Sample viewer

vx.netlux.org/Virus.DOS.Paraguay.2750

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:09:14.16700989Z 205 PC: 12edf | UNKNOWN!
2018-12-17T23:09:14.168312114Z 53 PC: 12eed | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:09:14.169502173Z 74 PC: 12f4c | Reallocate memory
2018-12-17T23:09:14.170656644Z 72 PC: 12f53 | Allocate memory
2018-12-17T23:09:14.172828655Z 37 PC: 12f7f | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:09:14.174113779Z 53 PC: 9e99d | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:09:14.175333475Z 37 PC: 9e9b1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:09:14.176858834Z 61 PC: 9ea19 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T23:09:14.182771691Z 67 PC: 9ea30 | Get or set file attributes
2018-12-17T23:09:14.18829438Z 65 PC: 9ea3a | Delete file (Filename = '�&�')
2018-12-17T23:09:14.209328271Z 65 PC: 9ea44 | Delete file (Filename = 'YP@��3���')
2018-12-17T23:09:14.220022072Z 65 PC: 9ea4e | Delete file (Filename = '')
2018-12-17T23:09:14.225576759Z 87 PC: 9ea53 | Get or set file date and time
2018-12-17T23:09:14.227339552Z 63 PC: 9ea74 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T23:09:14.229855168Z 66 PC: 9efbc | Move file pointer
2018-12-17T23:09:14.233807439Z 64 PC: 9eab6 | Write file or device (Write 2750 bytes on handle 5)
2018-12-17T23:09:14.717548233Z 64 PC: 9eacc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:09:14.720896977Z 87 PC: 9efb3 | Get or set file date and time
2018-12-17T23:09:14.722858488Z 62 PC: 9eb90 | Close file
2018-12-17T23:09:14.73739506Z 37 PC: 9eba0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:09:14.738660653Z 86 PC: 13001 | Rename file