Sample viewer

vx.netlux.org/Virus.DOS.MSU4.2000

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:27:07.809484878Z 53 PC: 12c54 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:27:07.811248492Z 231 PC: 12c60 | UNKNOWN!
2018-12-17T22:27:07.813453675Z 53 PC: 13053 | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:27:07.814807685Z 37 PC: 13063 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:27:07.816203458Z 84 PC: 1307f | Get verify flag
2018-12-17T22:27:07.81874424Z 74 PC: 12c84 | Reallocate memory
2018-12-17T22:27:07.820448585Z 37 PC: 12c8c | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:27:07.821875382Z 98 PC: 12cb0 | Get current PSP
2018-12-17T22:27:07.823728222Z 61 PC: 130b5 | Open file (Filename = 'A:\TEST.COM')
2018-12-17T22:27:07.831541011Z 87 PC: 130b5 | Get or set file date and time
2018-12-17T22:27:07.833565488Z 63 PC: 130b5 | Read file or device (Read 2000 bytes on handle 5)
2018-12-17T22:27:07.84409512Z 66 PC: 130b5 | Move file pointer
2018-12-17T22:27:07.846690623Z 66 PC: 130b5 | Move file pointer
2018-12-17T22:27:07.865006713Z 64 PC: 1312d | Write file or device (Write 1734 bytes on handle 5)
2018-12-17T22:27:07.879510676Z 66 PC: 130b5 | Move file pointer
2018-12-17T22:27:07.88638629Z 64 PC: 130b5 | Write file or device (Write 2000 bytes on handle 5)
2018-12-17T22:27:07.899900358Z 87 PC: 130b5 | Get or set file date and time
2018-12-17T22:27:07.902047534Z 62 PC: 130b5 | Close file
2018-12-17T22:27:07.912468355Z 75 PC: 12cd2 | Execute program
2018-12-17T22:27:07.930613158Z 53 PC: 13cb4 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:27:07.933302164Z 53 PC: 13cb4 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:27:07.938462129Z 9 PC: 14e26 | Display string (String= 'CDEFG-This is a 5000 byte COM test, 1994 ')
2018-12-17T22:27:07.945758976Z 73 PC: 12cdc | Release memory
2018-12-17T22:27:07.947317572Z 49 PC: 12ce1 | Terminate and stay resident (Return code = '0' | Memory size = '253')