Sample viewer

vx.netlux.org/Virus.DOS.Zyklon.323

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:34:48.878581506Z 250 PC: 12a50 | UNKNOWN!
2018-12-17T22:34:48.882598377Z 51 PC: 12a64 | Get or set Ctrl-Break
2018-12-17T22:34:48.885126745Z 51 PC: 12a6a | Get or set Ctrl-Break
2018-12-17T22:34:48.886521948Z 53 PC: 12a70 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:34:48.888271603Z 37 PC: 12a7b | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:34:48.890981029Z 47 PC: 12a7f | Get disk transfer address
2018-12-17T22:34:48.90277149Z 26 PC: 12a88 | Set disk transfer address
2018-12-17T22:34:48.90409256Z 78 PC: 12ab2 | Find first file
2018-12-17T22:34:48.909232414Z 26 PC: 12b2b | Set disk transfer address
2018-12-17T22:34:48.915410229Z 37 PC: 12b30 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:34:48.917013102Z 51 PC: 12b34 | Get or set Ctrl-Break