Sample viewer

vx.netlux.org/Virus.DOS.Corrupted.Atas.3321

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:45:06.590675153Z 171 PC: 12a68 | UNKNOWN!
2018-12-17T22:45:06.59181807Z 48 PC: 12a71 | Get DOS version
2018-12-17T22:45:06.592961918Z 171 PC: 12a68 | UNKNOWN!
2018-12-17T22:45:06.593633932Z 48 PC: 12a71 | Get DOS version
2018-12-17T22:45:06.595873076Z 171 PC: 12a68 | UNKNOWN!
2018-12-17T22:45:06.596506403Z 48 PC: 12a71 | Get DOS version
2018-12-17T22:45:06.597580228Z 171 PC: 12a68 | UNKNOWN!
2018-12-17T22:45:06.598850324Z 48 PC: 12a71 | Get DOS version
2018-12-17T22:45:06.603030605Z 171 PC: 12a68 | UNKNOWN!
2018-12-17T22:45:06.603629119Z 48 PC: 12a71 | Get DOS version
2018-12-17T22:45:06.605255665Z 53 PC: 12ace | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:45:06.606247955Z 53 PC: 12ada | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:45:06.607204868Z 53 PC: 12ae6 | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:45:06.608977615Z 53 PC: 12aff | Get interrupt vector (Interrupt = '22' AKA 'Create or truncate file')
2018-12-17T22:45:06.609985075Z 53 PC: 12b0b | Get interrupt vector (Interrupt = '16' AKA 'Close file')
2018-12-17T22:45:06.611194289Z 37 PC: 12b2f | Set interrupt vector (Interrupt = '22' AKA 'Create or truncate file')
2018-12-17T22:45:06.612827155Z 37 PC: 12b36 | Set interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:45:06.613866548Z 37 PC: 12b3d | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:45:06.614947806Z 37 PC: 12b44 | Set interrupt vector (Interrupt = '16' AKA 'Close file')
2018-12-17T22:45:06.616271003Z 37 PC: 12b4b | Set interrupt vector (Interrupt = '33' AKA 'Random read')