Sample viewer

vx.netlux.org/Virus.DOS.Ash.Riot.449

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:33:24.650528549Z 64 PC: 0 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:33:24.658960028Z 41 PC: 94fae | Parse filename
2018-12-17T22:33:24.664166359Z 41 PC: 9502f | Parse filename
2018-12-17T22:33:24.682843732Z 41 PC: 9504c | Parse filename
2018-12-17T22:33:24.686628142Z 26 PC: 984f7 | Set disk transfer address
2018-12-17T22:33:24.690155042Z 71 PC: 986f3 | Get current directory
2018-12-17T22:33:24.694225622Z 78 PC: 986fe | Find first file
2018-12-17T22:33:24.704890562Z 71 PC: 986f3 | Get current directory
2018-12-17T22:33:24.708841448Z 78 PC: 986fe | Find first file
2018-12-17T22:33:24.721282521Z 64 PC: 9a848 | Write file or device (Write 26 bytes on handle 2)
2018-12-17T22:33:24.726992879Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:33:24.728379524Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:33:24.730107915Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:33:24.7316355Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.733510557Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.735958923Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.737747424Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.739546305Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.754657497Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.756353533Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.758075236Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.764022542Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.765814046Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.767874685Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.770385811Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.771936219Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.77330123Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.775839123Z 62 PC: 122ab | Close file
2018-12-17T22:33:24.777985449Z 99 PC: 9a5d7 | Get DBCS lead byte table pointer
2018-12-17T22:33:24.779553243Z 56 PC: 94df9 | Get or set country info
2018-12-17T22:33:24.78173932Z 64 PC: 9a848 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:33:24.787377427Z 25 PC: 94e62 | Get default drive
2018-12-17T22:33:24.790142811Z 71 PC: 970dd | Get current directory
2018-12-17T22:33:24.795063134Z 64 PC: 9a848 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:33:24.800670351Z 2 PC: 970b2 | Character output (Char = '3e')
2018-12-17T22:33:24.803196077Z 93 PC: 94f20 | File sharing functions
2018-12-17T22:33:24.804895787Z 93 PC: 94f27 | File sharing functions
2018-12-17T22:33:24.807680163Z 10 PC: 94f39 | Buffered keyboard input
2018-12-17T22:33:39.697042509Z 0 PC: 0 | Program terminate
2018-12-17T22:33:41.052199432Z 0 PC: 0 | Program terminate
2018-12-17T22:33:41.154989842Z 64 PC: 9a848 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:33:41.161735871Z 41 PC: 94fae | Parse filename
2018-12-17T22:33:41.165635959Z 41 PC: 9502f | Parse filename
2018-12-17T22:33:41.168717269Z 41 PC: 9504c | Parse filename
2018-12-17T22:33:41.171690595Z 26 PC: 984f7 | Set disk transfer address
2018-12-17T22:33:41.175357432Z 71 PC: 986f3 | Get current directory
2018-12-17T22:33:41.183993971Z 78 PC: 986fe | Find first file
2018-12-17T22:33:41.194773991Z 71 PC: 9856c | Get current directory
2018-12-17T22:33:41.198819006Z 73 PC: 97c09 | Release memory
2018-12-17T22:33:41.206601033Z 75 PC: 11821 | Execute program
2018-12-17T22:33:41.231595842Z 9 PC: 12a47 | Display string (String= 'Hello, World! ')
2018-12-17T22:33:41.238648649Z 76 PC: 12a4b | Terminate with return code (Return code = '36')