Sample viewer

vx.netlux.org/Virus.DOS.Lawine.2449

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:28:03.891856241Z 48 PC: 13f77 | Get DOS version
2018-12-17T22:28:03.894018908Z 14 PC: 13f9b | Set default drive (Drive = 'î')
2018-12-17T22:28:03.895211813Z 75 PC: 13fa9 | Execute program
2018-12-17T22:28:03.896635758Z 74 PC: 13fff | Reallocate memory
2018-12-17T22:28:03.898911013Z 88 PC: 1401a | case 0xGet or set allocation strateg:
2018-12-17T22:28:03.900839226Z 88 PC: 14023 | case 0xGet or set allocation strateg:
2018-12-17T22:28:03.902219346Z 88 PC: 14034 | case 0xGet or set allocation strateg:
2018-12-17T22:28:03.907012373Z 88 PC: 1403c | case 0xGet or set allocation strateg:
2018-12-17T22:28:03.908409556Z 72 PC: 14043 | Allocate memory
2018-12-17T22:28:03.909878209Z 53 PC: 1405d | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:28:03.911029293Z 82 PC: 14148 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:28:03.913320045Z 11 PC: 14191 | Get input status
2018-12-17T22:28:03.915824702Z 53 PC: 14082 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:28:03.916920663Z 37 PC: 140a2 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:28:03.919449295Z 37 PC: 140aa | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:28:03.921770731Z 74 PC: 140b8 | Reallocate memory
2018-12-17T22:28:03.92454965Z 74 PC: 140bc | Reallocate memory
2018-12-17T22:28:03.927072765Z 88 PC: 140c7 | case 0xGet or set allocation strateg:
2018-12-17T22:28:03.929696233Z 88 PC: 140d0 | case 0xGet or set allocation strateg:
2018-12-17T22:28:03.931992012Z 9 PC: 12a4a | Display string (String= '')