Sample viewer

vx.netlux.org/Virus.DOS.Nuke.Pox.814

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:51:27.808873734Z 53 PC: 1c3e6 | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:51:27.811811262Z 53 PC: 1c3f5 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:51:27.814006626Z 74 PC: 1c41c | Reallocate memory
2018-12-17T22:51:27.815911274Z 72 PC: 1c425 | Allocate memory
2018-12-17T22:51:27.824306746Z 37 PC: 1c450 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:51:27.826056804Z 37 PC: 1c458 | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:51:27.828997919Z 48 PC: 178d4 | Get DOS version
2018-12-17T22:51:27.830766371Z 74 PC: 17936 | Reallocate memory
2018-12-17T22:51:27.838616808Z 48 PC: 1524e | Get DOS version
2018-12-17T22:51:27.840247041Z 53 PC: 15256 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:51:27.842011505Z 37 PC: 15268 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:51:27.844829579Z 53 PC: 19e52 | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:51:27.846585388Z 37 PC: 19e62 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:51:27.848413883Z 53 PC: 19e67 | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:51:27.851322086Z 37 PC: 19e77 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:51:27.85327244Z 53 PC: 17b61 | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:51:27.855201935Z 53 PC: 17b61 | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:51:27.859228269Z 53 PC: 17b61 | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:51:27.862893895Z 53 PC: 17b61 | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:51:27.864752126Z 53 PC: 17b61 | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:51:27.869358799Z 53 PC: 17b61 | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:51:27.871115399Z 53 PC: 17b61 | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:51:27.872841422Z 53 PC: 17b61 | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:51:27.874895771Z 53 PC: 17b61 | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:51:27.876457696Z 53 PC: 17b61 | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:51:27.877706041Z 53 PC: 17b61 | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:51:27.891751816Z 37 PC: 17b90 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:51:27.898297733Z 37 PC: 17b90 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:51:27.906722521Z 37 PC: 17b90 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:51:27.908310664Z 37 PC: 17b90 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:51:27.911467524Z 37 PC: 17b90 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:51:27.913592065Z 37 PC: 17b90 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:51:27.915797398Z 37 PC: 17b90 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:51:27.91874736Z 37 PC: 17b90 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:51:27.920287523Z 37 PC: 17b97 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:51:27.92189913Z 37 PC: 17b9c | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:51:27.924556532Z 68 PC: 152ec | I/O control for devices (Set for = '+ �/+')
2018-12-17T22:51:27.926494944Z 68 PC: 152ec | I/O control for devices (Set for = '')
2018-12-17T22:51:27.928379405Z 68 PC: 152ec | I/O control for devices (Set for = '&�U�D u�ƀtC����')
2018-12-17T22:51:27.930889019Z 68 PC: 152ec | I/O control for devices (Set for = '��')
2018-12-17T22:51:27.932878366Z 68 PC: 152ec | I/O control for devices (Set for = '��')
2018-12-17T22:51:27.935768566Z 99 PC: 1a2a0 | Get DBCS lead byte table pointer
2018-12-17T22:51:27.941518437Z 68 PC: 1a2ba | I/O control for devices (Set for = '')
2018-12-17T22:51:27.943491363Z 68 PC: 1a2c5 | I/O control for devices (Set for = '')
2018-12-17T22:51:27.945504465Z 68 PC: 1a2d0 | I/O control for devices (Set for = '')
2018-12-17T22:51:27.949029898Z 68 PC: 1a2d8 | I/O control for devices (Set for = '��b���g�t�S3����[r�2��W�<t�<u�6�u����>��>W')
2018-12-17T22:51:27.951880463Z 48 PC: 1a2dd | Get DOS version
2018-12-17T22:51:27.954298526Z 64 PC: 1a558 | Write file or device (Write 23 bytes on handle 2)
2018-12-17T22:51:27.959391874Z 37 PC: 17bac | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:51:27.962167378Z 37 PC: 17bac | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:51:27.964425289Z 37 PC: 17bac | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:51:27.966121917Z 37 PC: 17bac | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:51:27.967986249Z 37 PC: 17bac | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:51:27.970191211Z 37 PC: 17bac | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:51:27.971822355Z 37 PC: 17bac | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:51:27.974138356Z 37 PC: 17bac | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:51:27.975798274Z 37 PC: 17bac | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:51:27.977586233Z 37 PC: 17bac | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:51:27.980445545Z 37 PC: 17bac | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:51:27.982432107Z 37 PC: 19e86 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:51:27.984266313Z 37 PC: 15381 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:51:27.987160199Z 76 PC: 1536a | Terminate with return code (Return code = '1')