Sample viewer

vx.netlux.org/Virus.DOS.Avalanche.2818

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:17:43.674936285Z 75 PC: 12ac9 | Execute program
2018-12-17T22:17:43.676719691Z 48 PC: 12ad6 | Get DOS version
2018-12-17T22:17:43.6785988Z 14 PC: 12afa | Set default drive (Drive = 'î')
2018-12-17T22:17:43.679504001Z 74 PC: 12b56 | Reallocate memory
2018-12-17T22:17:43.68080202Z 88 PC: 12b6c | case 0xGet or set allocation strateg:
2018-12-17T22:17:43.682323163Z 88 PC: 12b75 | case 0xGet or set allocation strateg:
2018-12-17T22:17:43.683152303Z 88 PC: 12b86 | case 0xGet or set allocation strateg:
2018-12-17T22:17:43.683980643Z 88 PC: 12b8e | case 0xGet or set allocation strateg:
2018-12-17T22:17:43.685865055Z 72 PC: 12b95 | Allocate memory
2018-12-17T22:17:43.687341576Z 53 PC: 12baf | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:17:43.688397319Z 82 PC: 12c89 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:17:43.695704595Z 11 PC: 12cd4 | Get input status
2018-12-17T22:17:43.698155816Z 53 PC: 12bd4 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:17:43.699237951Z 37 PC: 12bf4 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:17:43.700797292Z 37 PC: 12bfc | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:17:43.701966858Z 74 PC: 12c0a | Reallocate memory
2018-12-17T22:17:43.703643476Z 74 PC: 12c0e | Reallocate memory
2018-12-17T22:17:43.711995927Z 88 PC: 12c19 | case 0xGet or set allocation strateg:
2018-12-17T22:17:43.71338478Z 88 PC: 12c22 | case 0xGet or set allocation strateg: