Sample viewer

vx.netlux.org/Virus.DOS.June8.1919

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:48:19.402659497Z 81 PC: 1673d | Get current PSP
2018-12-17T22:48:19.473666832Z 226 PC: 167bc | UNKNOWN!
2018-12-17T22:48:19.47516331Z 53 PC: 1681c | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:48:19.47682158Z 37 PC: 1682c | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:48:19.478413957Z 53 PC: 16831 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:48:19.481003253Z 37 PC: 16841 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:48:19.483437453Z 53 PC: 16846 | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:48:19.48534765Z 37 PC: 16856 | Set interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:48:19.488533983Z 81 PC: 1689c | Get current PSP
2018-12-17T22:48:19.498149618Z 99 PC: 15209 | Get DBCS lead byte table pointer
2018-12-17T22:48:19.499906993Z 68 PC: 15223 | I/O control for devices (Set for = '')
2018-12-17T22:48:19.506238272Z 68 PC: 1522e | I/O control for devices (Set for = '')
2018-12-17T22:48:19.508297651Z 68 PC: 15239 | I/O control for devices (Set for = '')
2018-12-17T22:48:19.510061161Z 68 PC: 15241 | I/O control for devices (Set for = '��b���g�t�S3����[r�2��W�<t�<u�6�u����>��>W')
2018-12-17T22:48:19.512574808Z 48 PC: 15246 | Get DOS version
2018-12-17T22:48:19.514453075Z 53 PC: 12b72 | Get interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T22:48:19.516217314Z 53 PC: 12b81 | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:48:19.51920586Z 81 PC: 12bb7 | Get current PSP
2018-12-17T22:48:19.520410116Z 37 PC: 12d4a | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:48:19.521951432Z 53 PC: 12bcf | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:48:19.523462932Z 37 PC: 12be0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:48:19.525715188Z 37 PC: 12be7 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:48:19.527373186Z 38 PC: 12a44 | Create PSP
2018-12-17T22:48:19.529207856Z 26 PC: 12c28 | Set disk transfer address
2018-12-17T22:48:19.532176897Z 99 PC: 12f8d | Get DBCS lead byte table pointer
2018-12-17T22:48:19.533996454Z 41 PC: 12cb5 | Parse filename
2018-12-17T22:48:19.535866625Z 55 PC: 13fab | Get or set switch character
2018-12-17T22:48:19.538615024Z 41 PC: 1358a | Parse filename
2018-12-17T22:48:19.541577395Z 55 PC: 13fab | Get or set switch character
2018-12-17T22:48:19.54444996Z 41 PC: 13598 | Parse filename
2018-12-17T22:48:19.547716196Z 64 PC: 1534b | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:48:19.551396628Z 10 PC: 12eca | Buffered keyboard input