Sample viewer

vx.netlux.org/Virus.DOS.Indonga.3652

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:05:06.218168871Z 66 PC: 152c1 | Move file pointer
2018-12-17T23:05:06.221110846Z 74 PC: 15363 | Reallocate memory
2018-12-17T23:05:06.223256189Z 72 PC: 1536a | Allocate memory
2018-12-17T23:05:06.225766588Z 74 PC: 1537d | Reallocate memory
2018-12-17T23:05:06.229171527Z 88 PC: 15382 | case 0xGet or set allocation strateg:
2018-12-17T23:05:06.230634636Z 88 PC: 1538b | case 0xGet or set allocation strateg:
2018-12-17T23:05:06.232372208Z 72 PC: 15392 | Allocate memory
2018-12-17T23:05:06.234962208Z 88 PC: 1539b | case 0xGet or set allocation strateg:
2018-12-17T23:05:06.236887662Z 53 PC: 15407 | Get interrupt vector (Interrupt = '133' AKA 'UNKNOWN!')
2018-12-17T23:05:06.238500732Z 74 PC: 15467 | Reallocate memory
2018-12-17T23:05:06.240144472Z 72 PC: 1546e | Allocate memory
2018-12-17T23:05:06.253734384Z 74 PC: 15476 | Reallocate memory
2018-12-17T23:05:06.268877476Z 54 PC: 9f699 | Get free disk space
2018-12-17T23:05:06.338886501Z 53 PC: 9f6b9 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:05:06.341548073Z 37 PC: 9f6c8 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:05:06.342951051Z 67 PC: 9f6d2 | Get or set file attributes
2018-12-17T23:05:06.353624835Z 67 PC: 9f6d2 | Get or set file attributes
2018-12-17T23:05:06.363511709Z 67 PC: 9f6ec | Get or set file attributes
2018-12-17T23:05:06.378565042Z 67 PC: 9f6fe | Get or set file attributes
2018-12-17T23:05:06.736252814Z 61 PC: 9f703 | Open file (Filename = '��������������W')
2018-12-17T23:05:06.745180135Z 87 PC: 9f713 | Get or set file date and time
2018-12-17T23:05:06.747381671Z 63 PC: 9f729 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:05:06.75917041Z 66 PC: 9f156 | Move file pointer
2018-12-17T23:05:06.763560877Z 66 PC: 9f156 | Move file pointer
2018-12-17T23:05:06.766807981Z 66 PC: 9f14c | Move file pointer
2018-12-17T23:05:06.769947489Z 63 PC: 9f940 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:05:06.775867185Z 66 PC: 9f156 | Move file pointer
2018-12-17T23:05:06.778699148Z 72 PC: 9f17f | Allocate memory
2018-12-17T23:05:06.781099199Z 66 PC: 9f14c | Move file pointer
2018-12-17T23:05:06.783199971Z 63 PC: 9f978 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:05:06.797001534Z 66 PC: 9f156 | Move file pointer
2018-12-17T23:05:06.798933022Z 64 PC: 9f560 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:05:06.805937092Z 66 PC: 9f156 | Move file pointer
2018-12-17T23:05:06.808294755Z 66 PC: 9f14c | Move file pointer
2018-12-17T23:05:06.810334122Z 64 PC: 9f9c5 | Write file or device (Write 2 bytes on handle 5)
2018-12-17T23:05:06.814755148Z 66 PC: 9f156 | Move file pointer
2018-12-17T23:05:06.817870239Z 64 PC: 9f3f1 | Write file or device (Write 3660 bytes on handle 5)
2018-12-17T23:05:06.839663172Z 73 PC: 9f3f9 | Release memory
2018-12-17T23:05:06.841161559Z 87 PC: 9f9f4 | Get or set file date and time
2018-12-17T23:05:06.843551892Z 62 PC: 9f9fc | Close file
2018-12-17T23:05:06.852434077Z 67 PC: 9fa08 | Get or set file attributes
2018-12-17T23:05:06.85853995Z 37 PC: 9fa0f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:05:06.861055182Z 66 PC: 15481 | Move file pointer
2018-12-17T23:05:06.86334007Z 9 PC: 12a86 | Display string (String= 'Goat file (COM/....). Size=00002774h/0000010100d bytes. ')
2018-12-17T23:05:06.869969995Z 48 PC: 12a8f | Get DOS version
2018-12-17T23:05:06.872921631Z 54 PC: 9f699 | Get free disk space
2018-12-17T23:05:06.883993409Z 53 PC: 9f6b9 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:05:06.885713593Z 37 PC: 9f6c8 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:05:06.887407004Z 67 PC: 9f6d2 | Get or set file attributes
2018-12-17T23:05:06.895241733Z 67 PC: 9f6d2 | Get or set file attributes
2018-12-17T23:05:06.902524457Z 67 PC: 9f6ec | Get or set file attributes
2018-12-17T23:05:06.909549779Z 67 PC: 9f6fe | Get or set file attributes
2018-12-17T23:05:06.927821479Z 61 PC: 9f703 | Open file (Filename = '')
2018-12-17T23:05:06.935763287Z 87 PC: 9f713 | Get or set file date and time
2018-12-17T23:05:06.93835491Z 63 PC: 9f729 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:05:06.94679701Z 66 PC: 9f156 | Move file pointer
2018-12-17T23:05:06.94880295Z 66 PC: 9f156 | Move file pointer
2018-12-17T23:05:06.950830768Z 66 PC: 9f14c | Move file pointer
2018-12-17T23:05:06.953275237Z 63 PC: 9f940 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T23:05:06.956291202Z 66 PC: 9f156 | Move file pointer
2018-12-17T23:05:06.95842871Z 87 PC: 9f9f4 | Get or set file date and time
2018-12-17T23:05:06.9611238Z 62 PC: 9f9fc | Close file
2018-12-17T23:05:06.969043597Z 67 PC: 9fa08 | Get or set file attributes
2018-12-17T23:05:06.980516085Z 37 PC: 9fa0f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:05:06.983038888Z 61 PC: 12b5c | Open file (Filename = '')
2018-12-17T23:05:06.991946147Z 93 PC: 12afe | File sharing functions
2018-12-17T23:05:06.994549138Z 9 PC: 12a86 | Display string (String= 'Size change=0ED4h/03796d. ')
2018-12-17T23:05:07.000677363Z 76 PC: 12ae3 | Terminate with return code (Return code = '1')