Sample viewer

vx.netlux.org/Virus.DOS.Delta.1163.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:32:16.00273249Z 255 PC: 13ca9 | UNKNOWN!
2018-12-17T22:32:16.003899547Z 82 PC: 13ce9 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:32:16.005057659Z 98 PC: 13d16 | Get current PSP
2018-12-17T22:32:16.005992914Z 53 PC: 9f346 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:32:16.007386111Z 37 PC: 9f355 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:32:16.009775037Z 81 PC: 12f0c | Get current PSP
2018-12-17T22:32:16.011092669Z 74 PC: 12fa2 | Reallocate memory
2018-12-17T22:32:16.012825726Z 53 PC: 12fac | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:16.014665846Z 53 PC: 12fc8 | Get interrupt vector (Interrupt = '64' AKA 'Write file or device')
2018-12-17T22:32:16.015808317Z 37 PC: 12fed | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:16.01691973Z 37 PC: 12ffa | Set interrupt vector (Interrupt = '64' AKA 'Write file or device')
2018-12-17T22:32:16.019054217Z 75 PC: 13018 | Execute program
2018-12-17T22:32:16.025482125Z 77 PC: 1301d | Get program return code
2018-12-17T22:32:16.0267362Z 37 PC: 1303d | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:32:16.028684319Z 37 PC: 1304a | Set interrupt vector (Interrupt = '64' AKA 'Write file or device')
2018-12-17T22:32:16.030336005Z 76 PC: 1307e | Terminate with return code (Return code = '64')