes
2018-12-17T23:02:55.226433311Z 61 PC: 12c8c | Open file (Filename = '')
2018-12-17T23:02:55.234755735Z 87 PC: 12ccc | Get or set file date and time
2018-12-17T23:02:55.237896789Z 66 PC: 12c6f | Move file pointer
2018-12-17T23:02:55.240944961Z 66 PC: 12c6f | Move file pointer
2018-12-17T23:02:55.243086872Z 66 PC: 12cc3 | Move file pointer
2018-12-17T23:02:55.246023601Z 63 PC: 12c9f | Read file or device (Read 948 bytes on handle 5)
2018-12-17T23:02:55.253480717Z 66 PC: 12c6f | Move file pointer
2018-12-17T23:02:55.254797714Z 64 PC: 12cab | Write file or device (Write 948 bytes on handle 5)
2018-12-17T23:02:55.268251031Z 66 PC: 12c6f | Move file pointer
2018-12-17T23:02:55.270387113Z 66 PC: 12cc3 | Move file pointer
2018-12-17T23:02:55.272435288Z 64 PC: 12cab | Write file or device (Write 0 bytes on handle 5)
2018-12-17T23:02:55.283240138Z 87 PC: 12ccc | Get or set file date and time
2018-12-17T23:02:55.300601254Z 62 PC: 12c1a | Close file
2018-12-17T23:02:55.309034367Z 74 PC: 12ad8 | Reallocate memory
2018-12-17T23:02:55.326487029Z 75 PC: 12ae9 | Execute program
2018-12-17T23:02:55.346911455Z 9 PC: 12f96 | Display string (String= 'Goat file (COM/....). Size=00000834h/0000002100d bytes. ')
2018-12-17T23:02:55.35328847Z 48 PC: 12f9f | Get DOS version
2018-12-17T23:02:55.355107579Z 61 PC: 1306c | Open file (Filename = '')
2018-12-17T23:02:55.366835617Z 93 PC: 1300e | File sharing functions
2018-12-17T23:02:55.369269536Z 76 PC: 12ff3 | Terminate with return code (Return code = '0')
2018-12-17T23:02:55.373084481Z 74 PC: 12af6 | Reallocate memory
2018-12-17T23:02:55.376479663Z 26 PC: 12b08 | Set disk transfer address
2018-12-17T23:02:55.378345605Z 78 PC: 12d0a | Find first file
2018-12-17T23:02:55.38543462Z 79 PC: 12c83 | Find next file
2018-12-17T23:02:55.398037764Z 79 PC: 12c83 | Find next file
2018-12-17T23:02:55.402285369Z 79 PC: 12c83 | Find next file
2018-12-17T23:02:55.40739054Z 79 PC: 12c83 | Find next file
2018-12-17T23:02:55.411341434Z 79 PC: 12c83 | Find next file
2018-12-17T23:02:55.415228347Z 79 PC: 12c83 | Find next file
2018-12-17T23:02:55.422641542Z 79 PC: 12c83 | Find next file
2018-12-17T23:02:55.436844774Z 79 PC: 12c83 | Find next file
2018-12-17T23:02:55.440747619Z 78 PC: 12d0a | Find first file
2018-12-17T23:02:55.448859605Z 77 PC: 12b85 | Get program return code
2018-12-17T23:02:55.45019091Z 76 PC: 12b89 | Terminate with return code (Return code = '0')