Sample viewer

vx.netlux.org/Virus.DOS.Maverick.3584.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:06:05.823673093Z 108 PC: 141af | Extended open/create file
2018-12-17T23:06:05.826503812Z 78 PC: 141d7 | Find first file
2018-12-17T23:06:05.83233986Z 47 PC: 141dd | Get disk transfer address
2018-12-17T23:06:05.833737526Z 79 PC: 1420c | Find next file
2018-12-17T23:06:05.837476516Z 47 PC: 141dd | Get disk transfer address
2018-12-17T23:06:05.838638072Z 79 PC: 1420c | Find next file
2018-12-17T23:06:05.841075766Z 47 PC: 141dd | Get disk transfer address
2018-12-17T23:06:05.84298779Z 79 PC: 1420c | Find next file
2018-12-17T23:06:05.852937969Z 47 PC: 141dd | Get disk transfer address
2018-12-17T23:06:05.854065638Z 79 PC: 1420c | Find next file
2018-12-17T23:06:05.856478998Z 47 PC: 141dd | Get disk transfer address
2018-12-17T23:06:05.858094898Z 79 PC: 1420c | Find next file
2018-12-17T23:06:05.860395124Z 78 PC: 141d7 | Find first file
2018-12-17T23:06:05.862402282Z 88 PC: 13b51 | case 0xGet or set allocation strateg:
2018-12-17T23:06:05.870509223Z 82 PC: 13b57 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:06:05.872208997Z 53 PC: 13bdc | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:06:05.87380163Z 37 PC: 13bef | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:06:05.876159142Z 51 PC: 13bfd | Get or set Ctrl-Break
2018-12-17T23:06:05.877330841Z 37 PC: 13c08 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:06:05.879127851Z 37 PC: 13c14 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:06:05.881450608Z 9 PC: 12a82 | Display string (String= 'Goat file (EXE). Size=000011A0h/0000004512d bytes. ')
2018-12-17T23:06:05.884894919Z 76 PC: 12a86 | Terminate with return code (Return code = '36')
2018-12-17T23:06:05.886910749Z 72 PC: 9f178 | Allocate memory
2018-12-17T23:06:05.888566601Z 37 PC: 9f16e | Set interrupt vector (Interrupt = '33' AKA 'Random read')