Sample viewer

vx.netlux.org/Virus.DOS.HLLO.4576

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:15:53.686344305Z 53 PC: 12f9b | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:15:53.688016695Z 53 PC: 12fa8 | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:15:53.689076613Z 53 PC: 12fb5 | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:15:53.690383232Z 53 PC: 12fc2 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:53.692879675Z 53 PC: 12fcf | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T23:15:53.694059739Z 37 PC: 12fe2 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:15:53.695029876Z 37 PC: 12fea | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:15:53.708566236Z 37 PC: 12ff2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:53.710138366Z 68 PC: 13611 | I/O control for devices (Set for = '')
2018-12-17T23:15:53.711873199Z 26 PC: 12ed7 | Set disk transfer address
2018-12-17T23:15:53.713511918Z 78 PC: 12ed7 | Find first file
2018-12-17T23:15:53.720038114Z 26 PC: 12ed7 | Set disk transfer address
2018-12-17T23:15:53.721775129Z 79 PC: 12ed7 | Find next file
2018-12-17T23:15:53.725379548Z 67 PC: 12ed7 | Get or set file attributes
2018-12-17T23:15:53.741808685Z 61 PC: 13987 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:15:53.753775139Z 63 PC: 13a55 | Read file or device (Read 27 bytes on handle 5)
2018-12-17T23:15:53.761591553Z 62 PC: 139d7 | Close file
2018-12-17T23:15:53.769566934Z 61 PC: 13987 | Open file (Filename = 'virus.exe')
2018-12-17T23:15:53.776631039Z 61 PC: 13987 | Open file (Filename = 'virus.exe')
2018-12-17T23:15:53.783322037Z 60 PC: 13987 | Create or truncate file
2018-12-17T23:15:53.804924865Z 64 PC: 13a55 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:15:53.808543689Z 62 PC: 139d7 | Close file
2018-12-17T23:15:53.81669201Z 64 PC: 13718 | Write file or device (Write 0 bytes on handle 1)
2018-12-17T23:15:53.820149747Z 37 PC: 1303e | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:15:53.821939356Z 37 PC: 13049 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:15:53.823924962Z 37 PC: 13054 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:15:53.827136326Z 37 PC: 1305f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:53.828898501Z 37 PC: 1306a | Set interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T23:15:53.830173391Z 76 PC: 131ad | Terminate with return code (Return code = '0')