Sample viewer

vx.netlux.org/Virus.DOS.Pacakku.1120

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:29:21.472293404Z 51 PC: 16d26 | Get or set Ctrl-Break
2018-12-17T22:29:21.474278707Z 53 PC: 16db7 | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:29:21.475698121Z 37 PC: 16dc5 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:29:21.477038364Z 48 PC: 16dd9 | Get DOS version
2018-12-17T22:29:21.47890972Z 37 PC: 16de6 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:29:21.480792303Z 74 PC: 16dfe | Reallocate memory
2018-12-17T22:29:21.482975257Z 88 PC: 16e08 | case 0xGet or set allocation strateg:
2018-12-17T22:29:21.485963304Z 88 PC: 16e10 | case 0xGet or set allocation strateg:
2018-12-17T22:29:21.487615268Z 88 PC: 16e1b | case 0xGet or set allocation strateg:
2018-12-17T22:29:21.489595727Z 88 PC: 16e28 | case 0xGet or set allocation strateg:
2018-12-17T22:29:21.491354201Z 72 PC: 16e2f | Allocate memory
2018-12-17T22:29:21.494591445Z 53 PC: 16e4e | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:29:21.496273266Z 37 PC: 16e6d | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:29:21.498306749Z 53 PC: 16e7b | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:29:21.500667063Z 37 PC: 16e88 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:29:21.50216892Z 88 PC: 16e8f | case 0xGet or set allocation strateg:
2018-12-17T22:29:21.503904574Z 88 PC: 16e95 | case 0xGet or set allocation strateg:
2018-12-17T22:29:21.506267779Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=000042D7h/0000017111d bytes. ')
2018-12-17T22:29:21.512143354Z 76 PC: 12a86 | Terminate with return code (Return code = '36')