Sample viewer

vx.netlux.org/Virus.DOS.MAD.3544

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:03:41.827009894Z 37 PC: 134c0 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:03:41.832561347Z 37 PC: 1358c | Set interrupt vector (Interrupt = '101' AKA 'Get extended country info')
2018-12-17T23:03:41.835350504Z 82 PC: 13591 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:03:41.837193441Z 37 PC: 13617 | Set interrupt vector (Interrupt = '100' AKA 'Set wait for external event flag')
2018-12-17T23:03:41.839024195Z 37 PC: 13633 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T23:03:41.841848549Z 37 PC: 13650 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:03:41.846376517Z 74 PC: 12a74 | Reallocate memory
2018-12-17T23:03:41.849091113Z 9 PC: 12e49 | Display string (String= ' PKUNLITE - Professional PKLITE UnPacker Utility v2.00 (C) 1992 by The Software Surgeon ')
2018-12-17T23:03:41.861902385Z 9 PC: 12e50 | Display string (String= ' ')
2018-12-17T23:03:41.867525032Z 9 PC: 12e55 | Display string (Could not find end pointer)
2018-12-17T23:03:41.879965576Z 9 PC: 12e5c | Display string (String= ' ')
2018-12-17T23:03:41.889919572Z 76 PC: 12e61 | Terminate with return code (Return code = '1')