Sample viewer

vx.netlux.org/Virus.DOS.Australian.273

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:31:24.505671702Z 84 PC: 1362f | Get verify flag
2018-12-17T22:31:24.507848189Z 53 PC: 13660 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:31:24.509621812Z 37 PC: 13670 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:31:24.512778494Z 73 PC: 13610 | Release memory
2018-12-17T22:31:24.51483041Z 9 PC: 135fb | Display string (String= ' ANSI v1.0 (c) 1990 The Nutty Professor. �For Personal Use only.� ')
2018-12-17T22:31:24.524195651Z 9 PC: 135fb | Display string (Could not find end pointer)
2018-12-17T22:31:24.537230981Z 9 PC: 135fb | Display string (String= 'Status: ')
2018-12-17T22:31:24.539497911Z 2 PC: 135fb | Character output (Char = '4f')
2018-12-17T22:31:24.54392246Z 2 PC: 135fb | Character output (Char = '4e')
2018-12-17T22:31:24.546455033Z 2 PC: 135fb | Character output (Char = '20')
2018-12-17T22:31:24.548909401Z 2 PC: 135fb | Character output (Char = '20')
2018-12-17T22:31:24.552190498Z 2 PC: 135fb | Character output (Char = '46')
2018-12-17T22:31:24.554854282Z 2 PC: 135fb | Character output (Char = '41')
2018-12-17T22:31:24.557449273Z 2 PC: 135fb | Character output (Char = '53')
2018-12-17T22:31:24.560671854Z 2 PC: 135fb | Character output (Char = '54')
2018-12-17T22:31:24.563818801Z 9 PC: 135fb | Display string (String= ' Buffer size: ')
2018-12-17T22:31:24.571195655Z 2 PC: 135fb | Character output (Char = '32')
2018-12-17T22:31:24.575591235Z 2 PC: 135fb | Character output (Char = '30')
2018-12-17T22:31:24.577611974Z 2 PC: 135fb | Character output (Char = '30')
2018-12-17T22:31:24.57976254Z 9 PC: 135fb | Display string (String= ' Bytes free: ')
2018-12-17T22:31:24.588917955Z 2 PC: 135fb | Character output (Char = '32')
2018-12-17T22:31:24.591694909Z 2 PC: 135fb | Character output (Char = '30')
2018-12-17T22:31:24.59435249Z 2 PC: 135fb | Character output (Char = '30')
2018-12-17T22:31:24.596957144Z 9 PC: 135fb | Display string (String= ' ')
2018-12-17T22:31:24.602518002Z 53 PC: 13469 | Get interrupt vector (Interrupt = '41' AKA 'Parse filename')
2018-12-17T22:31:24.604123633Z 37 PC: 13489 | Set interrupt vector (Interrupt = '41' AKA 'Parse filename')
2018-12-17T22:31:24.605722633Z 53 PC: 1348e | Get interrupt vector (Interrupt = '22' AKA 'Create or truncate file')
2018-12-17T22:31:24.608434164Z 37 PC: 1349e | Set interrupt vector (Interrupt = '22' AKA 'Create or truncate file')
2018-12-17T22:31:24.60996062Z 53 PC: 134a3 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:31:24.611913351Z 37 PC: 134b3 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:31:24.614725998Z 73 PC: 134bc | Release memory
2018-12-17T22:31:24.616497602Z 9 PC: 135fb | Display string (String= 'r my instructions only. /U = Uninstall ')
2018-12-17T22:31:24.620575655Z 49 PC: 134d0 | Terminate and stay resident (Return code = '0' | Memory size = '159')