Sample viewer

vx.netlux.org/Virus.DOS.YZ.1339

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:34:31.247978719Z 239 PC: 13b0d | UNKNOWN!
2018-12-17T22:34:31.249396644Z 53 PC: 13b58 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:34:31.250639101Z 37 PC: 13b6a | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:34:31.251900363Z 48 PC: 139ec | Get DOS version
2018-12-17T22:34:31.253226155Z 25 PC: 13a54 | Get default drive
2018-12-17T22:34:31.254673455Z 41 PC: 13a85 | Parse filename
2018-12-17T22:34:31.255964371Z 37 PC: 13a94 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:34:31.25712145Z 64 PC: 12c80 | Write file or device (Write 20 bytes on handle 2)
2018-12-17T22:34:31.263839831Z 64 PC: 12c80 | Write file or device (Write 9 bytes on handle 2)
2018-12-17T22:34:31.268852555Z 10 PC: 134cc | Buffered keyboard input