Sample viewer

vx.netlux.org/Virus.DOS.Yaud.1016

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:03:28.29888368Z 197 PC: 13c47 | UNKNOWN!
2018-12-17T23:03:28.309578104Z 74 PC: 12aaf | Reallocate memory
2018-12-17T23:03:28.31119566Z 53 PC: 12ab4 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:03:28.31259801Z 37 PC: 12ac4 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:03:28.314692907Z 53 PC: 12ac9 | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T23:03:28.317180514Z 37 PC: 12ad9 | Set interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T23:03:28.318747742Z 61 PC: 12c00 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:03:28.333495227Z 63 PC: 12c11 | Read file or device (Read 24 bytes on handle 5)
2018-12-17T23:03:28.336295691Z 62 PC: 12c5b | Close file
2018-12-17T23:03:28.338377765Z 75 PC: 12b17 | Execute program
2018-12-17T23:03:28.358413439Z 9 PC: 130bc | Display string (Could not find end pointer)
2018-12-17T23:03:28.36379834Z 76 PC: 130c1 | Terminate with return code (Return code = '0')
2018-12-17T23:03:28.366707905Z 49 PC: 12b1e | Terminate and stay resident (Return code = '1' | Memory size = '80')