Sample viewer

vx.netlux.org/Virus.DOS.Terminator.2294

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:25:37.993405159Z 75 PC: 141bf | Execute program
2018-12-17T22:25:37.996867277Z 53 PC: 9f2d5 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:25:37.997945533Z 53 PC: 9f2e7 | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:25:37.99968449Z 37 PC: 9f2f7 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:25:38.002308474Z 37 PC: 9f320 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:25:38.003501796Z 37 PC: 9f329 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:25:38.004701249Z 53 PC: 9f33b | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:25:38.006942367Z 37 PC: 9f34b | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:25:38.076299083Z 42 PC: 9f505 | Get date 0x9f505: ret
0x9f506: jmp 0x9f5be
0x9f509: jmp 0x9f598
0x9f50c: cmp ax, 0x4bfe
0x9f50f: je 0x9f506
0x9f511: cmp ah, 0xf
0x9f514: je 0x9f4f9
0x9f516: jb 0x9f509
0x9f518: cmp ah, 0x11
0x9f51b: je 0x9f4fc
0x9f51d: cmp ah, 0x12
0x9f520: je 0x9f4fc
0x9f522: cmp ah, 0x4e
0x9f525: je 0x9f4fc
0x9f527: cmp ah, 0x4f
0x9f52a: je 0x9f4fc
0x9f52c: cmp byte ptr cs:[0x970], 1
0x9f532: je 0x9f53e
0x9f534: cmp ah, 0x3f
0x9f537: je 0x9f5ab
2018-12-17T22:25:38.078543888Z 53 PC: 9f48a | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:25:38.080056064Z 37 PC: 9f49a | Set interrupt vector (Interrupt = '9' AKA 'Display string')