Sample viewer

vx.netlux.org/Virus.DOS.SSH.2944

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:55:29.417547945Z 12 PC: 13468 | Flush input buffer and input
2018-12-17T22:55:29.421498589Z 53 PC: 134c5 | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:55:29.423397521Z 37 PC: 134d7 | Set interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:55:29.425682245Z 53 PC: 134dc | Get interrupt vector (Interrupt = '22' AKA 'Create or truncate file')
2018-12-17T22:55:29.427268038Z 37 PC: 134ee | Set interrupt vector (Interrupt = '22' AKA 'Create or truncate file')
2018-12-17T22:55:29.430269885Z 53 PC: 134f3 | Get interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-17T22:55:29.431713899Z 37 PC: 13505 | Set interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-17T22:55:29.432965753Z 53 PC: 1350a | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:55:29.434507023Z 37 PC: 1351c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:55:29.435774677Z 53 PC: 13522 | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:55:29.436917581Z 37 PC: 13534 | Set interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:55:29.441695945Z 53 PC: 13539 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:55:29.45046854Z 37 PC: 1354b | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:55:29.452275948Z 48 PC: 13554 | Get DOS version
2018-12-17T22:55:29.455250383Z 74 PC: 1357b | Reallocate memory
2018-12-17T22:55:29.45670347Z 75 PC: 135aa | Execute program
2018-12-17T22:55:29.459437087Z 49 PC: 135af | Terminate and stay resident (Return code = '0' | Memory size = '200')