Sample viewer

vx.netlux.org/Virus.DOS.Yankee.2720

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:09:28.413150639Z 191 PC: 1895e | UNKNOWN!
2018-12-17T22:09:28.414635814Z 53 PC: 18a21 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:09:28.416214888Z 53 PC: 18a2e | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:09:28.417239254Z 37 PC: 18a3a | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:09:28.41998138Z 37 PC: 18aa2 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:09:28.421231018Z 53 PC: 18aaf | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:09:28.422321872Z 53 PC: 18ac7 | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:09:28.423847311Z 53 PC: 18ad0 | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:09:28.424863222Z 37 PC: 18ae0 | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:09:28.425903947Z 53 PC: 18ae5 | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:09:28.427739602Z 37 PC: 18af5 | Set interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:09:28.429353389Z 37 PC: 18b09 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:09:28.430611017Z 37 PC: 18b53 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:09:28.433013908Z 37 PC: 18b61 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:09:28.434190409Z 78 PC: 12a5b | Find first file