Sample viewer

vx.netlux.org/Virus.DOS.Fleeing.1986

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:54:25.001718929Z 53 PC: 12a74 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:54:25.004088677Z 37 PC: 12a87 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:54:25.006139072Z 37 PC: 12a8f | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:54:25.007569197Z 123 PC: 12b09 | UNKNOWN!
2018-12-17T21:54:25.009211373Z 72 PC: 12b42 | Allocate memory
2018-12-17T21:54:25.01092648Z 74 PC: 12b5b | Reallocate memory
2018-12-17T21:54:25.012195467Z 72 PC: 12b42 | Allocate memory
2018-12-17T21:54:25.016248065Z 53 PC: 9f559 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:54:25.017736574Z 37 PC: 9f56a | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:54:25.01961764Z 61 PC: 9f5f1 | Open file (Filename = '')
2018-12-17T21:54:25.027141169Z 66 PC: 9f8ef | Move file pointer
2018-12-17T21:54:25.033249839Z 63 PC: 9f611 | Read file or device (Read 2234 bytes on handle 5)
2018-12-17T21:54:25.042789803Z 66 PC: 9f8ef | Move file pointer
2018-12-17T21:54:25.047974043Z 63 PC: 9f639 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:54:25.050476494Z 66 PC: 9f8ef | Move file pointer
2018-12-17T21:54:25.051735017Z 63 PC: 9f667 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T21:54:25.054231202Z 62 PC: 9f900 | Close file
2018-12-17T21:54:25.056451682Z 47 PC: 9fa5e | Get disk transfer address
2018-12-17T21:54:25.057486787Z 26 PC: 9fa69 | Set disk transfer address
2018-12-17T21:54:25.058458396Z 78 PC: 9fa73 | Find first file
2018-12-17T21:54:25.062598913Z 78 PC: 9fa8d | Find first file
2018-12-17T21:54:25.066671722Z 68 PC: 9f7d6 | I/O control for devices (Set for = 'T')
2018-12-17T21:54:25.068033174Z 79 PC: 9fac6 | Find next file
2018-12-17T21:54:25.070953404Z 26 PC: 9facf | Set disk transfer address
2018-12-17T21:54:25.076341852Z 98 PC: 151d8 | Get current PSP
2018-12-17T21:54:25.077422911Z 74 PC: 15217 | Reallocate memory
2018-12-17T21:54:25.079489519Z 82 PC: 1521d | Get DOS internal pointers (SYSVARS)
2018-12-17T21:54:25.080866171Z 25 PC: 162ca | Get default drive
2018-12-17T21:54:25.082284698Z 13 PC: 16258 | Disk reset
2018-12-17T21:54:25.084719699Z 99 PC: 13b6b | Get DBCS lead byte table pointer
2018-12-17T21:54:25.086334461Z 68 PC: 13b85 | I/O control for devices (Set for = '')
2018-12-17T21:54:25.088090987Z 68 PC: 13b90 | I/O control for devices (Set for = '')
2018-12-17T21:54:25.090838204Z 68 PC: 13b9b | I/O control for devices (Set for = '')
2018-12-17T21:54:25.092265095Z 68 PC: 13ba3 | I/O control for devices (Set for = '��b���g�t�S3����[r�2��W�<t�<u�6�u����>��>W')
2018-12-17T21:54:25.093859942Z 48 PC: 13ba8 | Get DOS version
2018-12-17T21:54:25.096129384Z 64 PC: 13e21 | Write file or device (Write 23 bytes on handle 2)
2018-12-17T21:54:25.101550434Z 64 PC: 13e21 | Write file or device (Write 25 bytes on handle 1)
2018-12-17T21:54:25.106758269Z 64 PC: 13e21 | Write file or device (Write 169 bytes on handle 1)
2018-12-17T21:54:25.118041404Z 76 PC: 9fb3e | Terminate with return code (Return code = '0')