Sample viewer

vx.netlux.org/Virus.DOS.Terminator.918

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:15:43.887718951Z 53 PC: 12ae9 | Get interrupt vector (Interrupt = '254' AKA 'UNKNOWN!')
2018-12-17T22:15:43.889472699Z 53 PC: 12af7 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:15:43.890611394Z 53 PC: 12b05 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:15:43.891665295Z 37 PC: 12b17 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:15:43.894044574Z 37 PC: 12b20 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:15:43.895508878Z 37 PC: 12b29 | Set interrupt vector (Interrupt = '254' AKA 'UNKNOWN!')
2018-12-17T22:15:43.897069112Z 49 PC: 12b31 | Terminate and stay resident (Return code = '0' | Memory size = '74')

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":2862,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:47:28.266169752Z 53 PC: 12ae9 | Get interrupt vector (Interrupt = '254' AKA 'UNKNOWN!')
2018-12-25T11:47:28.267584783Z 53 PC: 12af7 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:47:28.27013134Z 53 PC: 12b05 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-25T11:47:28.271753499Z 37 PC: 12b17 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:47:28.273358538Z 37 PC: 12b20 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-25T11:47:28.275248818Z 37 PC: 12b29 | Set interrupt vector (Interrupt = '254' AKA 'UNKNOWN!')
2018-12-25T11:47:28.276880375Z 49 PC: 12b31 | Terminate and stay resident (Return code = '0' | Memory size = '74')

{"DateBased":true,"Day":30,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":2862,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:47:28.287967804Z 53 PC: 12ae9 | Get interrupt vector (Interrupt = '254' AKA 'UNKNOWN!')
2018-12-25T11:47:28.290535986Z 53 PC: 12af7 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:47:28.292094594Z 53 PC: 12b05 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-25T11:47:28.293766813Z 37 PC: 12b17 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:47:28.296123544Z 37 PC: 12b20 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-25T11:47:28.298372698Z 37 PC: 12b29 | Set interrupt vector (Interrupt = '254' AKA 'UNKNOWN!')
2018-12-25T11:47:28.29992782Z 49 PC: 12b31 | Terminate and stay resident (Return code = '0' | Memory size = '74')