Sample viewer

vx.netlux.org/Virus.DOS.Transmitter.1044

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:51:10.623452689Z 53 PC: 12ab3 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:51:10.625413484Z 53 PC: 12ac0 | Get interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-17T21:51:10.641806505Z 74 PC: 12ade | Reallocate memory
2018-12-17T21:51:10.643674093Z 72 PC: 12ae7 | Allocate memory
2018-12-17T21:51:10.646325884Z 37 PC: 12b19 | Set interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-17T21:51:10.648438716Z 37 PC: 12b26 | Set interrupt vector (Interrupt = '33' AKA 'Random read')

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":95,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:39:52.643380396Z 53 PC: 12ab3 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:39:52.645309711Z 53 PC: 12ac0 | Get interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-25T11:39:52.646681452Z 74 PC: 12ade | Reallocate memory
2018-12-25T11:39:52.648065489Z 72 PC: 12ae7 | Allocate memory
2018-12-25T11:39:52.650270613Z 37 PC: 12b19 | Set interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-25T11:39:52.651658138Z 37 PC: 12b26 | Set interrupt vector (Interrupt = '33' AKA 'Random read')

{"DateBased":true,"Day":10,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":95,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T11:39:52.852455033Z 53 PC: 12ab3 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-25T11:39:52.853978524Z 53 PC: 12ac0 | Get interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-25T11:39:52.855159816Z 74 PC: 12ade | Reallocate memory
2018-12-25T11:39:52.856503787Z 72 PC: 12ae7 | Allocate memory
2018-12-25T11:39:52.858406769Z 37 PC: 12b19 | Set interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-25T11:39:52.859555736Z 37 PC: 12b26 | Set interrupt vector (Interrupt = '33' AKA 'Random read')