Sample viewer

vx.netlux.org/Trojan.DOS.Akimov

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:00:00.251860186Z 74 PC: 12b06 | Reallocate memory
2018-12-17T22:00:00.255471045Z 60 PC: 12b49 | Create or truncate file
2018-12-17T22:00:01.058796007Z 69 PC: 12b67 | Duplicate handle
2018-12-17T22:00:01.066087297Z 70 PC: 12b72 | Redirect handle
2018-12-17T22:00:01.070119069Z 2 PC: 12b7e | Character output (Char = '41')
2018-12-17T22:00:01.07837967Z 2 PC: 12b7e | Character output (Char = '4b')
2018-12-17T22:00:01.081187189Z 2 PC: 12b7e | Character output (Char = '49')
2018-12-17T22:00:01.088725605Z 2 PC: 12b7e | Character output (Char = '4d')
2018-12-17T22:00:01.091538715Z 2 PC: 12b7e | Character output (Char = '4f')
2018-12-17T22:00:01.094444101Z 2 PC: 12b7e | Character output (Char = '56')
2018-12-17T22:00:01.097515297Z 2 PC: 12b7e | Character output (Char = '20')
2018-12-17T22:00:01.100493115Z 2 PC: 12b7e | Character output (Char = '2d')
2018-12-17T22:00:01.10345331Z 2 PC: 12b7e | Character output (Char = '20')
2018-12-17T22:00:01.106449867Z 2 PC: 12b7e | Character output (Char = '4d')
2018-12-17T22:00:01.109847097Z 2 PC: 12b7e | Character output (Char = '55')
2018-12-17T22:00:01.112715285Z 2 PC: 12b7e | Character output (Char = '53')
2018-12-17T22:00:01.115482143Z 2 PC: 12b7e | Character output (Char = '54')
2018-12-17T22:00:01.129064713Z 2 PC: 12b7e | Character output (Char = '20')
2018-12-17T22:00:01.131960976Z 2 PC: 12b7e | Character output (Char = '44')
2018-12-17T22:00:01.134788319Z 2 PC: 12b7e | Character output (Char = '49')
2018-12-17T22:00:01.138714084Z 2 PC: 12b7e | Character output (Char = '45')
2018-12-17T22:00:01.142177518Z 2 PC: 12b7e | Character output (Char = '21')
2018-12-17T22:00:01.14576345Z 2 PC: 12b7e | Character output (Char = '21')
2018-12-17T22:00:01.151236317Z 2 PC: 12b7e | Character output (Char = '21')
2018-12-17T22:00:01.154396379Z 2 PC: 12b7e | Character output (Char = '0d')
2018-12-17T22:00:01.15754646Z 2 PC: 12b7e | Character output (Char = '0a')
2018-12-17T22:00:01.160882502Z 70 PC: 12b91 | Redirect handle
2018-12-17T22:00:01.168635598Z 62 PC: 12b98 | Close file
2018-12-17T22:00:01.175545671Z 60 PC: 12b49 | Create or truncate file
2018-12-17T22:00:01.187182775Z 69 PC: 12b67 | Duplicate handle
2018-12-17T22:00:01.190063604Z 70 PC: 12b72 | Redirect handle
2018-12-17T22:00:01.19233228Z 2 PC: 12b7e | Character output (Char = '41')
2018-12-17T22:00:01.197453713Z 2 PC: 12b7e | Character output (Char = '4b')
2018-12-17T22:00:01.200630024Z 2 PC: 12b7e | Character output (Char = '49')
2018-12-17T22:00:01.204238149Z 2 PC: 12b7e | Character output (Char = '4d')
2018-12-17T22:00:01.207082372Z 2 PC: 12b7e | Character output (Char = '4f')
2018-12-17T22:00:01.210082899Z 2 PC: 12b7e | Character output (Char = '56')
2018-12-17T22:00:01.212874027Z 2 PC: 12b7e | Character output (Char = '20')
2018-12-17T22:00:01.215659036Z 2 PC: 12b7e | Character output (Char = '2d')
2018-12-17T22:00:01.218940614Z 2 PC: 12b7e | Character output (Char = '20')
2018-12-17T22:00:01.222407595Z 2 PC: 12b7e | Character output (Char = '93')
2018-12-17T22:00:01.225327733Z 2 PC: 12b7e | Character output (Char = '90')
2018-12-17T22:00:01.229521987Z 2 PC: 12b7e | Character output (Char = '8e')
2018-12-17T22:00:01.232968576Z 2 PC: 12b7e | Character output (Char = '84')
2018-12-17T22:00:01.243408465Z 2 PC: 12b7e | Character output (Char = '21')
2018-12-17T22:00:01.247287751Z 2 PC: 12b7e | Character output (Char = '21')
2018-12-17T22:00:01.250047304Z 2 PC: 12b7e | Character output (Char = '21')
2018-12-17T22:00:01.252832984Z 2 PC: 12b7e | Character output (Char = '21')
2018-12-17T22:00:01.256243493Z 2 PC: 12b7e | Character output (Char = '21')
2018-12-17T22:00:01.259146613Z 2 PC: 12b7e | Character output (Char = '21')
2018-12-17T22:00:01.262738533Z 2 PC: 12b7e | Character output (Char = '21')
2018-12-17T22:00:01.267615981Z 2 PC: 12b7e | Character output (Char = '0d')
2018-12-17T22:00:01.271066799Z 2 PC: 12b7e | Character output (Char = '0a')
2018-12-17T22:00:01.274546302Z 70 PC: 12b91 | Redirect handle
2018-12-17T22:00:01.283613974Z 62 PC: 12b98 | Close file
2018-12-17T22:00:01.290402652Z 60 PC: 12b49 | Create or truncate file
2018-12-17T22:00:01.301302518Z 69 PC: 12b67 | Duplicate handle
2018-12-17T22:00:01.304308186Z 70 PC: 12b72 | Redirect handle
2018-12-17T22:00:01.307204302Z 2 PC: 12b7e | Character output (Char = '41')
2018-12-17T22:00:01.314321879Z 2 PC: 12b7e | Character output (Char = '4b')
2018-12-17T22:00:01.317703254Z 2 PC: 12b7e | Character output (Char = '49')
2018-12-17T22:00:01.320981527Z 2 PC: 12b7e | Character output (Char = '4d')
2018-12-17T22:00:01.324015964Z 2 PC: 12b7e | Character output (Char = '4f')
2018-12-17T22:00:01.328087791Z 2 PC: 12b7e | Character output (Char = '56')
2018-12-17T22:00:01.330826607Z 2 PC: 12b7e | Character output (Char = '20')
2018-12-17T22:00:01.333527556Z 2 PC: 12b7e | Character output (Char = '2d')
2018-12-17T22:00:01.338939034Z 2 PC: 12b7e | Character output (Char = '20')
2018-12-17T22:00:01.341795849Z 2 PC: 12b7e | Character output (Char = '94')
2018-12-17T22:00:01.34490777Z 2 PC: 12b7e | Character output (Char = '80')
2018-12-17T22:00:01.347971637Z 2 PC: 12b7e | Character output (Char = '8a')
2018-12-17T22:00:01.351104617Z 2 PC: 12b7e | Character output (Char = '88')
2018-12-17T22:00:01.354961208Z 2 PC: 12b7e | Character output (Char = '90')
2018-12-17T22:00:01.35831805Z 2 PC: 12b7e | Character output (Char = '20')
2018-12-17T22:00:01.361223695Z 2 PC: 12b7e | Character output (Char = '83')
2018-12-17T22:00:01.363915766Z 2 PC: 12b7e | Character output (Char = '8e')
2018-12-17T22:00:01.366886507Z 2 PC: 12b7e | Character output (Char = '84')
2018-12-17T22:00:01.370227608Z 2 PC: 12b7e | Character output (Char = '80')
2018-12-17T22:00:01.373210288Z 2 PC: 12b7e | Character output (Char = '21')
2018-12-17T22:00:01.375868619Z 2 PC: 12b7e | Character output (Char = '0d')
2018-12-17T22:00:01.378706252Z 2 PC: 12b7e | Character output (Char = '0a')
2018-12-17T22:00:01.381934089Z 70 PC: 12b91 | Redirect handle
2018-12-17T22:00:01.389087135Z 62 PC: 12b98 | Close file
2018-12-17T22:00:01.395601231Z 60 PC: 12b49 | Create or truncate file
2018-12-17T22:00:01.407369697Z 69 PC: 12b67 | Duplicate handle
2018-12-17T22:00:01.408826203Z 70 PC: 12b72 | Redirect handle
2018-12-17T22:00:01.410598017Z 2 PC: 12b7e | Character output (Char = '97')
2018-12-17T22:00:01.413520472Z 2 PC: 12b7e | Character output (Char = '92')
2018-12-17T22:00:01.415306601Z 2 PC: 12b7e | Character output (Char = '8e')
2018-12-17T22:00:01.417246788Z 2 PC: 12b7e | Character output (Char = '20')
2018-12-17T22:00:01.419260265Z 2 PC: 12b7e | Character output (Char = '92')
2018-12-17T22:00:01.421329185Z 2 PC: 12b7e | Character output (Char = '9b')
2018-12-17T22:00:01.42366308Z 2 PC: 12b7e | Character output (Char = '20')
2018-12-17T22:00:01.425870576Z 2 PC: 12b7e | Character output (Char = '92')
2018-12-17T22:00:01.427752177Z 2 PC: 12b7e | Character output (Char = '93')
2018-12-17T22:00:01.43065172Z 2 PC: 12b7e | Character output (Char = '92')
2018-12-17T22:00:01.43345871Z 2 PC: 12b7e | Character output (Char = '20')
2018-12-17T22:00:01.436026065Z 2 PC: 12b7e | Character output (Char = '87')
2018-12-17T22:00:01.439539579Z 2 PC: 12b7e | Character output (Char = '80')
2018-12-17T22:00:01.44232125Z 2 PC: 12b7e | Character output (Char = '81')
2018-12-17T22:00:01.444951576Z 2 PC: 12b7e | Character output (Char = '9b')
2018-12-17T22:00:01.448430879Z 2 PC: 12b7e | Character output (Char = '8b')
2018-12-17T22:00:01.451374636Z 2 PC: 12b7e | Character output (Char = '0d')
2018-12-17T22:00:01.454057327Z 2 PC: 12b7e | Character output (Char = '0a')
2018-12-17T22:00:01.457290973Z 70 PC: 12b91 | Redirect handle
2018-12-17T22:00:01.46433057Z 62 PC: 12b98 | Close file
2018-12-17T22:00:01.47525321Z 71 PC: 12c87 | Get current directory
2018-12-17T22:00:01.479308794Z 26 PC: 12f6f | Set disk transfer address
2018-12-17T22:00:01.480505623Z 78 PC: 12f77 | Find first file
2018-12-17T22:00:01.487043918Z 26 PC: 12f6f | Set disk transfer address
2018-12-17T22:00:01.489536493Z 78 PC: 12f77 | Find first file
2018-12-17T22:00:01.496669456Z 26 PC: 12f6f | Set disk transfer address
2018-12-17T22:00:01.497570039Z 78 PC: 12f77 | Find first file
2018-12-17T22:00:01.503996079Z 26 PC: 12f6f | Set disk transfer address
2018-12-17T22:00:01.504931205Z 78 PC: 12f77 | Find first file
2018-12-17T22:00:01.513421595Z 41 PC: 12de0 | Parse filename
2018-12-17T22:00:01.515452278Z 41 PC: 12de8 | Parse filename
2018-12-17T22:00:01.516703051Z 75 PC: 12e04 | Execute program
2018-12-17T22:00:01.540551782Z 98 PC: 177c0 | Get current PSP
2018-12-17T22:00:01.542398606Z 99 PC: 15394 | Get DBCS lead byte table pointer
2018-12-17T22:00:01.543507277Z 68 PC: 153ae | I/O control for devices (Set for = '')
2018-12-17T22:00:01.544710673Z 68 PC: 153b9 | I/O control for devices (Set for = '')
2018-12-17T22:00:01.548504291Z 68 PC: 153c4 | I/O control for devices (Set for = '')
2018-12-17T22:00:01.550164177Z 68 PC: 153cc | I/O control for devices (Set for = '��b���g�t�S3����[r�2��W�<t�<u�6�u����>��>W')
2018-12-17T22:00:01.551922637Z 48 PC: 153d1 | Get DOS version
2018-12-17T22:00:01.554586183Z 99 PC: 17778 | Get DBCS lead byte table pointer
2018-12-17T22:00:01.557172171Z 68 PC: 17d73 | I/O control for devices (Set for = '�')
2018-12-17T22:00:01.559673122Z 68 PC: 1956a | I/O control for devices (Set for = '')
2018-12-17T22:00:01.562709164Z 25 PC: 17c60 | Get default drive
2018-12-17T22:00:01.563659322Z 68 PC: 17c77 | I/O control for devices (Set for = '�')
2018-12-17T22:00:01.564939164Z 68 PC: 17c9b | I/O control for devices (Set for = '')
2018-12-17T22:00:01.567145302Z 96 PC: 17cd4 | Qualify filename
2018-12-17T22:00:01.5697153Z 37 PC: 17cf6 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:00:01.571326023Z 74 PC: 1808e | Reallocate memory
2018-12-17T22:00:01.573722403Z 68 PC: 1956a | I/O control for devices (Set for = '')
2018-12-17T22:00:01.575861661Z 72 PC: 1958e | Allocate memory
2018-12-17T22:00:01.578057533Z 72 PC: 195d1 | Allocate memory
2018-12-17T22:00:01.580767968Z 72 PC: 195ef | Allocate memory
2018-12-17T22:00:01.582486886Z 72 PC: 1960d | Allocate memory
2018-12-17T22:00:01.584173993Z 72 PC: 19622 | Allocate memory
2018-12-17T22:00:01.586650323Z 72 PC: 1963f | Allocate memory
2018-12-17T22:00:01.589321272Z 64 PC: 15506 | Write file or device (Write 49 bytes on handle 1)
2018-12-17T22:00:01.596634223Z 64 PC: 154d6 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:00:01.600130493Z 64 PC: 15506 | Write file or device (Write 43 bytes on handle 1)
2018-12-17T22:00:01.604751824Z 12 PC: 18ad6 | Flush input buffer and input
2018-12-17T22:00:01.606990423Z 10 PC: 18add | Buffered keyboard input