Sample viewer

vx.netlux.org/Virus.DOS.Dropper.Peak

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:30:54.78967671Z 48 PC: 13cc7 | Get DOS version
2018-12-17T22:30:54.793971095Z 74 PC: 13c7c | Reallocate memory
2018-12-17T22:30:54.802159817Z 53 PC: 1370a | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:30:54.80416802Z 53 PC: 1370a | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:30:54.805764465Z 53 PC: 1370a | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:30:54.807071742Z 53 PC: 1370a | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:30:54.808819175Z 53 PC: 1370a | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:30:54.810754574Z 53 PC: 1370a | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:30:54.812248668Z 53 PC: 1370a | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:30:54.813588981Z 53 PC: 1370a | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:30:54.821201496Z 53 PC: 1370a | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:30:54.822628164Z 53 PC: 1370a | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:30:54.823947729Z 53 PC: 1370a | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:30:54.826117895Z 53 PC: 1370a | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:30:54.827855377Z 53 PC: 1370a | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:30:54.829611838Z 53 PC: 1370a | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:30:54.842218306Z 53 PC: 1370a | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:30:54.843509382Z 53 PC: 1370a | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:30:54.844743572Z 53 PC: 1370a | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:30:54.846654954Z 53 PC: 1370a | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:30:54.847951107Z 53 PC: 1370a | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:30:54.849326242Z 37 PC: 1371f | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:30:54.851081674Z 37 PC: 13727 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:30:54.852340318Z 37 PC: 1372f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:30:54.853561969Z 37 PC: 13737 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:30:54.855777252Z 68 PC: 13d95 | I/O control for devices (Set for = 't3��O�:���II �x ����ø`��w���@')
2018-12-17T22:30:55.007661851Z 37 PC: 130c1 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')