Sample viewer

vx.netlux.org/Virus.DOS.Predator.1908

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:08:57.723452834Z 255 PC: 137ec | UNKNOWN!
2018-12-17T23:08:57.724931998Z 74 PC: 12a54 | Reallocate memory
2018-12-17T23:08:57.726346728Z 53 PC: 12a59 | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T23:08:57.727519943Z 53 PC: 12a66 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:08:57.728875941Z 37 PC: 12a78 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:08:57.730336433Z 75 PC: 12ace | Execute program
2018-12-17T23:08:57.742433993Z 9 PC: 12c18 | Display string (String= 'Goat file (COM/....). Size=00000834h/0000002100d bytes. ')
2018-12-17T23:08:57.749248595Z 48 PC: 12c18 | Get DOS version
2018-12-17T23:08:57.751596775Z 67 PC: 12cfe | Get or set file attributes
2018-12-17T23:08:58.018520775Z 61 PC: 12d0f | Open file (Filename = '')
2018-12-17T23:08:58.026553436Z 63 PC: 12d28 | Read file or device (Read 32 bytes on handle 5)
2018-12-17T23:08:58.029424835Z 62 PC: 12df4 | Close file
2018-12-17T23:08:58.031464572Z 61 PC: 12c18 | Open file (Filename = '')
2018-12-17T23:08:58.036363729Z 93 PC: 12c18 | File sharing functions
2018-12-17T23:08:58.038827668Z 9 PC: 12c18 | Display string (String= 'Size change=0774h/01908d. ')
2018-12-17T23:08:58.041699431Z 76 PC: 12c18 | Terminate with return code (Return code = '1')
2018-12-17T23:08:58.043864513Z 49 PC: 12ad3 | Terminate and stay resident (Return code = '0' | Memory size = '256')