Sample viewer

vx.netlux.org/Virus.DOS.PCBB.2277

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:00:59.927364178Z 62 PC: 13174 | Close file
2018-12-17T23:00:59.929609818Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.931606239Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.933204622Z 9 PC: 12e26 | Display string (String= 'Hello - This is a 1000 COM test file, 1993 ')
2018-12-17T23:00:59.940020821Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.950377132Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.951945589Z 77 PC: 11fe0 | Get program return code
2018-12-17T23:00:59.953630034Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.955952859Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.957348612Z 72 PC: 12174 | Allocate memory
2018-12-17T23:00:59.95996064Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.964908357Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.966486783Z 72 PC: 1218d | Allocate memory
2018-12-17T23:00:59.969116976Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.970921757Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.976880464Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T23:00:59.980409385Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.985157828Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.992270163Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:00:59.994243942Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.996187364Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:00:59.999158577Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.000686948Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.002085356Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.01084133Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.012129771Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.013873287Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.015653152Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.017984232Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.020406133Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.023081931Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.025420275Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.027513138Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.029140305Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.032349165Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.033995619Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.036051442Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.038020472Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.039729944Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.041102033Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.043941037Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.045509835Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.047515173Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.049807871Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.051633352Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.052995351Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.055702017Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.057550831Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.059691123Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.061886889Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.064004629Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.065357271Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.067180116Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.069181556Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.07115229Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.072568661Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.075583707Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.076986493Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.07895948Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.081025432Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.083194077Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.084871048Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.087498325Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.08901203Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.090822021Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.093345713Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.094926323Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.096102744Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.098693913Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.100273852Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.104286181Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.105935671Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.108721145Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.110047698Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.111808026Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.113887373Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.115662278Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.116909372Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.120119634Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.121695605Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.12387442Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.126155566Z 62 PC: 122ab | Close file
2018-12-17T23:01:00.129113094Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.130397567Z 61 PC: 9e5e6 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T23:01:00.137645477Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.139496705Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.141071745Z 87 PC: 9e760 | Get or set file date and time
2018-12-17T23:01:00.14301691Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.144681939Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.146079174Z 53 PC: 9e771 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T23:01:00.148666997Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.150677365Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.152538412Z 37 PC: 9e78a | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T23:01:00.154617038Z 87 PC: 9e5e6 | Get or set file date and time
2018-12-17T23:01:00.157797694Z 62 PC: 9e5e6 | Close file
2018-12-17T23:01:00.590960309Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T23:01:00.592830553Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.595120847Z 61 PC: 12354 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T23:01:00.603116211Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.604900303Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.608114853Z 66 PC: 12372 | Move file pointer
2018-12-17T23:01:00.610743593Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.613063373Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.615784285Z 63 PC: 12383 | Read file or device (Read 44693 bytes on handle 5)
2018-12-17T23:01:00.640332544Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.641773531Z 69 PC: 9e5e6 | Duplicate handle
2018-12-17T23:01:00.643783178Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.646525481Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.648167597Z 87 PC: 9e760 | Get or set file date and time
2018-12-17T23:01:00.650203633Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.652776497Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.654361365Z 53 PC: 9e771 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T23:01:00.656424301Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.65886641Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.660841883Z 37 PC: 9e78a | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T23:01:00.662879702Z 87 PC: 9e5e6 | Get or set file date and time
2018-12-17T23:01:00.666241519Z 62 PC: 9e5e6 | Close file
2018-12-17T23:01:00.674897805Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T23:01:00.676472665Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.678356384Z 62 PC: 1238a | Close file
2018-12-17T23:01:00.683818207Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.68544771Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.687061422Z 99 PC: 98db7 | Get DBCS lead byte table pointer
2018-12-17T23:01:00.690027315Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.691638993Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.693193705Z 56 PC: 935d9 | Get or set country info
2018-12-17T23:01:00.696663946Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.698289541Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.699854872Z 64 PC: 99028 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T23:01:00.705795835Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.708934944Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.710528499Z 25 PC: 93642 | Get default drive
2018-12-17T23:01:00.713548473Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.715420271Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.716710085Z 71 PC: 958bd | Get current directory
2018-12-17T23:01:00.722731469Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.726096753Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.727459774Z 64 PC: 99028 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T23:01:00.732171558Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.733972993Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.735425382Z 2 PC: 95892 | Character output (Char = '3e')
2018-12-17T23:01:00.738933765Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.740424156Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.741989838Z 93 PC: 93700 | File sharing functions
2018-12-17T23:01:00.744405337Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.746864057Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.74839869Z 93 PC: 93707 | File sharing functions
2018-12-17T23:01:00.750292519Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.752700454Z 37 PC: 9e5e6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:00.753899297Z 10 PC: 93719 | Buffered keyboard input