Sample viewer

vx.netlux.org/Virus.DOS.Privet.1152

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:45:49.5971827Z 82 PC: 131eb | Get DOS internal pointers (SYSVARS)
2018-12-17T22:45:49.600400913Z 74 PC: 13227 | Reallocate memory
2018-12-17T22:45:49.602033066Z 72 PC: 13230 | Allocate memory
2018-12-17T22:45:49.604436249Z 53 PC: 13258 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:45:49.607586443Z 37 PC: 13271 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:45:49.609601753Z 26 PC: 1329b | Set disk transfer address
2018-12-17T22:45:49.611434588Z 78 PC: 132a7 | Find first file
2018-12-17T22:45:49.618889179Z 67 PC: 12fa1 | Get or set file attributes
2018-12-17T22:45:49.626743509Z 67 PC: 12fb4 | Get or set file attributes
2018-12-17T22:45:49.652861107Z 61 PC: 12fbf | Open file (Filename = '')
2018-12-17T22:45:49.66077815Z 66 PC: 12fd4 | Move file pointer
2018-12-17T22:45:49.667327476Z 66 PC: 1302e | Move file pointer
2018-12-17T22:45:49.673829426Z 63 PC: 1303f | Read file or device (Read 32 bytes on handle 5)
2018-12-17T22:45:49.678124503Z 66 PC: 1308b | Move file pointer
2018-12-17T22:45:49.681805509Z 66 PC: 130ed | Move file pointer
2018-12-17T22:45:49.684200401Z 64 PC: 13100 | Write file or device (Write 16 bytes on handle 5)
2018-12-17T22:45:49.688426621Z 66 PC: 13111 | Move file pointer
2018-12-17T22:45:49.700514568Z 64 PC: 13122 | Write file or device (Write 1152 bytes on handle 5)
2018-12-17T22:45:49.710552573Z 9 PC: 13133 | Display string (Could not find end pointer)
2018-12-17T22:45:49.740575798Z 66 PC: 1318c | Move file pointer
2018-12-17T22:45:49.744297404Z 64 PC: 1319d | Write file or device (Write 32 bytes on handle 5)
2018-12-17T22:45:49.747794602Z 62 PC: 131a6 | Close file
2018-12-17T22:45:49.757692356Z 67 PC: 131b6 | Get or set file attributes