Sample viewer

vx.netlux.org/Virus.DOS.V.2048

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:42:53.224496542Z 53 PC: 6029e | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:42:53.226951207Z 53 PC: 602ad | Get interrupt vector (Interrupt = '86' AKA 'Rename file')
2018-12-17T22:42:53.228031005Z 53 PC: 602d5 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:42:53.229086111Z 53 PC: 602ed | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:42:53.230889219Z 37 PC: 60309 | Set interrupt vector (Interrupt = '86' AKA 'Rename file')
2018-12-17T22:42:53.232191045Z 53 PC: 6030e | Get interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:42:53.233333976Z 53 PC: 60346 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:42:53.235230799Z 37 PC: 603f4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:42:53.237267932Z 48 PC: 3836f | Get DOS version
2018-12-17T22:42:53.239589293Z 61 PC: 36e58 | Open file (Filename = '')
2018-12-17T22:42:53.247659354Z 61 PC: 36e58 | Open file (Filename = '')
2018-12-17T22:42:53.25539718Z 64 PC: 382ce | Write file or device (Write 28 bytes on handle 1)
2018-12-17T22:42:53.263511768Z 76 PC: 382df | Terminate with return code (Return code = '255')
2018-12-17T22:42:53.26689273Z 37 PC: 98725 | Set interrupt vector (Interrupt = '84' AKA 'Get verify flag')