Sample viewer

vx.netlux.org/Virus.DOS.Cagliary.622

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:20:25.066682068Z 255 PC: 1516f | UNKNOWN!
2018-12-17T22:20:25.078986281Z 53 PC: 12a8f | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:20:25.080726828Z 37 PC: 12a9e | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:20:25.082702362Z 74 PC: 12aa9 | Reallocate memory
2018-12-17T22:20:25.085329964Z 61 PC: 12bd0 | Open file (Filename = '')
2018-12-17T22:20:25.093498976Z 87 PC: 12bd8 | Get or set file date and time
2018-12-17T22:20:25.095823134Z 66 PC: 12c7e | Move file pointer
2018-12-17T22:20:25.098162572Z 66 PC: 12c5c | Move file pointer
2018-12-17T22:20:25.100980486Z 63 PC: 12c8a | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:20:25.10488642Z 62 PC: 12c45 | Close file
2018-12-17T22:20:25.107265328Z 75 PC: 12b0e | Execute program
2018-12-17T22:20:25.126114279Z 9 PC: 22ae2 | Display string (String= 'Goat file (COM). Size=00002710h/0000010000d bytes. ')
2018-12-17T22:20:25.131485995Z 76 PC: 22ae6 | Terminate with return code (Return code = '36')
2018-12-17T22:20:25.136199599Z 73 PC: 12ab5 | Release memory
2018-12-17T22:20:25.138837867Z 49 PC: 12abd | Terminate and stay resident (Return code = '0' | Memory size = '56')