Sample viewer

vx.netlux.org/Virus.DOS.Bumbee.480

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:34:41.436709502Z 82 PC: 1734c | Get DOS internal pointers (SYSVARS)
2018-12-17T22:34:41.438836542Z 48 PC: 14790 | Get DOS version
2018-12-17T22:34:41.440658104Z 74 PC: 1480f | Reallocate memory
2018-12-17T22:34:41.443873123Z 53 PC: 1488d | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:34:41.445914964Z 37 PC: 1489f | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:34:41.448236927Z 68 PC: 1492f | I/O control for devices (Set for = 'tC��AY[ì�"')
2018-12-17T22:34:41.449830038Z 68 PC: 1492f | I/O control for devices
2018-12-17T22:34:41.451678283Z 68 PC: 1492f | I/O control for devices
2018-12-17T22:34:41.457560881Z 68 PC: 1492f | I/O control for devices
2018-12-17T22:34:41.459497539Z 68 PC: 1492f | I/O control for devices
2018-12-17T22:34:41.462021077Z 81 PC: 13378 | Get current PSP
2018-12-17T22:34:41.478194983Z 61 PC: 133d1 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:34:41.485963735Z 66 PC: 1342c | Move file pointer
2018-12-17T22:34:41.487762016Z 63 PC: 13444 | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:34:41.497377211Z 66 PC: 13469 | Move file pointer
2018-12-17T22:34:41.499188067Z 63 PC: 13475 | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:34:41.502512929Z 66 PC: 134cf | Move file pointer
2018-12-17T22:34:41.504846825Z 63 PC: 134da | Read file or device (Read 16 bytes on handle 5)
2018-12-17T22:34:41.50859045Z 66 PC: 134cf | Move file pointer
2018-12-17T22:34:41.510212828Z 63 PC: 134da | Read file or device (Read 16 bytes on handle 5)
2018-12-17T22:34:41.518492129Z 66 PC: 134cf | Move file pointer
2018-12-17T22:34:41.520490325Z 63 PC: 134da | Read file or device (Read 16 bytes on handle 5)
2018-12-17T22:34:41.523714413Z 63 PC: 1353e | Read file or device (Read 2846 bytes on handle 5)
2018-12-17T22:34:41.53257528Z 62 PC: 133e7 | Close file
2018-12-17T22:34:41.536482656Z 81 PC: 12faf | Get current PSP
2018-12-17T22:34:41.540656108Z 64 PC: 14f52 | Write file or device (Write 31 bytes on handle 1)
2018-12-17T22:34:41.547003999Z 37 PC: 149ff | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:34:41.54940036Z 76 PC: 149e4 | Terminate with return code (Return code = '1')