Sample viewer

vx.netlux.org/Virus.DOS.Oxana.1654

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:33:07.144660326Z 53 PC: 16ccf | Get interrupt vector (Interrupt = '144' AKA 'UNKNOWN!')
2018-12-17T22:33:07.150247496Z 98 PC: 14ed8 | Get current PSP
2018-12-17T22:33:07.151418262Z 74 PC: 14f17 | Reallocate memory
2018-12-17T22:33:07.152558072Z 82 PC: 14f1d | Get DOS internal pointers (SYSVARS)
2018-12-17T22:33:07.153783236Z 25 PC: 15f73 | Get default drive
2018-12-17T22:33:07.155156965Z 13 PC: 15f28 | Disk reset
2018-12-17T22:33:07.156537065Z 99 PC: 13b0b | Get DBCS lead byte table pointer
2018-12-17T22:33:07.157720853Z 68 PC: 13b25 | I/O control for devices (Set for = '')
2018-12-17T22:33:07.159762572Z 68 PC: 13b30 | I/O control for devices (Set for = '')
2018-12-17T22:33:07.161711843Z 68 PC: 13b3b | I/O control for devices (Set for = '')
2018-12-17T22:33:07.163453608Z 68 PC: 13b43 | I/O control for devices (Set for = '��b���g�t�S3����[r�2��W�<t�<u�6�u����>��>W')
2018-12-17T22:33:07.165443972Z 48 PC: 13b48 | Get DOS version
2018-12-17T22:33:07.167126422Z 64 PC: 13dc1 | Write file or device (Write 23 bytes on handle 2)
2018-12-17T22:33:07.171030202Z 76 PC: 15f51 | Terminate with return code (Return code = '0')