Sample viewer

vx.netlux.org/Virus.DOS.Failure.2048

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:10:28.991198094Z 196 PC: 13d0d | UNKNOWN!
2018-12-17T23:10:28.993527602Z 53 PC: 12b7a | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:10:28.995137133Z 37 PC: 12b83 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:10:28.996951839Z 48 PC: 12b9b | Get DOS version
2018-12-17T23:10:28.998967446Z 74 PC: 12b83 | Reallocate memory
2018-12-17T23:10:29.002001632Z 53 PC: 12b7a | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:10:29.003659703Z 37 PC: 12b83 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:10:29.005328471Z 67 PC: 12d34 | Get or set file attributes
2018-12-17T23:10:29.013616098Z 67 PC: 12d34 | Get or set file attributes
2018-12-17T23:10:29.030283844Z 61 PC: 12d34 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:10:29.039549686Z 66 PC: 12d34 | Move file pointer
2018-12-17T23:10:29.04218271Z 66 PC: 12d60 | Move file pointer
2018-12-17T23:10:29.044358132Z 63 PC: 12d34 | Read file or device (Read 6 bytes on handle 5)
2018-12-17T23:10:29.052665195Z 66 PC: 12d60 | Move file pointer
2018-12-17T23:10:29.05498932Z 64 PC: 12d34 | Write file or device (Write 6 bytes on handle 5)
2018-12-17T23:10:29.060664342Z 62 PC: 12d34 | Close file
2018-12-17T23:10:29.072877433Z 67 PC: 12d34 | Get or set file attributes
2018-12-17T23:10:29.085037219Z 37 PC: 12b83 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:10:29.087660874Z 75 PC: 12bed | Execute program
2018-12-17T23:10:29.105782824Z 9 PC: 1462c | Display string (Could not find end pointer)
2018-12-17T23:10:29.112361275Z 76 PC: 14631 | Terminate with return code (Return code = '0')
2018-12-17T23:10:29.122454435Z 49 PC: 0 | Terminate and stay resident (Return code = '0' | Memory size = '439')