Sample viewer

vx.netlux.org/Virus.DOS.VCL.684

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:12:40.261064349Z 26 PC: 12d54 | Set disk transfer address
2018-12-17T23:12:40.26286841Z 53 PC: 12b87 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:12:40.264830401Z 37 PC: 12b99 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:12:40.274342954Z 71 PC: 12ba5 | Get current directory
2018-12-17T23:12:40.277088882Z 78 PC: 12c18 | Find first file
2018-12-17T23:12:40.281756744Z 78 PC: 12c18 | Find first file
2018-12-17T23:12:40.286208258Z 59 PC: 12bbb | Change current directory
2018-12-17T23:12:40.290204042Z 9 PC: 12bc5 | Display string (String= 'Bubbles Virus Admiral Bailey [IVP] ')
2018-12-17T23:12:40.30906149Z 37 PC: 12bcf | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:12:40.310089903Z 59 PC: 12bd9 | Change current directory
2018-12-17T23:12:40.311663969Z 26 PC: 12d54 | Set disk transfer address
2018-12-17T23:12:40.313445621Z 26 PC: 12d54 | Set disk transfer address
2018-12-17T23:12:40.31446949Z 53 PC: 12b87 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:12:40.315511826Z 37 PC: 12b99 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:12:40.317662248Z 71 PC: 12ba5 | Get current directory
2018-12-17T23:12:40.320972763Z 78 PC: 12c18 | Find first file
2018-12-17T23:12:40.327526535Z 61 PC: 12d5d | Open file (Filename = 'TEST.EXE')
2018-12-17T23:12:40.334900181Z 63 PC: 12c33 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T23:12:40.337322583Z 62 PC: 12c37 | Close file
2018-12-17T23:12:40.339056251Z 67 PC: 12d68 | Get or set file attributes
2018-12-17T23:12:40.35688628Z 61 PC: 12d5d | Open file (Filename = 'TEST.EXE')
2018-12-17T23:12:40.364090398Z 90 PC: 12d11 | Create unique file
2018-12-17T23:12:40.370333844Z 87 PC: 12d38 | Get or set file date and time
2018-12-17T23:12:40.371989012Z 62 PC: 12d3c | Close file
2018-12-17T23:12:40.379071254Z 67 PC: 12d68 | Get or set file attributes