Sample viewer

vx.netlux.org/Virus.DOS.Zver.689

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:47:11.761009288Z 68 PC: 12a46 | I/O control for devices (Set for = 'is started by using +the SHELL command in the CONFIG.SYS file. F##¸#ã#,$z$À$%U% %à%,&y&')
2018-12-17T22:47:11.762763785Z 48 PC: 12a4c | Get DOS version
2018-12-17T22:47:11.764376545Z 75 PC: 12a79 | Execute program
2018-12-17T22:47:11.766039098Z 53 PC: 9f813 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:47:11.767377763Z 61 PC: 9f845 | Open file (Filename = 'Ûu!è¼sZ[_Ë&ÇE')
2018-12-17T22:47:11.774436245Z 66 PC: 9f8f5 | Move file pointer
2018-12-17T22:47:11.775904213Z 63 PC: 9f870 | Read file or device (Read 689 bytes on handle 5)
2018-12-17T22:47:11.778986423Z 81 PC: 122cc | Get current PSP
2018-12-17T22:47:11.780718047Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:47:11.782917679Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:47:11.786070894Z 89 PC: 12459 | Get extended error info
2018-12-17T22:47:11.793107874Z 2 PC: 1268d | Character output (Char = '53')
2018-12-17T22:47:11.794815493Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:47:11.796438191Z 2 PC: 1268d | Character output (Char = '63')
2018-12-17T22:47:11.798814696Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:47:11.800861622Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:47:11.802711578Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:47:11.804791024Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:47:11.807140469Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:47:11.808798664Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:47:11.810875366Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:47:11.812582022Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:47:11.814226482Z 2 PC: 1268d | Character output (Char = '66')
2018-12-17T22:47:11.816137402Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:47:11.818703563Z 2 PC: 1268d | Character output (Char = '75')
2018-12-17T22:47:11.821125233Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:47:11.823550379Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:47:11.826467029Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:47:11.828737745Z 2 PC: 126da | Character output (Char = '72')
2018-12-17T22:47:11.831730327Z 2 PC: 126da | Character output (Char = '65')
2018-12-17T22:47:11.834579891Z 2 PC: 126da | Character output (Char = '61')
2018-12-17T22:47:11.837211305Z 2 PC: 126da | Character output (Char = '64')
2018-12-17T22:47:11.840385087Z 2 PC: 126da | Character output (Char = '69')
2018-12-17T22:47:11.84437319Z 2 PC: 126da | Character output (Char = '6e')
2018-12-17T22:47:11.846955381Z 2 PC: 126da | Character output (Char = '67')
2018-12-17T22:47:11.84930185Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:47:11.852518353Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T22:47:11.854827371Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:47:11.857065155Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T22:47:11.859746292Z 2 PC: 1268d | Character output (Char = '76')
2018-12-17T22:47:11.862442999Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:47:11.86475897Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:47:11.86766Z 2 PC: 126ce | Character output (Char = '41')
2018-12-17T22:47:11.870151471Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T22:47:11.872298726Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:47:11.875957019Z 2 PC: 1268d | Character output (Char = '41')
2018-12-17T22:47:11.878615022Z 2 PC: 1268d | Character output (Char = '62')
2018-12-17T22:47:11.880358608Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:47:11.882112814Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:47:11.884291688Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:47:11.886083133Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T22:47:11.887841377Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:47:11.893432511Z 2 PC: 1268d | Character output (Char = '52')
2018-12-17T22:47:11.895158143Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:47:11.896837048Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:47:11.899223551Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:47:11.901161152Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T22:47:11.903163454Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T22:47:11.906289647Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:47:11.90944744Z 2 PC: 1268d | Character output (Char = '49')
2018-12-17T22:47:11.911987031Z 2 PC: 1268d | Character output (Char = '67')
2018-12-17T22:47:11.915801938Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T22:47:11.918320971Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:47:11.920688929Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:47:11.923998968Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:47:11.92644295Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T22:47:11.930016503Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T22:47:11.932248557Z 2 PC: 1268d | Character output (Char = '46')
2018-12-17T22:47:11.934730871Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T22:47:11.936949379Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T22:47:11.939144804Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T22:47:11.941926129Z 2 PC: 1268d | Character output (Char = '3f')
2018-12-17T22:47:11.944752339Z 12 PC: 12581 | Flush input buffer and input