Sample viewer

vx.netlux.org/Virus.DOS.SSR.18273

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:34:44.00737008Z 9 PC: dff | Display string (String= 'Goat file (COM/b9jr). Size=0000092Eh/0000002350d bytes. ')
2018-12-17T22:34:44.014339839Z 48 PC: dff | Get DOS version
2018-12-17T22:34:44.018707091Z 53 PC: 94a3d | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:34:44.020079455Z 37 PC: 94a3d | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:34:44.022095353Z 67 PC: 94a3d | Get or set file attributes
2018-12-17T22:34:44.027949157Z 67 PC: 94a3d | Get or set file attributes
2018-12-17T22:34:44.04428153Z 61 PC: 94a3d | Open file (Filename = '��')
2018-12-17T22:34:44.05271979Z 63 PC: 94a3d | Read file or device (Read 32 bytes on handle 5)
2018-12-17T22:34:44.055586373Z 87 PC: 94a3d | Get or set file date and time
2018-12-17T22:34:44.057088673Z 66 PC: 94a3d | Move file pointer
2018-12-17T22:34:44.058715345Z 63 PC: 94a3d | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:34:44.067226089Z 66 PC: 94a3d | Move file pointer
2018-12-17T22:34:44.068740309Z 64 PC: 94a3d | Write file or device (Write 1 bytes on handle 5)
2018-12-17T22:34:44.071733815Z 66 PC: 94a3d | Move file pointer
2018-12-17T22:34:44.074271966Z 66 PC: 94a3d | Move file pointer
2018-12-17T22:34:44.075883961Z 64 PC: 94a3d | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:34:44.078693431Z 66 PC: 94a3d | Move file pointer
2018-12-17T22:34:44.341730672Z 64 PC: 94a3d | Write file or device (Write 18273 bytes on handle 5)
2018-12-17T22:34:44.354984036Z 87 PC: 94a3d | Get or set file date and time
2018-12-17T22:34:44.356987033Z 87 PC: 94a3d | Get or set file date and time
2018-12-17T22:34:44.360273184Z 62 PC: 94a3d | Close file
2018-12-17T22:34:44.368370674Z 37 PC: 94a3d | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:34:44.37006502Z 67 PC: 94a3d | Get or set file attributes
2018-12-17T22:34:44.385277862Z 61 PC: dff | Open file (Filename = '')
2018-12-17T22:34:44.392411303Z 93 PC: dff | File sharing functions
2018-12-17T22:34:44.394919323Z 9 PC: dff | Display string (String= 'Size change=8EC2h/36546d. ')
2018-12-17T22:34:44.400943391Z 76 PC: dff | Terminate with return code (Return code = '1')