Sample viewer

vx.netlux.org/Virus.DOS.HLLP.Krile.5831

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:58:46.846967681Z 74 PC: 13c0a | Reallocate memory
2018-12-17T22:58:46.917000107Z 74 PC: 18e59 | Reallocate memory
2018-12-17T22:58:46.919852704Z 98 PC: 18156 | Get current PSP
2018-12-17T22:58:46.921605489Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:46.941305733Z 65 PC: 138df | Delete file (Filename = 'anti-vir.dat')
2018-12-17T22:58:46.94796405Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:46.954170193Z 65 PC: 138df | Delete file (Filename = 'chklist.ms')
2018-12-17T22:58:46.960433919Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:46.967245444Z 65 PC: 138df | Delete file (Filename = 'chklist.cps')
2018-12-17T22:58:46.97332404Z 26 PC: 12bff | Set disk transfer address
2018-12-17T22:58:46.97466805Z 78 PC: 12c11 | Find first file
2018-12-17T22:58:46.9828304Z 67 PC: 130c9 | Get or set file attributes
2018-12-17T22:58:46.988648125Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.005323788Z 61 PC: 13217 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:58:47.012568927Z 63 PC: 132b9 | Read file or device (Read 5831 bytes on handle 5)
2018-12-17T22:58:47.019801069Z 62 PC: 132ff | Close file
2018-12-17T22:58:47.021596592Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.032274054Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.037940843Z 65 PC: 138df | Delete file (Filename = 'anti-vir.dat')
2018-12-17T22:58:47.043645832Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.058013532Z 65 PC: 138df | Delete file (Filename = 'chklist.ms')
2018-12-17T22:58:47.063732788Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.069847603Z 65 PC: 138df | Delete file (Filename = 'chklist.cps')
2018-12-17T22:58:47.081830609Z 47 PC: 17f35 | Get disk transfer address
2018-12-17T22:58:47.083286878Z 26 PC: 17f40 | Set disk transfer address
2018-12-17T22:58:47.084713533Z 78 PC: 17f4c | Find first file
2018-12-17T22:58:47.092114058Z 26 PC: 17f5e | Set disk transfer address
2018-12-17T22:58:47.095508324Z 26 PC: 1372d | Set disk transfer address
2018-12-17T22:58:47.096587822Z 78 PC: 1373f | Find first file
2018-12-17T22:58:47.115099039Z 67 PC: 130c9 | Get or set file attributes
2018-12-17T22:58:47.126608005Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.136910645Z 61 PC: 13217 | Open file (Filename = 'TEST.EXE')
2018-12-17T22:58:47.144116162Z 66 PC: 1827b | Move file pointer
2018-12-17T22:58:47.146283967Z 63 PC: 132b9 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:58:47.152478859Z 62 PC: 132ff | Close file
2018-12-17T22:58:47.154591007Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.165201721Z 47 PC: 17f72 | Get disk transfer address
2018-12-17T22:58:47.166251717Z 26 PC: 17f7d | Set disk transfer address
2018-12-17T22:58:47.167324788Z 79 PC: 17f81 | Find next file
2018-12-17T22:58:47.170110059Z 26 PC: 17f91 | Set disk transfer address
2018-12-17T22:58:47.172128631Z 47 PC: 17f35 | Get disk transfer address
2018-12-17T22:58:47.173552319Z 26 PC: 17f40 | Set disk transfer address
2018-12-17T22:58:47.174874531Z 78 PC: 17f4c | Find first file
2018-12-17T22:58:47.180953233Z 26 PC: 17f5e | Set disk transfer address
2018-12-17T22:58:47.185017161Z 26 PC: 1372d | Set disk transfer address
2018-12-17T22:58:47.186609453Z 78 PC: 1373f | Find first file
2018-12-17T22:58:47.19813457Z 47 PC: 17f72 | Get disk transfer address
2018-12-17T22:58:47.200682223Z 26 PC: 17f7d | Set disk transfer address
2018-12-17T22:58:47.202147368Z 79 PC: 17f81 | Find next file
2018-12-17T22:58:47.205014295Z 26 PC: 17f91 | Set disk transfer address
2018-12-17T22:58:47.209654666Z 26 PC: 1372d | Set disk transfer address
2018-12-17T22:58:47.21065109Z 78 PC: 1373f | Find first file
2018-12-17T22:58:47.216679234Z 47 PC: 17f72 | Get disk transfer address
2018-12-17T22:58:47.218436742Z 26 PC: 17f7d | Set disk transfer address
2018-12-17T22:58:47.219688843Z 79 PC: 17f81 | Find next file
2018-12-17T22:58:47.222347603Z 26 PC: 17f91 | Set disk transfer address
2018-12-17T22:58:47.227452624Z 26 PC: 1372d | Set disk transfer address
2018-12-17T22:58:47.228712921Z 78 PC: 1373f | Find first file
2018-12-17T22:58:47.23509837Z 47 PC: 17f72 | Get disk transfer address
2018-12-17T22:58:47.237605138Z 26 PC: 17f7d | Set disk transfer address
2018-12-17T22:58:47.238831157Z 79 PC: 17f81 | Find next file
2018-12-17T22:58:47.241649281Z 26 PC: 17f91 | Set disk transfer address
2018-12-17T22:58:47.246014062Z 26 PC: 1372d | Set disk transfer address
2018-12-17T22:58:47.247335175Z 78 PC: 1373f | Find first file
2018-12-17T22:58:47.253165602Z 47 PC: 17f72 | Get disk transfer address
2018-12-17T22:58:47.255166847Z 26 PC: 17f7d | Set disk transfer address
2018-12-17T22:58:47.256312714Z 79 PC: 17f81 | Find next file
2018-12-17T22:58:47.258735331Z 26 PC: 17f91 | Set disk transfer address
2018-12-17T22:58:47.262735926Z 26 PC: 1372d | Set disk transfer address
2018-12-17T22:58:47.264025603Z 78 PC: 1373f | Find first file
2018-12-17T22:58:47.270515421Z 47 PC: 17f72 | Get disk transfer address
2018-12-17T22:58:47.271763432Z 26 PC: 17f7d | Set disk transfer address
2018-12-17T22:58:47.273366387Z 79 PC: 17f81 | Find next file
2018-12-17T22:58:47.275738184Z 26 PC: 17f91 | Set disk transfer address
2018-12-17T22:58:47.279135965Z 26 PC: 1372d | Set disk transfer address
2018-12-17T22:58:47.280950838Z 78 PC: 1373f | Find first file
2018-12-17T22:58:47.286837745Z 47 PC: 17f72 | Get disk transfer address
2018-12-17T22:58:47.28809703Z 26 PC: 17f7d | Set disk transfer address
2018-12-17T22:58:47.289808257Z 79 PC: 17f81 | Find next file
2018-12-17T22:58:47.292624951Z 26 PC: 17f91 | Set disk transfer address
2018-12-17T22:58:47.296339608Z 26 PC: 1372d | Set disk transfer address
2018-12-17T22:58:47.298443506Z 78 PC: 1373f | Find first file
2018-12-17T22:58:47.30422028Z 47 PC: 17f72 | Get disk transfer address
2018-12-17T22:58:47.30509914Z 26 PC: 17f7d | Set disk transfer address
2018-12-17T22:58:47.306713329Z 79 PC: 17f81 | Find next file
2018-12-17T22:58:47.30899351Z 26 PC: 17f91 | Set disk transfer address
2018-12-17T22:58:47.310435699Z 98 PC: 1818d | Get current PSP
2018-12-17T22:58:47.312945657Z 98 PC: 1818d | Get current PSP
2018-12-17T22:58:47.314699621Z 98 PC: 1818d | Get current PSP
2018-12-17T22:58:47.316559486Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.327486985Z 65 PC: 138df | Delete file (Filename = 'C:\DOS\anti-vir.dat')
2018-12-17T22:58:47.334003644Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.34040887Z 65 PC: 138df | Delete file (Filename = 'C:\DOS\chklist.ms')
2018-12-17T22:58:47.348037363Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.354220922Z 65 PC: 138df | Delete file (Filename = 'C:\DOS\chklist.cps')
2018-12-17T22:58:47.360791502Z 47 PC: 17f35 | Get disk transfer address
2018-12-17T22:58:47.362904909Z 26 PC: 17f40 | Set disk transfer address
2018-12-17T22:58:47.363983118Z 78 PC: 17f4c | Find first file
2018-12-17T22:58:47.370477653Z 26 PC: 17f5e | Set disk transfer address
2018-12-17T22:58:47.373575757Z 26 PC: 1372d | Set disk transfer address
2018-12-17T22:58:47.374570288Z 78 PC: 1373f | Find first file
2018-12-17T22:58:47.382316789Z 67 PC: 130c9 | Get or set file attributes
2018-12-17T22:58:47.388996081Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.723576315Z 61 PC: 13217 | Open file (Filename = 'C:\DOS\ATTRIB.EXE')
2018-12-17T22:58:47.731697759Z 66 PC: 1827b | Move file pointer
2018-12-17T22:58:47.734333841Z 63 PC: 132b9 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:58:47.740077557Z 62 PC: 132ff | Close file
2018-12-17T22:58:47.742180534Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.752760213Z 86 PC: 13c29 | Rename file
2018-12-17T22:58:47.763533372Z 26 PC: 12fb1 | Set disk transfer address
2018-12-17T22:58:47.764610358Z 78 PC: 12fc3 | Find first file
2018-12-17T22:58:47.771793741Z 67 PC: 130c9 | Get or set file attributes
2018-12-17T22:58:47.777826439Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.78720514Z 61 PC: 13217 | Open file (Filename = 'C:\DOS\ATTRIB.���')
2018-12-17T22:58:47.795822606Z 87 PC: 13184 | Get or set file date and time
2018-12-17T22:58:47.797438203Z 63 PC: 132b9 | Read file or device (Read 5831 bytes on handle 5)
2018-12-17T22:58:47.804408347Z 66 PC: 1827b | Move file pointer
2018-12-17T22:58:47.806736824Z 64 PC: 13263 | Write file or device (Write 5831 bytes on handle 5)
2018-12-17T22:58:47.81428317Z 66 PC: 1827b | Move file pointer
2018-12-17T22:58:47.818766241Z 64 PC: 13263 | Write file or device (Write 5831 bytes on handle 5)
2018-12-17T22:58:47.830856345Z 87 PC: 131e6 | Get or set file date and time
2018-12-17T22:58:47.832467847Z 62 PC: 132ff | Close file
2018-12-17T22:58:47.839953168Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.850400966Z 86 PC: 13c42 | Rename file
2018-12-17T22:58:47.862469988Z 47 PC: 17f72 | Get disk transfer address
2018-12-17T22:58:47.863786314Z 26 PC: 17f7d | Set disk transfer address
2018-12-17T22:58:47.865948447Z 79 PC: 17f81 | Find next file
2018-12-17T22:58:47.869091708Z 26 PC: 17f91 | Set disk transfer address
2018-12-17T22:58:47.871038342Z 47 PC: 17f35 | Get disk transfer address
2018-12-17T22:58:47.873167846Z 26 PC: 17f40 | Set disk transfer address
2018-12-17T22:58:47.874466853Z 78 PC: 17f4c | Find first file
2018-12-17T22:58:47.88067765Z 26 PC: 17f5e | Set disk transfer address
2018-12-17T22:58:47.884204669Z 26 PC: 1372d | Set disk transfer address
2018-12-17T22:58:47.885344992Z 78 PC: 1373f | Find first file
2018-12-17T22:58:47.891668586Z 47 PC: 17f72 | Get disk transfer address
2018-12-17T22:58:47.893910515Z 26 PC: 17f7d | Set disk transfer address
2018-12-17T22:58:47.895066384Z 79 PC: 17f81 | Find next file
2018-12-17T22:58:47.898022315Z 26 PC: 17f91 | Set disk transfer address
2018-12-17T22:58:47.901577356Z 26 PC: 1372d | Set disk transfer address
2018-12-17T22:58:47.902836663Z 78 PC: 1373f | Find first file
2018-12-17T22:58:47.909358061Z 67 PC: 130c9 | Get or set file attributes
2018-12-17T22:58:47.915457684Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.925454041Z 61 PC: 13217 | Open file (Filename = 'C:\DOS\FORMAT.COM')
2018-12-17T22:58:47.933085977Z 66 PC: 1827b | Move file pointer
2018-12-17T22:58:47.935212088Z 63 PC: 132b9 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:58:47.941219901Z 62 PC: 132ff | Close file
2018-12-17T22:58:47.942946055Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.952824428Z 86 PC: 13c29 | Rename file
2018-12-17T22:58:47.964144811Z 26 PC: 12fb1 | Set disk transfer address
2018-12-17T22:58:47.965243264Z 78 PC: 12fc3 | Find first file
2018-12-17T22:58:47.971358773Z 67 PC: 130c9 | Get or set file attributes
2018-12-17T22:58:47.977795381Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:47.988134302Z 61 PC: 13217 | Open file (Filename = 'C:\DOS\FORMAT.���')
2018-12-17T22:58:47.995958414Z 87 PC: 13184 | Get or set file date and time
2018-12-17T22:58:47.997728539Z 63 PC: 132b9 | Read file or device (Read 5831 bytes on handle 5)
2018-12-17T22:58:48.004821154Z 66 PC: 1827b | Move file pointer
2018-12-17T22:58:48.00653093Z 64 PC: 13263 | Write file or device (Write 5831 bytes on handle 5)
2018-12-17T22:58:48.015311132Z 66 PC: 1827b | Move file pointer
2018-12-17T22:58:48.019997733Z 64 PC: 13263 | Write file or device (Write 5831 bytes on handle 5)
2018-12-17T22:58:48.033772384Z 87 PC: 131e6 | Get or set file date and time
2018-12-17T22:58:48.035770841Z 62 PC: 132ff | Close file
2018-12-17T22:58:48.043350794Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:48.053098028Z 86 PC: 13c42 | Rename file
2018-12-17T22:58:48.065565177Z 47 PC: 17f72 | Get disk transfer address
2018-12-17T22:58:48.067078651Z 26 PC: 17f7d | Set disk transfer address
2018-12-17T22:58:48.068597258Z 79 PC: 17f81 | Find next file
2018-12-17T22:58:48.072395604Z 26 PC: 17f91 | Set disk transfer address
2018-12-17T22:58:48.074363063Z 86 PC: 13c29 | Rename file
2018-12-17T22:58:48.086827503Z 26 PC: 12d26 | Set disk transfer address
2018-12-17T22:58:48.093091392Z 78 PC: 12d38 | Find first file
2018-12-17T22:58:48.099836562Z 67 PC: 130c9 | Get or set file attributes
2018-12-17T22:58:48.106472533Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:48.119020281Z 61 PC: 13217 | Open file (Filename = 'A:\TEST.���')
2018-12-17T22:58:48.126853823Z 87 PC: 13184 | Get or set file date and time
2018-12-17T22:58:48.12883098Z 66 PC: 1827b | Move file pointer
2018-12-17T22:58:48.131980612Z 63 PC: 132b9 | Read file or device (Read 5831 bytes on handle 5)
2018-12-17T22:58:48.13982915Z 66 PC: 1827b | Move file pointer
2018-12-17T22:58:48.144390986Z 64 PC: 13263 | Write file or device (Write 5831 bytes on handle 5)
2018-12-17T22:58:48.152956924Z 87 PC: 131e6 | Get or set file date and time
2018-12-17T22:58:48.154830834Z 62 PC: 132ff | Close file
2018-12-17T22:58:48.162385829Z 61 PC: 13217 | Open file (Filename = 'A:\TEST.���')
2018-12-17T22:58:48.170220775Z 66 PC: 1827b | Move file pointer
2018-12-17T22:58:48.172319646Z 64 PC: 13263 | Write file or device (Write 0 bytes on handle 5)
2018-12-17T22:58:48.180020094Z 87 PC: 131e6 | Get or set file date and time
2018-12-17T22:58:48.182303944Z 62 PC: 132ff | Close file
2018-12-17T22:58:48.18928495Z 67 PC: 13100 | Get or set file attributes
2018-12-17T22:58:48.199871273Z 86 PC: 13c42 | Rename file
2018-12-17T22:58:48.211491581Z 98 PC: 18458 | Get current PSP
2018-12-17T22:58:48.212406702Z 74 PC: 18479 | Reallocate memory
2018-12-17T22:58:48.21416373Z 98 PC: 1828a | Get current PSP
2018-12-17T22:58:48.216353798Z 75 PC: 182fa | Execute program
2018-12-17T22:58:48.236653558Z 80 PC: 21b39 | Set current PSP
2018-12-17T22:58:48.237665652Z 48 PC: 21b3e | Get DOS version
2018-12-17T22:58:48.240094499Z 99 PC: 28320 | Get DBCS lead byte table pointer
2018-12-17T22:58:48.242747506Z 101 PC: 21bc4 | Get extended country info
2018-12-17T22:58:48.244316442Z 99 PC: 21bca | Get DBCS lead byte table pointer
2018-12-17T22:58:48.246323037Z 74 PC: 21c2c | Reallocate memory
2018-12-17T22:58:48.247602598Z 25 PC: 21c63 | Get default drive
2018-12-17T22:58:48.248920587Z 37 PC: 21723 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:58:48.250991972Z 37 PC: 2172a | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:58:48.252188645Z 37 PC: 21731 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:58:48.25667635Z 74 PC: 208cc | Reallocate memory
2018-12-17T22:58:48.258929419Z 72 PC: 2090d | Allocate memory
2018-12-17T22:58:48.260595126Z 72 PC: 20945 | Allocate memory
2018-12-17T22:58:48.262562225Z 72 PC: 2094d | Allocate memory