Sample viewer

vx.netlux.org/Virus.DOS.Avalanche.2831

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:19:48.634464068Z 75 PC: 12acb | Execute program
2018-12-17T22:19:48.636726613Z 48 PC: 12ad8 | Get DOS version
2018-12-17T22:19:48.638703132Z 14 PC: 12afc | Set default drive (Drive = 'î')
2018-12-17T22:19:48.640152215Z 74 PC: 12b58 | Reallocate memory
2018-12-17T22:19:48.642297304Z 88 PC: 12b6e | case 0xGet or set allocation strateg:
2018-12-17T22:19:48.644300572Z 88 PC: 12b77 | case 0xGet or set allocation strateg:
2018-12-17T22:19:48.646162909Z 88 PC: 12b88 | case 0xGet or set allocation strateg:
2018-12-17T22:19:48.651783974Z 88 PC: 12b90 | case 0xGet or set allocation strateg:
2018-12-17T22:19:48.653437314Z 72 PC: 12b97 | Allocate memory
2018-12-17T22:19:48.655099983Z 53 PC: 12bb1 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:19:48.656437561Z 82 PC: 12c8b | Get DOS internal pointers (SYSVARS)
2018-12-17T22:19:48.659042896Z 11 PC: 12cd7 | Get input status
2018-12-17T22:19:48.662190513Z 53 PC: 12bd6 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:19:48.663845596Z 37 PC: 12bf6 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:19:48.667742459Z 37 PC: 12bfe | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:19:48.669207668Z 74 PC: 12c0c | Reallocate memory
2018-12-17T22:19:48.671182294Z 74 PC: 12c10 | Reallocate memory
2018-12-17T22:19:48.67834407Z 88 PC: 12c1b | case 0xGet or set allocation strateg:
2018-12-17T22:19:48.680019377Z 88 PC: 12c24 | case 0xGet or set allocation strateg: