Sample viewer

vx.netlux.org/Virus.DOS.Hysterya.2475

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:49:01.355987532Z 67 PC: 1322a | Get or set file attributes
2018-12-17T22:49:01.362107376Z 61 PC: 1322a | Open file (Filename = '')
2018-12-17T22:49:01.370169013Z 87 PC: 1322a | Get or set file date and time
2018-12-17T22:49:01.371714936Z 63 PC: 1322a | Read file or device (Read 2459041820 bytes on handle 5)
2018-12-17T22:49:01.374948878Z 66 PC: 1322a | Move file pointer
2018-12-17T22:49:01.378446653Z 66 PC: 130f6 | Move file pointer
2018-12-17T22:49:01.380305704Z 63 PC: 13100 | Read file or device (Read 2459041799 bytes on handle 5)
2018-12-17T22:49:01.384062593Z 66 PC: 1322a | Move file pointer
2018-12-17T22:49:01.386572046Z 64 PC: 1322a | Write file or device (Write 2459044252 bytes on handle 5)
2018-12-17T22:49:01.731925782Z 64 PC: 13202 | Write file or device (Write 2459041799 bytes on handle 5)
2018-12-17T22:49:01.735285715Z 66 PC: 1322a | Move file pointer
2018-12-17T22:49:01.738118629Z 64 PC: 1322a | Write file or device (Write 2459041820 bytes on handle 5)
2018-12-17T22:49:01.741890561Z 87 PC: 1322a | Get or set file date and time
2018-12-17T22:49:01.744043435Z 62 PC: 1322a | Close file
2018-12-17T22:49:01.752725829Z 65 PC: 1322a | Delete file (Filename = '')
2018-12-17T22:49:01.760350137Z 75 PC: 13234 | Execute program
2018-12-17T22:49:01.768196598Z 74 PC: 13254 | Reallocate memory
2018-12-17T22:49:01.770456418Z 82 PC: 13259 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:49:01.773730834Z 53 PC: 132b2 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:49:01.775517019Z 37 PC: 132c9 | Set interrupt vector (Interrupt = '33' AKA 'Random read')