Sample viewer

vx.netlux.org/Virus.DOS.Ox.998

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:49:30.340360923Z 66 PC: 19cca | Move file pointer
2018-12-17T22:49:30.34402263Z 187 PC: 1a024 | UNKNOWN!
2018-12-17T22:49:30.345685198Z 82 PC: 19ff3 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:49:30.361302514Z 48 PC: 16cf2 | Get DOS version
2018-12-17T22:49:30.363138457Z 74 PC: 16d6b | Reallocate memory
2018-12-17T22:49:30.36575429Z 53 PC: 16de9 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:49:30.367319302Z 37 PC: 16dfb | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:49:30.368764189Z 68 PC: 16e8b | I/O control for devices (Set for = '���Ë&����.�ĉ.&ĉ6pė_^]�')
2018-12-17T22:49:30.370937443Z 68 PC: 16e8b | I/O control for devices (Set for = '')
2018-12-17T22:49:30.372606561Z 68 PC: 16e8b | I/O control for devices (Set for = '��:��##YjL�]BMt�R=m�����tHj�Ly^F�n~��/K���TA��y�������R F���U�@-�'��7;��/͢"+u���L�IS|g��瀸���%����ùޙ&����k�ԃ���j1�z9ζ� ���LWb�lVJ�9u�� P�D0�W� ;{⨩��P�V�<�-�B���r����>gm��� *SӫC� �Ք� �Y�Y=|y�/D�')
2018-12-17T22:49:30.37406446Z 68 PC: 16e8b | I/O control for devices (Set for = 'm�����tHj�Ly^F�n~��/K���TA��y�������R F���U�@-�'��7;��/͢"+u���L�IS|g��瀸���%����ùޙ&����k�ԃ���j1�z9ζ� ���LWb�lVJ�9u�� P�D0�W� ;{⨩��P�V�<�-�B���r����>gm��� *SӫC� �Ք� �Y�Y=|y�/D�')
2018-12-17T22:49:30.378416264Z 68 PC: 16e8b | I/O control for devices (Set for = 'm�����tHj�Ly^F�n~��/K���TA��y�������R F���U�@-�'��7;��/͢"+u���L�IS|g��瀸���%����ùޙ&����k�ԃ���j1�z9ζ� ���LWb�lVJ�9u�� P�D0�W� ;{⨩��P�V�<�-�B���r����>gm��� *SӫC� �Ք� �Y�Y=|y�/D�')
2018-12-17T22:49:30.383763183Z 56 PC: 172d6 | Get or set country info
2018-12-17T22:49:30.386998889Z 55 PC: 15558 | Get or set switch character
2018-12-17T22:49:30.403478421Z 68 PC: 15209 | I/O control for devices (Set for = '')
2018-12-17T22:49:30.409959381Z 43 PC: 15a8f | Set date
2018-12-17T22:49:30.411690565Z 84 PC: 15aab | Get verify flag
2018-12-17T22:49:30.41438084Z 51 PC: 15ab3 | Get or set Ctrl-Break
2018-12-17T22:49:30.415749039Z 51 PC: 15abe | Get or set Ctrl-Break
2018-12-17T22:49:30.416659659Z 37 PC: 15ac8 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:49:30.420741563Z 53 PC: 156b0 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:30.423312855Z 37 PC: 156c0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:30.427640442Z 61 PC: 15846 | Open file (Filename = '��2���.3&3�D���>`�')
2018-12-17T22:49:30.438362269Z 64 PC: 157ee | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:49:30.444680157Z 64 PC: 157ee | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:49:30.48099548Z 12 PC: 172d6 | Flush input buffer and input