Sample viewer

vx.netlux.org/Virus.DOS.April_1st.Com.941.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:42:49.963571167Z 221 PC: 12a5f | UNKNOWN!
2018-12-17T22:42:49.965401825Z 53 PC: 12a8f | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:42:49.966914697Z 37 PC: 12a9f | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:42:49.968377134Z 53 PC: 12aa4 | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:42:49.970408539Z 37 PC: 12ab4 | Set interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:42:49.971783391Z 74 PC: 12acf | Reallocate memory
2018-12-17T22:42:49.973355314Z 75 PC: 12b06 | Execute program
2018-12-17T22:42:49.986787452Z 77 PC: 12b0a | Get program return code
2018-12-17T22:42:49.988961395Z 49 PC: 12b13 | Terminate and stay resident (Return code = '0' | Memory size = '75')

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":7673,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:02:20.89629782Z 221 PC: 12a5f | UNKNOWN!
2018-12-25T12:02:20.898116225Z 53 PC: 12a8f | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T12:02:20.899482137Z 37 PC: 12a9f | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T12:02:20.900706447Z 53 PC: 12aa4 | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-25T12:02:20.90199445Z 37 PC: 12ab4 | Set interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-25T12:02:20.906496974Z 74 PC: 12acf | Reallocate memory
2018-12-25T12:02:20.908136519Z 75 PC: 12b06 | Execute program
2018-12-25T12:02:20.922720251Z 77 PC: 12b0a | Get program return code
2018-12-25T12:02:20.925238172Z 49 PC: 12b13 | Terminate and stay resident (Return code = '0' | Memory size = '75')

{"DateBased":true,"Day":1,"Month":1,"Year":1990,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":7673,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:02:21.192617823Z 221 PC: 12a5f | UNKNOWN!
2018-12-25T12:02:21.193687755Z 53 PC: 12a8f | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T12:02:21.196015154Z 37 PC: 12a9f | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T12:02:21.197424636Z 53 PC: 12aa4 | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-25T12:02:21.198400915Z 37 PC: 12ab4 | Set interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-25T12:02:21.200309098Z 74 PC: 12acf | Reallocate memory
2018-12-25T12:02:21.201641047Z 75 PC: 12b06 | Execute program
2018-12-25T12:02:21.216181539Z 77 PC: 12b0a | Get program return code
2018-12-25T12:02:21.230578527Z 49 PC: 12b13 | Terminate and stay resident (Return code = '0' | Memory size = '75')