Sample viewer

vx.netlux.org/Virus.DOS.Guide.1331

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:20:38.400290912Z 255 PC: 13831 | UNKNOWN!
2018-12-17T22:20:38.402216895Z 82 PC: 1383c | Get DOS internal pointers (SYSVARS)
2018-12-17T22:20:38.404256388Z 98 PC: 13869 | Get current PSP
2018-12-17T22:20:38.405607574Z 37 PC: 13891 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:20:38.410482592Z 74 PC: 12be6 | Reallocate memory
2018-12-17T22:20:38.412866504Z 26 PC: 12c08 | Set disk transfer address
2018-12-17T22:20:38.421574984Z 76 PC: 12bab | Terminate with return code (Return code = '0')

{"DateBased":false,"Day":0,"Month":0,"Year":0,"Hour":0,"Min":0,"Second":0,"TimeBased":true,"OriginalID":3584,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:49:30.41304829Z 255 PC: 13831 | UNKNOWN!
2018-12-25T11:49:30.414867637Z 82 PC: 1383c | Get DOS internal pointers (SYSVARS)
2018-12-25T11:49:30.415979322Z 98 PC: 13869 | Get current PSP
2018-12-25T11:49:30.416762603Z 37 PC: 13891 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:49:30.42118215Z 74 PC: 12be6 | Reallocate memory
2018-12-25T11:49:30.422798345Z 26 PC: 12c08 | Set disk transfer address
2018-12-25T11:49:30.429260635Z 76 PC: 12bab | Terminate with return code (Return code = '0')

{"DateBased":false,"Day":0,"Month":0,"Year":0,"Hour":0,"Min":0,"Second":1,"TimeBased":true,"OriginalID":3584,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:49:30.676065206Z 255 PC: 13831 | UNKNOWN!
2018-12-25T11:49:30.677206974Z 82 PC: 1383c | Get DOS internal pointers (SYSVARS)
2018-12-25T11:49:30.678371156Z 98 PC: 13869 | Get current PSP
2018-12-25T11:49:30.679270686Z 37 PC: 13891 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:49:30.683792087Z 74 PC: 12be6 | Reallocate memory
2018-12-25T11:49:30.686406193Z 26 PC: 12c08 | Set disk transfer address
2018-12-25T11:49:30.692592436Z 76 PC: 12bab | Terminate with return code (Return code = '0')