Sample viewer

vx.netlux.org/Virus.DOS.V.736

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:15:27.66338779Z 53 PC: 12aa0 | Get interrupt vector (Interrupt = '32' AKA 'Reserved')
2018-12-17T22:15:27.665032614Z 53 PC: 12aad | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:15:27.666022834Z 37 PC: 12abd | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:15:27.666861382Z 37 PC: 12ac4 | Set interrupt vector (Interrupt = '32' AKA 'Reserved')
2018-12-17T22:15:27.668606294Z 2 PC: 13741 | Character output (Char = '4d')
2018-12-17T22:15:27.670626494Z 2 PC: 13741 | Character output (Char = '65')
2018-12-17T22:15:27.672762104Z 2 PC: 13741 | Character output (Char = '6d')
2018-12-17T22:15:27.675306097Z 2 PC: 13741 | Character output (Char = '6f')
2018-12-17T22:15:27.677447303Z 2 PC: 13741 | Character output (Char = '72')
2018-12-17T22:15:27.679562182Z 2 PC: 13741 | Character output (Char = '79')
2018-12-17T22:15:27.682455483Z 2 PC: 13741 | Character output (Char = '20')
2018-12-17T22:15:27.684508848Z 2 PC: 13741 | Character output (Char = '49')
2018-12-17T22:15:27.686533842Z 2 PC: 13741 | Character output (Char = '6e')
2018-12-17T22:15:27.689790544Z 2 PC: 13741 | Character output (Char = '66')
2018-12-17T22:15:27.691795347Z 2 PC: 13741 | Character output (Char = '6f')
2018-12-17T22:15:27.693786139Z 2 PC: 13741 | Character output (Char = '20')
2018-12-17T22:15:27.696315147Z 2 PC: 13741 | Character output (Char = '76')
2018-12-17T22:15:27.698539386Z 2 PC: 13741 | Character output (Char = '35')
2018-12-17T22:15:27.700562752Z 2 PC: 13741 | Character output (Char = '2e')
2018-12-17T22:15:27.703252301Z 2 PC: 13741 | Character output (Char = '33')
2018-12-17T22:15:27.705872402Z 2 PC: 13741 | Character output (Char = '31')
2018-12-17T22:15:27.708647063Z 2 PC: 13741 | Character output (Char = '0d')
2018-12-17T22:15:27.710887194Z 2 PC: 13741 | Character output (Char = '0a')
2018-12-17T22:15:27.71471378Z 2 PC: 13741 | Character output (Char = '43')
2018-12-17T22:15:27.716699488Z 2 PC: 13741 | Character output (Char = '6f')
2018-12-17T22:15:27.718864022Z 2 PC: 13741 | Character output (Char = '70')
2018-12-17T22:15:27.721437335Z 2 PC: 13741 | Character output (Char = '79')
2018-12-17T22:15:27.723505161Z 2 PC: 13741 | Character output (Char = '72')
2018-12-17T22:15:27.725562109Z 2 PC: 13741 | Character output (Char = '69')
2018-12-17T22:15:27.72817942Z 2 PC: 13741 | Character output (Char = '67')
2018-12-17T22:15:27.730512535Z 2 PC: 13741 | Character output (Char = '68')
2018-12-17T22:15:27.73359949Z 2 PC: 13741 | Character output (Char = '74')
2018-12-17T22:15:27.736476256Z 2 PC: 13741 | Character output (Char = '20')
2018-12-17T22:15:27.738512615Z 2 PC: 13741 | Character output (Char = '31')
2018-12-17T22:15:27.740446781Z 2 PC: 13741 | Character output (Char = '39')
2018-12-17T22:15:27.742909388Z 2 PC: 13741 | Character output (Char = '39')
2018-12-17T22:15:27.744912611Z 2 PC: 13741 | Character output (Char = '30')
2018-12-17T22:15:27.74688228Z 2 PC: 13741 | Character output (Char = '20')
2018-12-17T22:15:27.749501492Z 2 PC: 13741 | Character output (Char = '43')
2018-12-17T22:15:27.751496781Z 2 PC: 13741 | Character output (Char = '65')
2018-12-17T22:15:27.753509842Z 2 PC: 13741 | Character output (Char = '6e')
2018-12-17T22:15:27.756464172Z 2 PC: 13741 | Character output (Char = '74')
2018-12-17T22:15:27.75871748Z 2 PC: 13741 | Character output (Char = '72')
2018-12-17T22:15:27.761000914Z 2 PC: 13741 | Character output (Char = '61')
2018-12-17T22:15:27.763785946Z 2 PC: 13741 | Character output (Char = '6c')
2018-12-17T22:15:27.765858141Z 2 PC: 13741 | Character output (Char = '20')
2018-12-17T22:15:27.76809282Z 2 PC: 13741 | Character output (Char = '50')
2018-12-17T22:15:27.770773403Z 2 PC: 13741 | Character output (Char = '6f')
2018-12-17T22:15:27.772862717Z 2 PC: 13741 | Character output (Char = '69')
2018-12-17T22:15:27.774970142Z 2 PC: 13741 | Character output (Char = '6e')
2018-12-17T22:15:27.778083546Z 2 PC: 13741 | Character output (Char = '74')
2018-12-17T22:15:27.780257348Z 2 PC: 13741 | Character output (Char = '20')
2018-12-17T22:15:27.782835172Z 2 PC: 13741 | Character output (Char = '53')
2018-12-17T22:15:27.785713313Z 2 PC: 13741 | Character output (Char = '6f')
2018-12-17T22:15:27.788113219Z 2 PC: 13741 | Character output (Char = '66')
2018-12-17T22:15:27.790313252Z 2 PC: 13741 | Character output (Char = '74')
2018-12-17T22:15:27.793115778Z 2 PC: 13741 | Character output (Char = '77')
2018-12-17T22:15:27.795556587Z 2 PC: 13741 | Character output (Char = '61')
2018-12-17T22:15:27.798079848Z 2 PC: 13741 | Character output (Char = '72')
2018-12-17T22:15:27.801017191Z 2 PC: 13741 | Character output (Char = '65')
2018-12-17T22:15:27.803156175Z 2 PC: 13741 | Character output (Char = '2c')
2018-12-17T22:15:27.80649412Z 2 PC: 13741 | Character output (Char = '20')
2018-12-17T22:15:27.811533655Z 2 PC: 13741 | Character output (Char = '49')
2018-12-17T22:15:27.813941076Z 2 PC: 13741 | Character output (Char = '6e')
2018-12-17T22:15:27.815984998Z 2 PC: 13741 | Character output (Char = '63')
2018-12-17T22:15:27.837375669Z 2 PC: 13741 | Character output (Char = '2e')
2018-12-17T22:15:27.839500507Z 2 PC: 13741 | Character output (Char = '20')
2018-12-17T22:15:27.841518246Z 2 PC: 13741 | Character output (Char = '20')
2018-12-17T22:15:27.843922844Z 2 PC: 13741 | Character output (Char = '41')
2018-12-17T22:15:27.846004809Z 2 PC: 13741 | Character output (Char = '6c')
2018-12-17T22:15:27.848437332Z 2 PC: 13741 | Character output (Char = '6c')
2018-12-17T22:15:27.850875567Z 2 PC: 13741 | Character output (Char = '20')
2018-12-17T22:15:27.853303283Z 2 PC: 13741 | Character output (Char = '72')
2018-12-17T22:15:27.855373596Z 2 PC: 13741 | Character output (Char = '69')
2018-12-17T22:15:27.858263925Z 2 PC: 13741 | Character output (Char = '67')
2018-12-17T22:15:27.860236652Z 2 PC: 13741 | Character output (Char = '68')
2018-12-17T22:15:27.862264992Z 2 PC: 13741 | Character output (Char = '74')
2018-12-17T22:15:27.864614269Z 2 PC: 13741 | Character output (Char = '73')
2018-12-17T22:15:27.866712412Z 2 PC: 13741 | Character output (Char = '20')
2018-12-17T22:15:27.868604222Z 2 PC: 13741 | Character output (Char = '72')
2018-12-17T22:15:27.871606438Z 2 PC: 13741 | Character output (Char = '65')
2018-12-17T22:15:27.873161217Z 2 PC: 13741 | Character output (Char = '73')
2018-12-17T22:15:27.875187632Z 2 PC: 13741 | Character output (Char = '65')
2018-12-17T22:15:27.877983674Z 2 PC: 13741 | Character output (Char = '72')
2018-12-17T22:15:27.879965021Z 2 PC: 13741 | Character output (Char = '76')
2018-12-17T22:15:27.882403836Z 2 PC: 13741 | Character output (Char = '65')
2018-12-17T22:15:27.884851291Z 2 PC: 13741 | Character output (Char = '64')
2018-12-17T22:15:27.886848757Z 2 PC: 13741 | Character output (Char = '2e')
2018-12-17T22:15:27.889279031Z 2 PC: 13741 | Character output (Char = '0d')
2018-12-17T22:15:27.891733352Z 2 PC: 13741 | Character output (Char = '0a')
2018-12-17T22:15:27.89560351Z 2 PC: 13741 | Character output (Char = '0d')
2018-12-17T22:15:27.897322445Z 2 PC: 13741 | Character output (Char = '0a')
2018-12-17T22:15:27.901175342Z 48 PC: 12f1a | Get DOS version
2018-12-17T22:15:27.903283498Z 68 PC: 1301e | I/O control for devices (Set for = '�/ �t� �!��2���ᠿd���t)3���m)�')
2018-12-17T22:15:27.904463884Z 88 PC: 13039 | case 0xGet or set allocation strateg:
2018-12-17T22:15:27.9068124Z 53 PC: 138c9 | Get interrupt vector (Interrupt = '103' AKA 'Set handle count')
2018-12-17T22:15:27.907821131Z 82 PC: 13048 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:15:27.909635226Z 2 PC: 13741 | Character output (Char = '45')
2018-12-17T22:15:27.913418829Z 2 PC: 13741 | Character output (Char = '72')
2018-12-17T22:15:27.915476036Z 2 PC: 13741 | Character output (Char = '72')
2018-12-17T22:15:27.917558044Z 2 PC: 13741 | Character output (Char = '6f')
2018-12-17T22:15:27.920178578Z 2 PC: 13741 | Character output (Char = '72')
2018-12-17T22:15:27.922407675Z 2 PC: 13741 | Character output (Char = '2e')
2018-12-17T22:15:27.924782563Z 2 PC: 13741 | Character output (Char = '0d')
2018-12-17T22:15:27.927609711Z 2 PC: 13741 | Character output (Char = '0a')
2018-12-17T22:15:27.931376335Z 37 PC: 12b23 | Set interrupt vector (Interrupt = '32' AKA 'Reserved')
2018-12-17T22:15:27.932719269Z 53 PC: 12b43 | Get interrupt vector (Interrupt = '46' AKA 'Set verify flag')
2018-12-17T22:15:27.934462491Z 53 PC: 12b4f | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:15:27.935510615Z 37 PC: 12b61 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:15:27.936513913Z 37 PC: 12b68 | Set interrupt vector (Interrupt = '46' AKA 'Set verify flag')
2018-12-17T22:15:27.938021269Z 37 PC: 12b6f | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:15:27.939212928Z 49 PC: 12b7a | Terminate and stay resident (Return code = '0' | Memory size = '62')