Sample viewer

vx.netlux.org/Virus.DOS.Helloween.1182

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:34:01.177272068Z 232 PC: 12e2e | UNKNOWN!
2018-12-17T22:34:01.17822222Z 53 PC: 12e84 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:34:01.179066241Z 37 PC: 12e9c | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:34:01.179839587Z 53 PC: 12ea1 | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:34:01.18094029Z 37 PC: 12eb1 | Set interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:34:01.182036465Z 53 PC: 12eb6 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:34:01.183019916Z 37 PC: 12ec6 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:34:01.185700195Z 64 PC: 12b79 | Write file or device (Write 71 bytes on handle 1)
2018-12-17T22:34:01.189814418Z 48 PC: 12af1 | Get DOS version
2018-12-17T22:34:01.190798135Z 53 PC: 12b30 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:34:01.191895782Z 37 PC: 12b40 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:34:01.192896551Z 64 PC: 12b79 | Write file or device (Write 443 bytes on handle 1)
2018-12-17T22:34:01.19833788Z 73 PC: 12b53 | Release memory
2018-12-17T22:34:01.19942985Z 49 PC: 12b5b | Terminate and stay resident (Return code = '0' | Memory size = '64')