Sample viewer

vx.netlux.org/Virus.DOS.TaiPan.438

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:09:25.311510196Z 123 PC: 1a5e2 | UNKNOWN!
2018-12-17T23:09:25.313542131Z 72 PC: 1a605 | Allocate memory
2018-12-17T23:09:25.315403097Z 74 PC: 1a617 | Reallocate memory
2018-12-17T23:09:25.316868544Z 72 PC: 1a605 | Allocate memory
2018-12-17T23:09:25.31920542Z 53 PC: 9fa77 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:09:25.320670334Z 37 PC: 9fa86 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:09:25.32347079Z 48 PC: 18294 | Get DOS version
2018-12-17T23:09:25.325225545Z 74 PC: 182f6 | Reallocate memory
2018-12-17T23:09:25.327299932Z 48 PC: 16878 | Get DOS version
2018-12-17T23:09:25.328677887Z 53 PC: 16880 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:09:25.330213122Z 37 PC: 16892 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:09:25.332083884Z 68 PC: 16916 | I/O control for devices (Set for = '0<9v'��� �u�O���D��D;�r�X_^��]�')
2018-12-17T23:09:25.333520027Z 68 PC: 16916 | I/O control for devices
2018-12-17T23:09:25.334859119Z 68 PC: 16916 | I/O control for devices (Set for = '')
2018-12-17T23:09:25.336778787Z 68 PC: 16916 | I/O control for devices (Set for = '')
2018-12-17T23:09:25.338426522Z 68 PC: 16916 | I/O control for devices (Set for = '')
2018-12-17T23:09:25.34111929Z 99 PC: 185cb | Get DBCS lead byte table pointer
2018-12-17T23:09:25.343039098Z 68 PC: 185e5 | I/O control for devices (Set for = '')
2018-12-17T23:09:25.344572746Z 68 PC: 185f0 | I/O control for devices (Set for = '')
2018-12-17T23:09:25.346346089Z 68 PC: 185fb | I/O control for devices (Set for = '')
2018-12-17T23:09:25.348409521Z 68 PC: 18603 | I/O control for devices (Set for = '��b���g�t�S3����[r�2��W�<t�<u�6�u����>��>W')
2018-12-17T23:09:25.350421044Z 48 PC: 18608 | Get DOS version
2018-12-17T23:09:25.352655094Z 64 PC: 18883 | Write file or device (Write 23 bytes on handle 2)
2018-12-17T23:09:25.358970302Z 37 PC: 169ab | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:09:25.360178116Z 76 PC: 16994 | Terminate with return code (Return code = '1')