Sample viewer

vx.netlux.org/Virus.DOS.Peterburg.529.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:09:06.690191411Z 202 PC: 12a54 | UNKNOWN!
2018-12-17T22:09:06.69190385Z 53 PC: 12aad | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:09:06.693358721Z 37 PC: 12abf | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:09:06.694674407Z 74 PC: 12ac7 | Reallocate memory
2018-12-17T22:09:06.69712409Z 53 PC: 12b5f | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:09:06.698684425Z 37 PC: 12b6f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:09:06.700007735Z 67 PC: 12b7b | Get or set file attributes
2018-12-17T22:09:06.706028873Z 67 PC: 12b89 | Get or set file attributes
2018-12-17T22:09:06.722723182Z 61 PC: 12b90 | Open file (Filename = '')
2018-12-17T22:09:06.733996226Z 87 PC: 12b9a | Get or set file date and time
2018-12-17T22:09:06.735384903Z 63 PC: 12bb0 | Read file or device (Read 529 bytes on handle 5)
2018-12-17T22:09:06.74309973Z 87 PC: 12c13 | Get or set file date and time
2018-12-17T22:09:06.744781001Z 62 PC: 12c17 | Close file
2018-12-17T22:09:06.752358494Z 67 PC: 12c26 | Get or set file attributes
2018-12-17T22:09:06.763278606Z 37 PC: 12c30 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:09:06.764829849Z 75 PC: 12aea | Execute program
2018-12-17T22:09:06.779751605Z 77 PC: 12af7 | Get program return code
2018-12-17T22:09:06.781899962Z 49 PC: 12b00 | Terminate and stay resident (Return code = '0' | Memory size = '100')