Sample viewer

vx.netlux.org/Virus.DOS.Jorgito.721

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:29:15.953214796Z 249 PC: 12a96 | UNKNOWN!
2018-12-17T22:29:15.955035312Z 53 PC: 12ab1 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:29:15.956232542Z 88 PC: 12ac0 | case 0xGet or set allocation strateg:
2018-12-17T22:29:15.957508008Z 88 PC: 12ac6 | case 0xGet or set allocation strateg:
2018-12-17T22:29:15.959372223Z 88 PC: 12acf | case 0xGet or set allocation strateg:
2018-12-17T22:29:15.96098571Z 74 PC: 12ae2 | Reallocate memory
2018-12-17T22:29:15.962398203Z 88 PC: 12aea | case 0xGet or set allocation strateg:
2018-12-17T22:29:15.963699133Z 72 PC: 12af1 | Allocate memory
2018-12-17T22:29:15.965787143Z 88 PC: 12b1a | case 0xGet or set allocation strateg:
2018-12-17T22:29:15.967190056Z 88 PC: 12b20 | case 0xGet or set allocation strateg:
2018-12-17T22:29:15.968285526Z 37 PC: 12b31 | Set interrupt vector (Interrupt = '33' AKA 'Random read')

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":5226,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:54:01.032916355Z 249 PC: 12a96 | UNKNOWN!
2018-12-25T11:54:01.034629625Z 53 PC: 12ab1 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:54:01.037237528Z 88 PC: 12ac0 | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.03920979Z 88 PC: 12ac6 | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.041143933Z 88 PC: 12acf | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.044570267Z 74 PC: 12ae2 | Reallocate memory
2018-12-25T11:54:01.046599838Z 88 PC: 12aea | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.048725469Z 72 PC: 12af1 | Allocate memory
2018-12-25T11:54:01.051234998Z 88 PC: 12b1a | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.05430118Z 88 PC: 12b20 | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.056849925Z 37 PC: 12b31 | Set interrupt vector (Interrupt = '33' AKA 'Random read')

{"DateBased":true,"Day":14,"Month":3,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":5226,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:54:01.095516097Z 249 PC: 12a96 | UNKNOWN!
2018-12-25T11:54:01.10403753Z 53 PC: 12ab1 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:54:01.108612537Z 88 PC: 12ac0 | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.109963613Z 88 PC: 12ac6 | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.111337896Z 88 PC: 12acf | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.117328248Z 74 PC: 12ae2 | Reallocate memory
2018-12-25T11:54:01.118979607Z 88 PC: 12aea | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.121028695Z 72 PC: 12af1 | Allocate memory
2018-12-25T11:54:01.124456667Z 88 PC: 12b1a | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.126500985Z 88 PC: 12b20 | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.128290966Z 37 PC: 12b31 | Set interrupt vector (Interrupt = '33' AKA 'Random read')

{"DateBased":true,"Day":14,"Month":3,"Year":1998,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":5226,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:54:01.661813336Z 249 PC: 12a96 | UNKNOWN!
2018-12-25T11:54:01.664809082Z 53 PC: 12ab1 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:54:01.666038462Z 88 PC: 12ac0 | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.667249866Z 88 PC: 12ac6 | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.66848019Z 88 PC: 12acf | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.670380075Z 74 PC: 12ae2 | Reallocate memory
2018-12-25T11:54:01.671884006Z 88 PC: 12aea | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.673463332Z 72 PC: 12af1 | Allocate memory
2018-12-25T11:54:01.676255322Z 88 PC: 12b1a | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.678285257Z 88 PC: 12b20 | case 0xGet or set allocation strateg:
2018-12-25T11:54:01.680122633Z 37 PC: 12b31 | Set interrupt vector (Interrupt = '33' AKA 'Random read')