Sample viewer

vx.netlux.org/Virus.DOS.UFO.1468

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:59:19.058334636Z 255 PC: 15185 | UNKNOWN!
2018-12-17T22:59:19.060615773Z 53 PC: 137ea | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:59:19.062008863Z 53 PC: 137ea | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:59:19.063547802Z 53 PC: 137ea | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:59:19.065657093Z 53 PC: 137ea | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:59:19.06684144Z 53 PC: 137ea | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:59:19.068010837Z 53 PC: 137ea | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:59:19.069893275Z 53 PC: 137ea | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:59:19.07105588Z 53 PC: 137ea | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:59:19.072512739Z 53 PC: 137ea | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:59:19.074233063Z 53 PC: 137ea | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:59:19.075356245Z 53 PC: 137ea | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:59:19.076360614Z 53 PC: 137ea | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:59:19.086903172Z 53 PC: 137ea | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:59:19.088050992Z 53 PC: 137ea | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:59:19.089141569Z 53 PC: 137ea | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:59:19.091304509Z 53 PC: 137ea | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:59:19.092626736Z 53 PC: 137ea | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:59:19.101533737Z 53 PC: 137ea | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:59:19.103921026Z 53 PC: 137ea | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:59:19.105385504Z 37 PC: 137ff | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:59:19.106927673Z 37 PC: 13807 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:59:19.109522953Z 37 PC: 1380f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:59:19.11106414Z 37 PC: 13817 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:59:19.112867484Z 68 PC: 14282 | I/O control for devices (Set for = '')
2018-12-17T22:59:19.160079283Z 37 PC: 13211 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:59:19.16348137Z 67 PC: 9f683 | Get or set file attributes
2018-12-17T22:59:19.171582977Z 61 PC: 13fe9 | Open file (Filename = 'date.dat')
2018-12-17T22:59:19.18411309Z 37 PC: 13941 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:59:19.185467266Z 37 PC: 13941 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:59:19.186343799Z 37 PC: 13941 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:59:19.188324539Z 37 PC: 13941 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:59:19.189377297Z 37 PC: 13941 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:59:19.190568064Z 37 PC: 13941 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:59:19.192006608Z 37 PC: 13941 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:59:19.193432014Z 37 PC: 13941 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:59:19.194508514Z 37 PC: 13941 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:59:19.195630333Z 37 PC: 13941 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:59:19.197168077Z 37 PC: 13941 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:59:19.198445895Z 37 PC: 13941 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:59:19.20036902Z 37 PC: 13941 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:59:19.202635588Z 37 PC: 13941 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:59:19.203977566Z 37 PC: 13941 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:59:19.205676798Z 37 PC: 13941 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:59:19.207197538Z 37 PC: 13941 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:59:19.208471717Z 37 PC: 13941 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:59:19.209728456Z 37 PC: 13941 | Set interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:59:19.211971095Z 76 PC: 13980 | Terminate with return code (Return code = '0')