Sample viewer

vx.netlux.org/Virus.DOS.Mwin.d

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:44:19.558314395Z 64 PC: 0 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:44:19.567893984Z 41 PC: 94fae | Parse filename
2018-12-17T22:44:19.590080304Z 41 PC: 9502f | Parse filename
2018-12-17T22:44:19.59314659Z 41 PC: 9504c | Parse filename
2018-12-17T22:44:19.596058099Z 26 PC: 984f7 | Set disk transfer address
2018-12-17T22:44:19.599030491Z 71 PC: 986f3 | Get current directory
2018-12-17T22:44:19.604796019Z 78 PC: 986fe | Find first file
2018-12-17T22:44:19.616121501Z 71 PC: 986f3 | Get current directory
2018-12-17T22:44:19.620081691Z 78 PC: 986fe | Find first file
2018-12-17T22:44:19.632071256Z 64 PC: 9a848 | Write file or device (Write 26 bytes on handle 2)
2018-12-17T22:44:19.637538742Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:44:19.639595714Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:44:19.640851956Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:44:19.642026822Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.643982767Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.645483376Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.646670521Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.648424772Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.649641278Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.650860208Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.652485748Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.653735576Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.65486883Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.655908899Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.657898869Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.65924035Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.660565297Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.663227639Z 62 PC: 122ab | Close file
2018-12-17T22:44:19.665188959Z 99 PC: 9a5d7 | Get DBCS lead byte table pointer
2018-12-17T22:44:19.666488181Z 56 PC: 94df9 | Get or set country info
2018-12-17T22:44:19.669072928Z 64 PC: 9a848 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:44:19.674179165Z 25 PC: 94e62 | Get default drive
2018-12-17T22:44:19.675775785Z 71 PC: 970dd | Get current directory
2018-12-17T22:44:19.680744349Z 64 PC: 9a848 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:44:19.684498792Z 2 PC: 970b2 | Character output (Char = '3e')
2018-12-17T22:44:19.686950004Z 93 PC: 94f20 | File sharing functions
2018-12-17T22:44:19.689696165Z 93 PC: 94f27 | File sharing functions
2018-12-17T22:44:19.691663432Z 10 PC: 94f39 | Buffered keyboard input
2018-12-17T22:44:34.604087022Z 0 PC: 0 | Program terminate
2018-12-17T22:44:35.959209166Z 0 PC: 0 | Program terminate
2018-12-17T22:44:36.063968269Z 64 PC: 9a848 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:44:36.071160769Z 41 PC: 94fae | Parse filename
2018-12-17T22:44:36.07322291Z 41 PC: 9502f | Parse filename
2018-12-17T22:44:36.076217801Z 41 PC: 9504c | Parse filename
2018-12-17T22:44:36.079228309Z 26 PC: 984f7 | Set disk transfer address
2018-12-17T22:44:36.087379476Z 71 PC: 986f3 | Get current directory
2018-12-17T22:44:36.09615905Z 78 PC: 986fe | Find first file
2018-12-17T22:44:36.109904263Z 71 PC: 9856c | Get current directory
2018-12-17T22:44:36.125214764Z 73 PC: 97c09 | Release memory
2018-12-17T22:44:36.126724461Z 75 PC: 11821 | Execute program
2018-12-17T22:44:36.14248015Z 9 PC: 12a47 | Display string (String= 'Hello, World! ')
2018-12-17T22:44:36.148929717Z 76 PC: 12a4b | Terminate with return code (Return code = '36')