Sample viewer

vx.netlux.org/Virus.DOS.Spyvir.1089

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:28:08.675565294Z 64 PC: 0 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:28:08.683769765Z 41 PC: 94fae | Parse filename
2018-12-17T22:28:08.685966073Z 41 PC: 9502f | Parse filename
2018-12-17T22:28:08.68893994Z 41 PC: 9504c | Parse filename
2018-12-17T22:28:08.69172914Z 26 PC: 984f7 | Set disk transfer address
2018-12-17T22:28:08.693590632Z 71 PC: 986f3 | Get current directory
2018-12-17T22:28:08.696944378Z 78 PC: 986fe | Find first file
2018-12-17T22:28:08.706502546Z 71 PC: 986f3 | Get current directory
2018-12-17T22:28:08.708891691Z 78 PC: 986fe | Find first file
2018-12-17T22:28:08.719192357Z 64 PC: 9a848 | Write file or device (Write 26 bytes on handle 2)
2018-12-17T22:28:08.724302428Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:28:08.72643636Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:28:08.728048332Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:08.729642645Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.73122142Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.732557385Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.734491167Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.735835236Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.737153225Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.74647433Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.747893575Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.75022027Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.752989042Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.754428011Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.755778701Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.758160604Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.759459881Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.760735244Z 62 PC: 122ab | Close file
2018-12-17T22:28:08.762538625Z 99 PC: 9a5d7 | Get DBCS lead byte table pointer
2018-12-17T22:28:08.764395147Z 56 PC: 94df9 | Get or set country info
2018-12-17T22:28:08.766468327Z 64 PC: 9a848 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:28:08.771240489Z 25 PC: 94e62 | Get default drive
2018-12-17T22:28:08.773444297Z 71 PC: 970dd | Get current directory
2018-12-17T22:28:08.777121422Z 64 PC: 9a848 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:28:08.78003302Z 2 PC: 970b2 | Character output (Char = '3e')
2018-12-17T22:28:08.782500613Z 93 PC: 94f20 | File sharing functions
2018-12-17T22:28:08.784007636Z 93 PC: 94f27 | File sharing functions
2018-12-17T22:28:08.785817697Z 10 PC: 94f39 | Buffered keyboard input
2018-12-17T22:28:23.72215321Z 0 PC: 0 | Program terminate
2018-12-17T22:28:25.07796342Z 0 PC: 0 | Program terminate
2018-12-17T22:28:25.179802493Z 64 PC: 9a848 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:28:25.183281736Z 41 PC: 94fae | Parse filename
2018-12-17T22:28:25.184572439Z 41 PC: 9502f | Parse filename
2018-12-17T22:28:25.186036318Z 41 PC: 9504c | Parse filename
2018-12-17T22:28:25.187565929Z 26 PC: 984f7 | Set disk transfer address
2018-12-17T22:28:25.188882161Z 71 PC: 986f3 | Get current directory
2018-12-17T22:28:25.194656298Z 78 PC: 986fe | Find first file
2018-12-17T22:28:25.202576651Z 71 PC: 9856c | Get current directory
2018-12-17T22:28:25.204875477Z 73 PC: 97c09 | Release memory
2018-12-17T22:28:25.207934803Z 75 PC: 11821 | Execute program
2018-12-17T22:28:25.221304809Z 9 PC: 12a47 | Display string (String= 'Hello, World! ')
2018-12-17T22:28:25.224430869Z 76 PC: 12a4b | Terminate with return code (Return code = '36')