Sample viewer

vx.netlux.org/Virus.DOS.Likha.2796

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:47:51.645971823Z 240 PC: 1444b | UNKNOWN!
2018-12-17T22:47:51.651341108Z 74 PC: 1333d | Reallocate memory
2018-12-17T22:47:51.652733574Z 53 PC: 1334f | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:47:51.653879065Z 37 PC: 130f1 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:47:51.655577348Z 53 PC: 130f1 | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:47:51.656992678Z 37 PC: 130f1 | Set interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:47:51.658607392Z 26 PC: 130f1 | Set disk transfer address
2018-12-17T22:47:51.660475554Z 78 PC: 130f1 | Find first file
2018-12-17T22:47:51.66626966Z 75 PC: 130f1 | Execute program
2018-12-17T22:47:51.682234853Z 9 PC: 13845 | Display string (String= ' Mabuhay! This program came from Bahay Kawayan at http://come.to/hexfiles Putoksa Kawayan [email protected] ')
2018-12-17T22:47:51.696693939Z 76 PC: 13849 | Terminate with return code (Return code = '36')
2018-12-17T22:47:51.700026123Z 73 PC: 130f1 | Release memory
2018-12-17T22:47:51.701389038Z 49 PC: 133a8 | Terminate and stay resident (Return code = '125' | Memory size = '201')