Sample viewer

vx.netlux.org/Virus.DOS.Australian.Lipo.290

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:09:47.414931097Z 48 PC: 13612 | Get DOS version
2018-12-17T23:09:47.416906415Z 53 PC: 13640 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:09:47.41979036Z 37 PC: 13650 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:09:47.421499931Z 9 PC: 135fb | Display string (String= ' ANSI v1.0 (c) 1990 The Nutty Professor. �For Personal Use only.� ')
2018-12-17T23:09:47.432356051Z 9 PC: 135fb | Display string (Could not find end pointer)
2018-12-17T23:09:47.449439305Z 9 PC: 135fb | Display string (String= 'Status: ')
2018-12-17T23:09:47.45232996Z 2 PC: 135fb | Character output (Char = '4f')
2018-12-17T23:09:47.455064896Z 2 PC: 135fb | Character output (Char = '4e')
2018-12-17T23:09:47.458408872Z 2 PC: 135fb | Character output (Char = '20')
2018-12-17T23:09:47.460838032Z 2 PC: 135fb | Character output (Char = '20')
2018-12-17T23:09:47.46326953Z 2 PC: 135fb | Character output (Char = '46')
2018-12-17T23:09:47.466479396Z 2 PC: 135fb | Character output (Char = '41')
2018-12-17T23:09:47.469179653Z 2 PC: 135fb | Character output (Char = '53')
2018-12-17T23:09:47.471900558Z 2 PC: 135fb | Character output (Char = '54')
2018-12-17T23:09:47.475118021Z 9 PC: 135fb | Display string (String= ' Buffer size: ')
2018-12-17T23:09:47.481865411Z 2 PC: 135fb | Character output (Char = '32')
2018-12-17T23:09:47.48418289Z 2 PC: 135fb | Character output (Char = '30')
2018-12-17T23:09:47.486695852Z 2 PC: 135fb | Character output (Char = '30')
2018-12-17T23:09:47.490219107Z 9 PC: 135fb | Display string (String= ' Bytes free: ')
2018-12-17T23:09:47.496678052Z 2 PC: 135fb | Character output (Char = '32')
2018-12-17T23:09:47.502497891Z 2 PC: 135fb | Character output (Char = '30')
2018-12-17T23:09:47.512951107Z 2 PC: 135fb | Character output (Char = '30')
2018-12-17T23:09:47.515269228Z 9 PC: 135fb | Display string (String= ' ')
2018-12-17T23:09:47.520938701Z 53 PC: 13469 | Get interrupt vector (Interrupt = '41' AKA 'Parse filename')
2018-12-17T23:09:47.523019563Z 37 PC: 13489 | Set interrupt vector (Interrupt = '41' AKA 'Parse filename')
2018-12-17T23:09:47.52436327Z 53 PC: 1348e | Get interrupt vector (Interrupt = '22' AKA 'Create or truncate file')
2018-12-17T23:09:47.525706705Z 37 PC: 1349e | Set interrupt vector (Interrupt = '22' AKA 'Create or truncate file')
2018-12-17T23:09:47.527546673Z 53 PC: 134a3 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:09:47.529158868Z 37 PC: 134b3 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:09:47.530928558Z 73 PC: 134bc | Release memory
2018-12-17T23:09:47.533445362Z 9 PC: 135fb | Display string (String= 'r my instructions only. /U = Uninstall ')
2018-12-17T23:09:47.535857553Z 49 PC: 134d0 | Terminate and stay resident (Return code = '0' | Memory size = '159')