Sample viewer

vx.netlux.org/Virus.DOS.BatMan_II.2236

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:55:23.329601488Z 74 PC: 12cd9 | Reallocate memory
2018-12-17T21:55:23.331726304Z 53 PC: 12cde | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T21:55:23.333377852Z 53 PC: 12f6d | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:55:23.335055348Z 51 PC: 12cf0 | Get or set Ctrl-Break
2018-12-17T21:55:23.345416467Z 88 PC: 12e1e | case 0xGet or set allocation strateg:
2018-12-17T21:55:23.346858735Z 88 PC: 12e29 | case 0xGet or set allocation strateg:
2018-12-17T21:55:23.348213732Z 88 PC: 12e0d | case 0xGet or set allocation strateg:
2018-12-17T21:55:23.352392105Z 88 PC: 12e17 | case 0xGet or set allocation strateg:
2018-12-17T21:55:23.353997564Z 88 PC: 12df7 | case 0xGet or set allocation strateg:
2018-12-17T21:55:23.355161324Z 88 PC: 12e03 | case 0xGet or set allocation strateg:
2018-12-17T21:55:23.357727293Z 37 PC: 12d83 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T21:55:23.35921574Z 37 PC: 12d8b | Set interrupt vector (Interrupt = '40' AKA 'Random block write')
2018-12-17T21:55:23.360754017Z 75 PC: 132a0 | Execute program
2018-12-17T21:55:23.376587128Z 76 PC: 14b71 | Terminate with return code (Return code = '0')
2018-12-17T21:55:23.380557285Z 49 PC: 12d1c | Terminate and stay resident (Return code = '0' | Memory size = '155')