Sample viewer

vx.netlux.org/Virus.DOS.Guide.1328

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:07:27.498120021Z 255 PC: 12b9b | UNKNOWN!
2018-12-17T22:07:27.500028223Z 82 PC: 12ba6 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:07:27.502168414Z 98 PC: 12bd3 | Get current PSP
2018-12-17T22:07:27.503920954Z 37 PC: 12bfb | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:07:27.506222988Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T22:07:27.510911808Z 76 PC: 12a86 | Terminate with return code (Return code = '36')

{"DateBased":false,"Day":0,"Month":0,"Year":0,"Hour":0,"Min":0,"Second":0,"TimeBased":true,"OriginalID":1954,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:44:36.418845263Z 255 PC: 12b9b | UNKNOWN!
2018-12-25T11:44:36.420901258Z 82 PC: 12ba6 | Get DOS internal pointers (SYSVARS)
2018-12-25T11:44:36.422224746Z 98 PC: 12bd3 | Get current PSP
2018-12-25T11:44:36.42305236Z 37 PC: 12bfb | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:44:36.425058018Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-25T11:44:36.430709476Z 76 PC: 12a86 | Terminate with return code (Return code = '36')

{"DateBased":false,"Day":0,"Month":0,"Year":0,"Hour":0,"Min":0,"Second":1,"TimeBased":true,"OriginalID":1954,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:44:36.628847895Z 255 PC: 12b9b | UNKNOWN!
2018-12-25T11:44:36.630729648Z 82 PC: 12ba6 | Get DOS internal pointers (SYSVARS)
2018-12-25T11:44:36.631598315Z 98 PC: 12bd3 | Get current PSP
2018-12-25T11:44:36.632215842Z 37 PC: 12bfb | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:44:36.633619985Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-25T11:44:36.63740313Z 76 PC: 12a86 | Terminate with return code (Return code = '36')