Sample viewer

vx.netlux.org/Virus.DOS.Seoul.472

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:48:55.777804812Z 255 PC: 166cc | UNKNOWN!
2018-12-17T22:48:55.779695454Z 74 PC: 166e6 | Reallocate memory
2018-12-17T22:48:55.781847127Z 72 PC: 166f8 | Allocate memory
2018-12-17T22:48:55.783758569Z 53 PC: 166ff | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:48:55.785306257Z 37 PC: 16725 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:48:55.788387907Z 81 PC: 14cd2 | Get current PSP
2018-12-17T22:48:55.790065819Z 61 PC: 14d2b | Open file (Filename = 'A:\TEST.COM')
2018-12-17T22:48:55.797604924Z 66 PC: 14d95 | Move file pointer
2018-12-17T22:48:55.800444139Z 63 PC: 14dad | Read file or device (Read 7 bytes on handle 5)
2018-12-17T22:48:55.80414896Z 66 PC: 14dd2 | Move file pointer
2018-12-17T22:48:55.806024814Z 63 PC: 14dde | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:48:55.810142892Z 62 PC: 14d41 | Close file
2018-12-17T22:48:55.81257432Z 56 PC: 15372 | Get or set country info
2018-12-17T22:48:55.814429696Z 48 PC: 14f5e | Get DOS version
2018-12-17T22:48:55.816988925Z 76 PC: 1588a | Terminate with return code (Return code = '1')