Sample viewer

vx.netlux.org/Virus.DOS.Tetris.552

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:31:19.312942062Z 206 PC: 13034 | UNKNOWN!
2018-12-17T22:31:19.314339588Z 9 PC: 13002 | Display string (String= 'INT Version 2.10 Copyright 1984, 85, 86 Data Base Decisions. All rights reserved. ')
2018-12-17T22:31:19.320760191Z 48 PC: 12e08 | Get DOS version
2018-12-17T22:31:19.322086973Z 9 PC: 13002 | Display string (String= '00 - 03: 0019:9257 0070:06F4 109A:0016 0070:06F4 ')
2018-12-17T22:31:19.328050899Z 9 PC: 13002 | Display string (String= '04 - 07: 0070:06F4 F000:FF54 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.333570905Z 9 PC: 13002 | Display string (String= '08 - 0B: 109A:003C 109A:0045 109A:0057 109A:006F ')
2018-12-17T22:31:19.338128924Z 9 PC: 13002 | Display string (String= '0C - 0F: 109A:0087 109A:009F 109A:00B7 0070:06F4 ')
2018-12-17T22:31:19.343934274Z 9 PC: 13002 | Display string (String= '10 - 13: C000:5764 F000:F84D F000:F841 0B8C:011A ')
2018-12-17T22:31:19.349330653Z 9 PC: 13002 | Display string (String= '14 - 17: F000:E739 0070:084A F000:E82E F000:EFD2 ')
2018-12-17T22:31:19.35492103Z 9 PC: 13002 | Display string (String= '18 - 1B: F000:D73A 0070:07FB F000:FE6E 0070:06EE ')
2018-12-17T22:31:19.361008868Z 9 PC: 13002 | Display string (String= '1C - 1F: F000:FF53 F000:FF53 0000:0522 C000:93E0 ')
2018-12-17T22:31:19.367264875Z 9 PC: 13002 | Display string (String= '20 - 23: 0019:40CC 9F80:0189 1157:02B1 1157:014A ')
2018-12-17T22:31:19.372805678Z 9 PC: 13002 | Display string (String= '24 - 27: 1157:0155 0019:42E5 0019:436C 0019:A1C4 ')
2018-12-17T22:31:19.377619736Z 9 PC: 13002 | Display string (String= '28 - 2B: 0019:40D2 0070:0762 0019:40D2 0019:40D2 ')
2018-12-17T22:31:19.38335655Z 9 PC: 13002 | Display string (String= '2C - 2F: 0019:40D2 0019:40D2 1157:013F 1158:019F ')
2018-12-17T22:31:19.388841173Z 9 PC: 13002 | Display string (String= '30 - 33: 1940:D3EA F000:FF00 0019:40D2 0019:40D2 ')
2018-12-17T22:31:19.401024497Z 9 PC: 13002 | Display string (String= '34 - 37: 0019:40D2 0019:40D2 0019:40D2 0019:40D2 ')
2018-12-17T22:31:19.406546901Z 9 PC: 13002 | Display string (String= '38 - 3B: 0019:40D2 0019:40D2 0019:40D2 0019:40D2 ')
2018-12-17T22:31:19.412008555Z 9 PC: 13002 | Display string (String= '3C - 3F: 0019:40D2 0019:40D2 0019:40D2 0019:40D2 ')
2018-12-17T22:31:19.416398687Z 9 PC: 13002 | Display string (String= '40 - 43: F000:EC59 9FC0:003D F000:FF53 C000:71E0 ')
2018-12-17T22:31:19.422997899Z 9 PC: 13002 | Display string (String= '44 - 47: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.428267356Z 9 PC: 13002 | Display string (String= '48 - 4B: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.446754156Z 9 PC: 13002 | Display string (String= '4C - 4F: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.454061415Z 9 PC: 13002 | Display string (String= '50 - 53: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.459716405Z 9 PC: 13002 | Display string (String= '54 - 57: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.465167068Z 9 PC: 13002 | Display string (String= '58 - 5B: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.47056433Z 9 PC: 13002 | Display string (String= '5C - 5F: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.477147693Z 9 PC: 13002 | Display string (String= '60 - 63: 0000:0000 0000:0000 0000:0000 0000:0000 ')
2018-12-17T22:31:19.480886198Z 9 PC: 13002 | Display string (String= '64 - 67: 0000:0000 0000:0000 0000:0000 F000:FF53 ')
2018-12-17T22:31:19.484669847Z 9 PC: 13002 | Display string (String= '68 - 6B: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.488077397Z 9 PC: 13002 | Display string (String= '6C - 6F: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.491415031Z 9 PC: 13002 | Display string (String= '70 - 73: 109A:0052 F000:E97C 109A:00CF 109A:00E7 ')
2018-12-17T22:31:19.496925888Z 9 PC: 13002 | Display string (String= '74 - 77: 109A:00FF F000:D715 109A:0117 109A:012F ')
2018-12-17T22:31:19.503229404Z 9 PC: 13002 | Display string (String= '78 - 7B: F000:FF53 0000:0000 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.52486383Z 9 PC: 13002 | Display string (String= '7C - 7F: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.533047323Z 9 PC: 13002 | Display string (String= '80 - 83: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.539819935Z 9 PC: 13002 | Display string (String= '84 - 87: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.545934606Z 9 PC: 13002 | Display string (String= '88 - 8B: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.55113619Z 9 PC: 13002 | Display string (String= '8C - 8F: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.557700795Z 9 PC: 13002 | Display string (String= '90 - 93: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.56312346Z 9 PC: 13002 | Display string (String= '94 - 97: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.57233467Z 9 PC: 13002 | Display string (String= '98 - 9B: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.579378446Z 9 PC: 13002 | Display string (String= '9C - 9F: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.586690932Z 9 PC: 13002 | Display string (String= 'A0 - A3: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.594003829Z 9 PC: 13002 | Display string (String= 'A4 - A7: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.599220216Z 9 PC: 13002 | Display string (String= 'A8 - AB: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.60563272Z 9 PC: 13002 | Display string (String= 'AC - AF: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.611183659Z 9 PC: 13002 | Display string (String= 'B0 - B3: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.617036947Z 9 PC: 13002 | Display string (String= 'B4 - B7: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.623141183Z 9 PC: 13002 | Display string (String= 'B8 - BB: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.630605796Z 9 PC: 13002 | Display string (String= 'BC - BF: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.635764807Z 9 PC: 13002 | Display string (String= 'C0 - C3: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.641521672Z 9 PC: 13002 | Display string (String= 'C4 - C7: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.64725018Z 9 PC: 13002 | Display string (String= 'C8 - CB: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.653521769Z 9 PC: 13002 | Display string (String= 'CC - CF: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.660214441Z 9 PC: 13002 | Display string (String= 'D0 - D3: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.666105987Z 9 PC: 13002 | Display string (String= 'D4 - D7: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.672408657Z 9 PC: 13002 | Display string (String= 'D8 - DB: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.676856554Z 9 PC: 13002 | Display string (String= 'DC - DF: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.682534046Z 9 PC: 13002 | Display string (String= 'E0 - E3: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.690693906Z 9 PC: 13002 | Display string (String= 'E4 - E7: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.696366319Z 9 PC: 13002 | Display string (String= 'E8 - EB: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.70234869Z 9 PC: 13002 | Display string (String= 'EC - EF: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.70878194Z 9 PC: 13002 | Display string (String= 'F0 - F3: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.713180287Z 9 PC: 13002 | Display string (String= 'F4 - F7: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.719576467Z 9 PC: 13002 | Display string (String= 'F8 - FB: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.726298723Z 9 PC: 13002 | Display string (String= 'FC - FF: F000:FF53 F000:FF53 F000:FF53 F000:FF53 ')
2018-12-17T22:31:19.731701127Z 76 PC: 12a48 | Terminate with return code (Return code = '0')