Sample viewer

vx.netlux.org/Virus.DOS.Rake.975

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:06:30.929840154Z 66 PC: 1346f | Move file pointer
2018-12-17T23:06:30.931897975Z 53 PC: 1348c | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:06:30.93322867Z 53 PC: 13498 | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:06:30.934465237Z 37 PC: 134a7 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:06:30.935978048Z 255 PC: 134b6 | UNKNOWN!
2018-12-17T23:06:30.937337522Z 82 PC: 1378c | Get DOS internal pointers (SYSVARS)
2018-12-17T23:06:30.939211788Z 37 PC: 134ea | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:06:30.940989787Z 9 PC: 12a86 | Display string (Could not find end pointer)
2018-12-17T23:06:30.947378333Z 48 PC: 12a8f | Get DOS version
2018-12-17T23:06:30.948726798Z 61 PC: 12b5c | Open file (Filename = '')
2018-12-17T23:06:30.955732866Z 93 PC: 12afe | File sharing functions
2018-12-17T23:06:30.9582767Z 9 PC: 12a86 | Display string (String= 'Size change=03D7h/00983d. ')
2018-12-17T23:06:30.962098587Z 76 PC: 12ae3 | Terminate with return code (Return code = '1')