Sample viewer

vx.netlux.org/Virus.DOS.HLLP.Queen.7504.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:54:29.892021968Z 53 PC: 1396a | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:54:29.895188386Z 53 PC: 1396a | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:54:29.897643819Z 53 PC: 1396a | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:54:29.899906328Z 53 PC: 1396a | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:54:29.901889413Z 53 PC: 1396a | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:54:29.904111176Z 53 PC: 1396a | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:54:29.90556664Z 53 PC: 1396a | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:54:29.906907058Z 53 PC: 1396a | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:54:29.90935684Z 53 PC: 1396a | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:54:29.910735039Z 53 PC: 1396a | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:54:29.912236619Z 53 PC: 1396a | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:54:29.915710715Z 53 PC: 1396a | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:54:29.917787676Z 53 PC: 1396a | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:54:29.91967963Z 53 PC: 1396a | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:54:29.92295889Z 53 PC: 1396a | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:54:29.924868096Z 53 PC: 1396a | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:54:29.926402718Z 53 PC: 1396a | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:54:29.928686298Z 53 PC: 1396a | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:54:29.930705731Z 53 PC: 1396a | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:54:29.932267124Z 37 PC: 1397f | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:54:29.933720965Z 37 PC: 13987 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:54:29.935478476Z 37 PC: 1398f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:54:29.937014592Z 37 PC: 13997 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:54:29.939022934Z 68 PC: 14453 | I/O control for devices (Set for = '')
2018-12-17T22:54:30.107007944Z 64 PC: 13d88 | Write file or device (Write 0 bytes on handle 1)
2018-12-17T22:54:30.108836729Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:54:30.110166246Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:54:30.11255335Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:54:30.113966454Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:54:30.115505385Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:54:30.117977789Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:54:30.119622609Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:54:30.121054849Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:54:30.12338193Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:54:30.124762433Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:54:30.126177111Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:54:30.128543004Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:54:30.130161445Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:54:30.13147398Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:54:30.132990068Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:54:30.135002819Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:54:30.136614226Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:54:30.138419336Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:54:30.140404966Z 37 PC: 13ac1 | Set interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:54:30.14163149Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.143711106Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.146755625Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.148904952Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.151096138Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.154066137Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.156074218Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.158016957Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.161119085Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.163300422Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.16555119Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.168397837Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.170693289Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.172899072Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.176271377Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.178471489Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.180761831Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.182928241Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.186046358Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.188095697Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.190389776Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.19321893Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.195435674Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.197692243Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.200442409Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.203248179Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.205685567Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.208661888Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.211210075Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.213756398Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.21758543Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.22015663Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.222412527Z 6 PC: 13b48 | Direct console I/O
2018-12-17T22:54:30.226621914Z 76 PC: 13b00 | Terminate with return code (Return code = '200')