Sample viewer

vx.netlux.org/Virus.DOS.Tanpro.749

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:43:23.543676518Z 60 PC: 12c79 | Create or truncate file
2018-12-17T22:43:23.558369844Z 64 PC: 12c8e | Write file or device (Write 128 bytes on handle 5)
2018-12-17T22:43:23.576053748Z 62 PC: 12c97 | Close file
2018-12-17T22:43:23.58587319Z 74 PC: 12c9e | Reallocate memory
2018-12-17T22:43:23.58777417Z 75 PC: 12cb7 | Execute program
2018-12-17T22:43:23.602070752Z 9 PC: 132a7 | Display string (String= 'This computer is infected by the virus Screen Shaker 5th!')
2018-12-17T22:43:23.606340591Z 76 PC: 132ac | Terminate with return code (Return code = '0')
2018-12-17T22:43:23.609573062Z 65 PC: 12cc3 | Delete file (Filename = '�')
2018-12-17T22:43:23.621645105Z 53 PC: 12cc8 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:43:23.623398689Z 37 PC: 12ce9 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:43:23.625309438Z 53 PC: 12cee | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:43:23.628352132Z 37 PC: 12d00 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:43:23.630621535Z 53 PC: 12d05 | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:43:23.633236767Z 37 PC: 12d17 | Set interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:43:23.638660524Z 49 PC: 12d23 | Terminate and stay resident (Return code = '0' | Memory size = '63')