Sample viewer

vx.netlux.org/Trojan.DOS.DelSystem.e

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:51:50.176947211Z 48 PC: 12a4c | Get DOS version
2018-12-17T22:51:50.179071822Z 53 PC: 12bef | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:51:50.185065421Z 53 PC: 12bfc | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:51:50.186865292Z 53 PC: 12c09 | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:51:50.188692865Z 53 PC: 12c16 | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:51:50.191489138Z 37 PC: 12c2a | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:51:50.193835416Z 74 PC: 12af4 | Reallocate memory
2018-12-17T22:51:50.19715927Z 68 PC: 12f7f | I/O control for devices (Set for = 'pyright 1991 Borland Intl.')
2018-12-17T22:51:50.200551572Z 68 PC: 12f7f | I/O control for devices (Set for = '')
2018-12-17T22:51:50.203750762Z 42 PC: 12e60 | Get date 0x12e60: mov word ptr [si], cx
0x12e62: mov word ptr [si + 2], dx
0x12e65: pop si
0x12e66: pop bp
0x12e67: ret
0x12e68: push bp
0x12e69: mov bp, sp
0x12e6b: push si
0x12e6c: mov si, word ptr [bp + 4]
0x12e6f: mov ah, 0x2c
0x12e71: int 0x21
0x12e73: mov word ptr [si], cx
0x12e75: mov word ptr [si + 2], dx
0x12e78: pop si
0x12e79: pop bp
0x12e7a: ret
0x12e7b: pop cx
0x12e7c: push cs
0x12e7d: push cx
0x12e7e: xor cx, cx
2018-12-17T22:51:50.20609155Z 44 PC: 12e73 | Get time 0x12e73: mov word ptr [si], cx
0x12e75: mov word ptr [si + 2], dx
0x12e78: pop si
0x12e79: pop bp
0x12e7a: ret
0x12e7b: pop cx
0x12e7c: push cs
0x12e7d: push cx
0x12e7e: xor cx, cx
0x12e80: jmp 0x12e98
0x12e82: pop cx
0x12e83: push cs
0x12e84: push cx
0x12e85: mov cx, 1
0x12e88: jmp 0x12e98
0x12e8a: pop cx
0x12e8b: push cs
0x12e8c: push cx
0x12e8d: mov cx, 2
0x12e90: jmp 0x12e98
2018-12-17T22:51:50.210503237Z 47 PC: 143d1 | Get disk transfer address
2018-12-17T22:51:50.212202339Z 26 PC: 143da | Set disk transfer address
2018-12-17T22:51:50.214159706Z 78 PC: 143e4 | Find first file
2018-12-17T22:51:50.234117497Z 26 PC: 143ed | Set disk transfer address
2018-12-17T22:51:50.236227942Z 64 PC: 15169 | Write file or device (Write 11 bytes on handle 1)
2018-12-17T22:51:50.239544091Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.240577122Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.241487342Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.244779356Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.246707909Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:50.249273278Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.254802295Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.261940173Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.263020533Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.264377201Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.267171992Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.269137043Z 64 PC: 15169 | Write file or device (Write 9 bytes on handle 1)
2018-12-17T22:51:50.272625206Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.279716407Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.284797482Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.285885055Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.287752954Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.290244574Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.292075123Z 64 PC: 15169 | Write file or device (Write 14 bytes on handle 1)
2018-12-17T22:51:50.295529342Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.30427454Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.309253243Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.310924643Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.311966129Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.314414428Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.316440705Z 64 PC: 15169 | Write file or device (Write 12 bytes on handle 1)
2018-12-17T22:51:50.320405112Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.325123887Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.330794168Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.332345954Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.333405674Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.340985924Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.344829294Z 64 PC: 15169 | Write file or device (Write 9 bytes on handle 1)
2018-12-17T22:51:50.348645914Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.355704664Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.364013963Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.365890548Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.367434789Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.371715691Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.374750693Z 64 PC: 15169 | Write file or device (Write 14 bytes on handle 1)
2018-12-17T22:51:50.37847048Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.385272999Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.394869166Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.397184045Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.398706935Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.402821244Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.405615313Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:50.409290357Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.416490623Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.424674647Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.426215181Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.428485916Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.432359373Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.43509886Z 64 PC: 15169 | Write file or device (Write 14 bytes on handle 1)
2018-12-17T22:51:50.43952267Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.446547767Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.455306601Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.456878915Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.459423164Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.463183528Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.466753505Z 64 PC: 15169 | Write file or device (Write 11 bytes on handle 1)
2018-12-17T22:51:50.47149387Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.479214353Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.486322055Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.488696405Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.490504462Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.494095588Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.497545989Z 64 PC: 15169 | Write file or device (Write 10 bytes on handle 1)
2018-12-17T22:51:50.503233474Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.510391611Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.517510193Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.520028764Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.521550262Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.525129045Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.528420569Z 64 PC: 15169 | Write file or device (Write 14 bytes on handle 1)
2018-12-17T22:51:50.532128043Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.541178034Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.548434766Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.550633126Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.552223153Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.55673574Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.559669471Z 64 PC: 15169 | Write file or device (Write 14 bytes on handle 1)
2018-12-17T22:51:50.563473106Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.571376193Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.578855453Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.580413219Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.58195778Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.591437829Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.594156596Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:50.597960172Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.606672027Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.61365751Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.615216458Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.617567645Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.621103968Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.623909248Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:50.628597315Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.63558443Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.64251516Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.64441047Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.645779141Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.652300662Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.65572231Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:50.664114435Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.670829189Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.678672172Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.680146803Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.681367947Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.684615768Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.687969177Z 64 PC: 15169 | Write file or device (Write 14 bytes on handle 1)
2018-12-17T22:51:50.69138292Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.697800186Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.705351932Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.70664975Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.7079005Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.731028477Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.734012953Z 64 PC: 15169 | Write file or device (Write 12 bytes on handle 1)
2018-12-17T22:51:50.737431836Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.745824201Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.752425001Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.753590571Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.762035254Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.765551991Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.768162755Z 64 PC: 15169 | Write file or device (Write 12 bytes on handle 1)
2018-12-17T22:51:50.774303581Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.781059672Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.78809592Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.790708648Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.792528968Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.796035415Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.799843138Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:50.804019694Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.811111877Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.823154389Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.824654487Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.826064546Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.829713461Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.833943597Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:50.839004955Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.848587456Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.85599979Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.857504627Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.859030033Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.86343599Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.865904757Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:50.86923331Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.876948183Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.883625336Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.884826623Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.887170877Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.890406495Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.892755397Z 64 PC: 15169 | Write file or device (Write 14 bytes on handle 1)
2018-12-17T22:51:50.897955586Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.910104548Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.91742995Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.919707177Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.921133306Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.927851978Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.931787811Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:50.936542784Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.943112505Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.950622613Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.952285327Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.953571353Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.957880358Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.960365787Z 64 PC: 15169 | Write file or device (Write 14 bytes on handle 1)
2018-12-17T22:51:50.968589967Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:50.97596961Z 86 PC: 14997 | Rename file
2018-12-17T22:51:50.982621155Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:50.983813635Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:50.985853096Z 79 PC: 14411 | Find next file
2018-12-17T22:51:50.98949647Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:50.993963692Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:51.005864569Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:51.013028306Z 86 PC: 14997 | Rename file
2018-12-17T22:51:51.020519579Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:51.022810212Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:51.024465802Z 79 PC: 14411 | Find next file
2018-12-17T22:51:51.028668717Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:51.032566229Z 64 PC: 15169 | Write file or device (Write 14 bytes on handle 1)
2018-12-17T22:51:51.038097389Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:51.046043777Z 86 PC: 14997 | Rename file
2018-12-17T22:51:51.054297452Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:51.055623573Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:51.057489638Z 79 PC: 14411 | Find next file
2018-12-17T22:51:51.061889584Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:51.064497874Z 64 PC: 15169 | Write file or device (Write 14 bytes on handle 1)
2018-12-17T22:51:51.06988338Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:51.076731094Z 86 PC: 14997 | Rename file
2018-12-17T22:51:51.084550092Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:51.086378788Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:51.087993641Z 79 PC: 14411 | Find next file
2018-12-17T22:51:51.092281757Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:51.095204437Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:51.100546212Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:51.109161476Z 86 PC: 14997 | Rename file
2018-12-17T22:51:51.116809563Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:51.118482786Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:51.121151139Z 79 PC: 14411 | Find next file
2018-12-17T22:51:51.128703326Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:51.131470705Z 64 PC: 15169 | Write file or device (Write 11 bytes on handle 1)
2018-12-17T22:51:51.139534433Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:51.147236892Z 86 PC: 14997 | Rename file
2018-12-17T22:51:51.154426188Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:51.156677326Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:51.1581059Z 79 PC: 14411 | Find next file
2018-12-17T22:51:51.165236615Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:51.168948538Z 64 PC: 15169 | Write file or device (Write 13 bytes on handle 1)
2018-12-17T22:51:51.174817373Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:51.183307813Z 86 PC: 14997 | Rename file
2018-12-17T22:51:51.191217622Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:51.19318609Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:51.194690917Z 79 PC: 14411 | Find next file
2018-12-17T22:51:51.202416299Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:51.205551539Z 64 PC: 15169 | Write file or device (Write 12 bytes on handle 1)
2018-12-17T22:51:51.210703918Z 59 PC: 12dc0 | Change current directory
2018-12-17T22:51:51.218122514Z 86 PC: 14997 | Rename file
2018-12-17T22:51:51.225334912Z 47 PC: 14404 | Get disk transfer address
2018-12-17T22:51:51.22712742Z 26 PC: 1440d | Set disk transfer address
2018-12-17T22:51:51.229825298Z 79 PC: 14411 | Find next file
2018-12-17T22:51:51.236691256Z 26 PC: 1441a | Set disk transfer address
2018-12-17T22:51:51.238547353Z 7 PC: 13b16 | Direct console input without echo