Sample viewer

vx.netlux.org/Virus.DOS.Viking.1600

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:31:59.662023015Z 13 PC: 12b28 | Disk reset
2018-12-17T22:31:59.666499947Z 80 PC: 12fd1 | Set current PSP
2018-12-17T22:31:59.667900107Z 26 PC: 12fd1 | Set disk transfer address
2018-12-17T22:31:59.669563249Z 53 PC: 12fd1 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:31:59.672876591Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:31:59.67415961Z 48 PC: 12fd1 | Get DOS version
2018-12-17T22:31:59.675943435Z 53 PC: 12fd1 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:31:59.677421451Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:31:59.679581699Z 67 PC: 12fd1 | Get or set file attributes
2018-12-17T22:31:59.690274615Z 67 PC: 12fd1 | Get or set file attributes
2018-12-17T22:32:00.130463727Z 61 PC: 12fd1 | Open file (Filename = '�WSR.�>')
2018-12-17T22:32:00.139557583Z 87 PC: 12fd1 | Get or set file date and time
2018-12-17T22:32:00.141330894Z 66 PC: 12fd1 | Move file pointer
2018-12-17T22:32:00.143303311Z 66 PC: 12fd1 | Move file pointer
2018-12-17T22:32:00.146995807Z 63 PC: 12fd1 | Read file or device (Read 14 bytes on handle 5)
2018-12-17T22:32:00.153749553Z 66 PC: 12fd1 | Move file pointer
2018-12-17T22:32:00.15831888Z 64 PC: 12fd1 | Write file or device (Write 1600 bytes on handle 5)
2018-12-17T22:32:00.169247747Z 66 PC: 12fd1 | Move file pointer
2018-12-17T22:32:00.171826749Z 64 PC: 12fd1 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:32:00.175353365Z 87 PC: 12fd1 | Get or set file date and time
2018-12-17T22:32:00.177892698Z 62 PC: 12fd1 | Close file
2018-12-17T22:32:00.186557108Z 67 PC: 12fd1 | Get or set file attributes
2018-12-17T22:32:00.196901597Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:00.198949572Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:00.207054159Z 53 PC: 12fd1 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:00.208576527Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:00.210064241Z 48 PC: 12fd1 | Get DOS version
2018-12-17T22:32:00.212197254Z 53 PC: 12fd1 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:00.215176468Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:00.217129766Z 67 PC: 12fd1 | Get or set file attributes
2018-12-17T22:32:00.230121327Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:00.231549146Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:00.233304731Z 53 PC: 12fd1 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:00.236029594Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:00.237681084Z 48 PC: 12fd1 | Get DOS version
2018-12-17T22:32:00.239308224Z 53 PC: 12fd1 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:00.241938531Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:00.24378141Z 67 PC: 12fd1 | Get or set file attributes
2018-12-17T22:32:00.250545472Z 67 PC: 12fd1 | Get or set file attributes
2018-12-17T22:32:00.269102923Z 61 PC: 12fd1 | Open file (Filename = 'E')
2018-12-17T22:32:00.276718491Z 87 PC: 12fd1 | Get or set file date and time
2018-12-17T22:32:00.278372195Z 66 PC: 12fd1 | Move file pointer
2018-12-17T22:32:00.280007282Z 66 PC: 12fd1 | Move file pointer
2018-12-17T22:32:00.282170811Z 63 PC: 12fd1 | Read file or device (Read 14 bytes on handle 5)
2018-12-17T22:32:00.289767309Z 62 PC: 12fd1 | Close file
2018-12-17T22:32:00.29202424Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:00.29435546Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:00.2962056Z 53 PC: 12fd1 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:00.297942554Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:00.30024028Z 48 PC: 12fd1 | Get DOS version
2018-12-17T22:32:00.30167629Z 53 PC: 12fd1 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:00.303200804Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:00.305678115Z 67 PC: 12fd1 | Get or set file attributes
2018-12-17T22:32:00.310686822Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:00.312580842Z 37 PC: 12fd1 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:00.315178537Z 9 PC: 13eb2 | Display string (String= 'ABCDE - This is a 100 byte COM test, 1994 ')