Sample viewer

vx.netlux.org/Virus.DOS.Avalanche.2820

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:59:20.191668271Z 75 PC: 12eb1 | Execute program
2018-12-17T22:59:20.1952113Z 48 PC: 12ebe | Get DOS version
2018-12-17T22:59:20.197649813Z 14 PC: 12ee2 | Set default drive (Drive = 'î')
2018-12-17T22:59:20.19935615Z 74 PC: 12f3e | Reallocate memory
2018-12-17T22:59:20.201624804Z 88 PC: 12f54 | case 0xGet or set allocation strateg:
2018-12-17T22:59:20.203994086Z 88 PC: 12f5d | case 0xGet or set allocation strateg:
2018-12-17T22:59:20.20579992Z 88 PC: 12f6e | case 0xGet or set allocation strateg:
2018-12-17T22:59:20.207500005Z 88 PC: 12f76 | case 0xGet or set allocation strateg:
2018-12-17T22:59:20.209801461Z 72 PC: 12f7d | Allocate memory
2018-12-17T22:59:20.211869447Z 53 PC: 12f97 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:59:20.213603666Z 82 PC: 13071 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:59:20.216435649Z 11 PC: 130bc | Get input status
2018-12-17T22:59:20.219463489Z 53 PC: 12fbc | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:59:20.220966263Z 37 PC: 12fdc | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:59:20.223583653Z 37 PC: 12fe4 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:59:20.225866062Z 74 PC: 12ff2 | Reallocate memory
2018-12-17T22:59:20.22814196Z 74 PC: 12ff6 | Reallocate memory
2018-12-17T22:59:20.231028895Z 88 PC: 13001 | case 0xGet or set allocation strateg:
2018-12-17T22:59:20.232843506Z 88 PC: 1300a | case 0xGet or set allocation strateg: