Sample viewer

vx.netlux.org/Virus.DOS.Suleiman.692

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:55:09.497928148Z 177 PC: 1613d | UNKNOWN!
2018-12-17T21:55:09.499320651Z 53 PC: 16147 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:55:09.500459666Z 88 PC: 16157 | case 0xGet or set allocation strateg:
2018-12-17T21:55:09.501603815Z 88 PC: 1615f | case 0xGet or set allocation strateg:
2018-12-17T21:55:09.503382961Z 72 PC: 16166 | Allocate memory
2018-12-17T21:55:09.505020078Z 74 PC: 1617d | Reallocate memory
2018-12-17T21:55:09.506324357Z 72 PC: 16166 | Allocate memory
2018-12-17T21:55:09.50823628Z 37 PC: 1619f | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:55:09.510148338Z 88 PC: 161a7 | case 0xGet or set allocation strateg:
2018-12-17T21:55:09.51126936Z 88 PC: 161ae | case 0xGet or set allocation strateg:
2018-12-17T21:55:09.525410611Z 74 PC: 12a87 | Reallocate memory
2018-12-17T21:55:09.526964791Z 81 PC: 144d2 | Get current PSP
2018-12-17T21:55:09.528039966Z 47 PC: 9fa62 | Get disk transfer address
2018-12-17T21:55:09.529433049Z 26 PC: 9fa71 | Set disk transfer address
2018-12-17T21:55:09.530421034Z 78 PC: 9fa7a | Find first file
2018-12-17T21:55:09.536077156Z 26 PC: 9fa80 | Set disk transfer address
2018-12-17T21:55:09.537478515Z 61 PC: 9fadb | Open file (Filename = '')
2018-12-17T21:55:09.541609423Z 63 PC: 9faf0 | Read file or device (Read 24 bytes on handle 5)
2018-12-17T21:55:09.544030087Z 66 PC: 9fb3c | Move file pointer
2018-12-17T21:55:09.545653518Z 64 PC: 9fb8c | Write file or device (Write 692 bytes on handle 5)
2018-12-17T21:55:09.557542115Z 66 PC: 9fb95 | Move file pointer
2018-12-17T21:55:09.558976303Z 64 PC: 9fb9f | Write file or device (Write 24 bytes on handle 5)
2018-12-17T21:55:09.56326129Z 87 PC: 9fbac | Get or set file date and time
2018-12-17T21:55:09.566733295Z 62 PC: 9fbb0 | Close file
2018-12-17T21:55:09.57278663Z 61 PC: 1452b | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T21:55:09.580174308Z 66 PC: 14595 | Move file pointer
2018-12-17T21:55:09.581597089Z 63 PC: 145ad | Read file or device (Read 7 bytes on handle 5)
2018-12-17T21:55:09.583560384Z 66 PC: 145d2 | Move file pointer
2018-12-17T21:55:09.585083322Z 63 PC: 145de | Read file or device (Read 26 bytes on handle 5)
2018-12-17T21:55:09.588077852Z 66 PC: 14638 | Move file pointer
2018-12-17T21:55:09.589379946Z 63 PC: 14643 | Read file or device (Read 16 bytes on handle 5)
2018-12-17T21:55:09.592819819Z 63 PC: 146a7 | Read file or device (Read 1357 bytes on handle 5)
2018-12-17T21:55:09.600649495Z 62 PC: 14541 | Close file
2018-12-17T21:55:09.602478886Z 56 PC: 14b87 | Get or set country info
2018-12-17T21:55:09.603869533Z 48 PC: 14776 | Get DOS version
2018-12-17T21:55:09.605549755Z 64 PC: 1486e | Write file or device (Write 24 bytes on handle 2)
2018-12-17T21:55:09.613023118Z 76 PC: 1476d | Terminate with return code (Return code = '1')