Sample viewer

vx.netlux.org/Virus.DOS.Crow.1310

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:34:28.509360863Z 255 PC: 12aa7 | UNKNOWN!
2018-12-17T22:34:28.51047087Z 53 PC: 12b21 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:34:28.51187209Z 9 PC: 12a47 | Display string (String= 'Crow Virus')

{"DateBased":true,"Day":4,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":6171,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:58:42.017759892Z 255 PC: 12aa7 | UNKNOWN!
2018-12-25T11:58:42.019877652Z 53 PC: 12b21 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:58:42.021344128Z 9 PC: 12a47 | Display string (String= 'Crow Virus')

{"DateBased":true,"Day":5,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":6171,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:58:42.622644048Z 255 PC: 12aa7 | UNKNOWN!
2018-12-25T11:58:42.623861698Z 53 PC: 12b21 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:58:42.626310644Z 9 PC: 12a47 | Display string (String= 'Crow Virus')

{"DateBased":true,"Day":6,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":6171,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:58:42.792536553Z 255 PC: 12aa7 | UNKNOWN!
2018-12-25T11:58:42.79434726Z 53 PC: 12b21 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:58:42.801463254Z 9 PC: 12a47 | Display string (String= 'Crow Virus')

{"DateBased":true,"Day":7,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":6171,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:58:42.96218605Z 255 PC: 12aa7 | UNKNOWN!
2018-12-25T11:58:42.963704661Z 53 PC: 12b21 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:58:42.968593634Z 9 PC: 12a47 | Display string (String= 'Crow Virus')

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":6171,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:58:44.576335113Z 255 PC: 12aa7 | UNKNOWN!
2018-12-25T11:58:44.57781513Z 53 PC: 12b21 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:58:44.579394084Z 9 PC: 12a47 | Display string (String= 'Crow Virus')

{"DateBased":true,"Day":2,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":6171,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:58:44.613068052Z 255 PC: 12aa7 | UNKNOWN!
2018-12-25T11:58:44.614304333Z 53 PC: 12b21 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:58:44.615497004Z 9 PC: 12a47 | Display string (String= 'Crow Virus')

{"DateBased":true,"Day":3,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":6171,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:58:44.948439314Z 255 PC: 12aa7 | UNKNOWN!
2018-12-25T11:58:44.94968317Z 53 PC: 12b21 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:58:44.950902727Z 9 PC: 12a47 | Display string (String= 'Crow Virus')