Sample viewer

vx.netlux.org/Virus.DOS.PS-MPC.209

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:09:16.062514423Z 53 PC: 12a53 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:09:16.064740645Z 37 PC: 12a5d | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:09:16.066820947Z 78 PC: 12a7b | Find first file
2018-12-17T23:09:16.073569081Z 61 PC: 12a86 | Open file (Filename = '')
2018-12-17T23:09:16.081483357Z 63 PC: 12a92 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T23:09:16.086048846Z 66 PC: 12a9a | Move file pointer
2018-12-17T23:09:16.090778038Z 64 PC: 12add | Write file or device (Write 209 bytes on handle 5)
2018-12-17T23:09:16.356226555Z 66 PC: 12ae5 | Move file pointer
2018-12-17T23:09:16.35923504Z 64 PC: 12af0 | Write file or device (Write 26 bytes on handle 5)
2018-12-17T23:09:16.36677148Z 62 PC: 12af9 | Close file
2018-12-17T23:09:16.376661981Z 79 PC: 12a7b | Find next file
2018-12-17T23:09:16.380981326Z 61 PC: 12a86 | Open file (Filename = '')
2018-12-17T23:09:16.388234757Z 63 PC: 12a92 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T23:09:16.395525397Z 66 PC: 12a9a | Move file pointer
2018-12-17T23:09:16.39979025Z 64 PC: 12add | Write file or device (Write 209 bytes on handle 5)
2018-12-17T23:09:16.402861662Z 66 PC: 12ae5 | Move file pointer
2018-12-17T23:09:16.404436149Z 64 PC: 12af0 | Write file or device (Write 26 bytes on handle 5)
2018-12-17T23:09:16.407850516Z 62 PC: 12af9 | Close file
2018-12-17T23:09:16.417428519Z 79 PC: 12a7b | Find next file
2018-12-17T23:09:16.42039592Z 61 PC: 12a86 | Open file (Filename = '')
2018-12-17T23:09:16.429502625Z 63 PC: 12a92 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T23:09:16.4364562Z 66 PC: 12a9a | Move file pointer
2018-12-17T23:09:16.438013654Z 64 PC: 12add | Write file or device (Write 209 bytes on handle 5)
2018-12-17T23:09:16.441163797Z 66 PC: 12ae5 | Move file pointer
2018-12-17T23:09:16.443138682Z 64 PC: 12af0 | Write file or device (Write 26 bytes on handle 5)
2018-12-17T23:09:16.447377089Z 62 PC: 12af9 | Close file