Sample viewer

vx.netlux.org/Virus.DOS.Kela.Chigi.2203

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:21:45.369180779Z 255 PC: 12bb2 | UNKNOWN!
2018-12-17T22:21:45.370249983Z 72 PC: 12bce | Allocate memory
2018-12-17T22:21:45.37268824Z 82 PC: 12c18 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:21:45.374288606Z 53 PC: 9fa9d | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:21:45.375865419Z 37 PC: 9faae | Set interrupt vector (Interrupt = '48' AKA 'Get DOS version')
2018-12-17T22:21:45.377133697Z 37 PC: 9fabb | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:21:45.378096521Z 53 PC: 9f3e5 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:21:45.379005898Z 37 PC: 9f3f8 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:21:45.380594147Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T22:21:45.383272062Z 76 PC: 12a86 | Terminate with return code (Return code = '36')