Sample viewer

vx.netlux.org/Virus.DOS.Vini.793

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:15:03.941984654Z 93 PC: 12e2b | File sharing functions
2018-12-17T22:15:03.943938916Z 74 PC: 12e45 | Reallocate memory
2018-12-17T22:15:03.944931197Z 72 PC: 12e4d | Allocate memory
2018-12-17T22:15:03.945955235Z 53 PC: 12e6e | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:15:03.947080938Z 37 PC: 12e83 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:15:03.948538764Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T22:15:03.952477347Z 76 PC: 12a86 | Terminate with return code (Return code = '36')

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":2789,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:46:26.799739722Z 93 PC: 12e2b | File sharing functions
2018-12-25T11:46:26.802409051Z 74 PC: 12e45 | Reallocate memory
2018-12-25T11:46:26.804348971Z 72 PC: 12e4d | Allocate memory
2018-12-25T11:46:26.806155141Z 53 PC: 12e6e | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:46:26.8077121Z 37 PC: 12e83 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:46:26.809728355Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-25T11:46:26.815101156Z 76 PC: 12a86 | Terminate with return code (Return code = '36')

{"DateBased":true,"Day":17,"Month":4,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":2789,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:46:27.464561608Z 93 PC: 12e2b | File sharing functions
2018-12-25T11:46:27.466765153Z 74 PC: 12e45 | Reallocate memory
2018-12-25T11:46:27.468499654Z 72 PC: 12e4d | Allocate memory
2018-12-25T11:46:27.470195158Z 53 PC: 12e6e | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:46:27.472562489Z 37 PC: 12e83 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:46:27.473863284Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-25T11:46:27.479180913Z 76 PC: 12a86 | Terminate with return code (Return code = '36')