Sample viewer

vx.netlux.org/Virus.DOS.Abbas.1320

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:52:18.266621233Z 53 PC: 12e9c | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:52:18.268786603Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.269848233Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.270845752Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.277597678Z 9 PC: 12aa2 | Display string (String= 'Hello - This is a 100 COM test file, 1993 ')
2018-12-17T22:52:18.28378624Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.284823304Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.286546237Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.28756956Z 77 PC: 11fe0 | Get program return code
2018-12-17T22:52:18.288647572Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.290198945Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.291191294Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.292176369Z 72 PC: 12174 | Allocate memory
2018-12-17T22:52:18.294203361Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.295200617Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.2961523Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.297570358Z 72 PC: 1218d | Allocate memory
2018-12-17T22:52:18.299596772Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.300574959Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.301809894Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.302893295Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:52:18.303878301Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.304844323Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.306037532Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.306981496Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:52:18.307941012Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.309898017Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.310869421Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.31186993Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.313583943Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.315099435Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.316140702Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.317752439Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.319098004Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.320097427Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.321719828Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.322828549Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.324146488Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.325659391Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.326632348Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.327642169Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.329459218Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.330467238Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.331443196Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.333027748Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.334713949Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.335896515Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.337244418Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.338072927Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.339045153Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.349965598Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.35158395Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.353100538Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.355135526Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.356558801Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.357964232Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.359747866Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.362196121Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.363371724Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.365059739Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.366244453Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.36773368Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.369296158Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.370250492Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.371202453Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.373075258Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.374059935Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.375018901Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.376504515Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.377870521Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.378874205Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.380352111Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.381615635Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.383228228Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.384683671Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.385707811Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.38672177Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.388511978Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.389783343Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.391028457Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.393021447Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.394378515Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.395382399Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.397012016Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.398273519Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.399897273Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.401543558Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.402787207Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.404031613Z 62 PC: 122ab | Close file
2018-12-17T22:52:18.407336114Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.408351445Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.409347428Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.411068884Z 99 PC: 9a0a7 | Get DBCS lead byte table pointer
2018-12-17T22:52:18.412229063Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.413220803Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.414859548Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.415866353Z 56 PC: 948c9 | Get or set country info
2018-12-17T22:52:18.417657884Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.419465942Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.420799116Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.422148119Z 64 PC: 9a318 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:52:18.427264623Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.428277251Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.42925974Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.430783474Z 25 PC: 94932 | Get default drive
2018-12-17T22:52:18.432475401Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.433859199Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.435743558Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.436747889Z 71 PC: 96bad | Get current directory
2018-12-17T22:52:18.440507265Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.442112609Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.443498572Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.444865474Z 64 PC: 9a318 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:52:18.449093412Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.45042737Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.451754779Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.453228026Z 2 PC: 96b82 | Character output (Char = '3e')
2018-12-17T22:52:18.455310232Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.456386437Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.457960184Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.459272662Z 93 PC: 949f0 | File sharing functions
2018-12-17T22:52:18.46114362Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.462837806Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.46388916Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.464927426Z 93 PC: 949f7 | File sharing functions
2018-12-17T22:52:18.467640274Z 53 PC: 9f6fd | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.468973143Z 37 PC: 9f715 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.470297223Z 37 PC: 9f872 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:52:18.472030861Z 10 PC: 94a09 | Buffered keyboard input