Sample viewer

vx.netlux.org/Virus.DOS.Siskin.948

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:28:33.022391302Z 254 PC: 12b22 | UNKNOWN!
2018-12-17T22:28:33.02359538Z 53 PC: 12b4b | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:28:33.025131884Z 53 PC: 12b57 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:28:33.02639939Z 37 PC: 12b75 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:28:33.02754938Z 37 PC: 12b7c | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:28:33.029077324Z 9 PC: 12a49 | Display string (Could not find end pointer)
2018-12-17T22:28:33.038626387Z 76 PC: 12a4e | Terminate with return code (Return code = '0')

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":5088,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:53:41.00663518Z 254 PC: 12b22 | UNKNOWN!
2018-12-25T11:53:41.00855909Z 53 PC: 12b4b | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-25T11:53:41.010259664Z 53 PC: 12b57 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:53:41.011749364Z 37 PC: 12b75 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:53:41.01313136Z 37 PC: 12b7c | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-25T11:53:41.02269245Z 9 PC: 12a49 | Display string (Could not find end pointer)
2018-12-25T11:53:41.029764067Z 76 PC: 12a4e | Terminate with return code (Return code = '0')

{"DateBased":true,"Day":7,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":5088,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:53:41.10953928Z 254 PC: 12b22 | UNKNOWN!
2018-12-25T11:53:41.111069097Z 53 PC: 12b4b | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-25T11:53:41.113295079Z 53 PC: 12b57 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:53:41.11554534Z 37 PC: 12b75 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:53:41.117747296Z 37 PC: 12b7c | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-25T11:53:41.120435907Z 9 PC: 12a49 | Display string (Could not find end pointer)
2018-12-25T11:53:41.128756843Z 76 PC: 12a4e | Terminate with return code (Return code = '0')