Sample viewer

vx.netlux.org/Virus.DOS.Preacher.523

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:05:09.15590211Z 74 PC: 12b9e | Reallocate memory
2018-12-17T22:05:09.157356516Z 60 PC: 12ba8 | Create or truncate file
2018-12-17T22:05:09.172013282Z 64 PC: 12bbc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:05:09.175914052Z 62 PC: 12bc0 | Close file
2018-12-17T22:05:09.181449283Z 75 PC: 12bd9 | Execute program
2018-12-17T22:05:09.188640936Z 60 PC: 12be3 | Create or truncate file
2018-12-17T22:05:09.197055368Z 62 PC: 12be9 | Close file
2018-12-17T22:05:09.198693338Z 53 PC: 12bee | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:05:09.199960114Z 52 PC: 12c05 | Get InDOS flag pointer
2018-12-17T22:05:09.201499415Z 37 PC: 12c17 | Set interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:05:09.203396554Z 49 PC: 12c1c | Terminate and stay resident (Return code = '0' | Memory size = '4096')