Sample viewer

vx.netlux.org/Virus.DOS.HLLW.Arch.3686

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:01:25.136017167Z 53 PC: 1324a | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:01:25.139183146Z 53 PC: 1324a | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:01:25.140921322Z 53 PC: 1324a | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T23:01:25.142756971Z 53 PC: 1324a | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:01:25.144666529Z 53 PC: 1324a | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:01:25.146927578Z 53 PC: 1324a | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:25.148338379Z 53 PC: 1324a | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T23:01:25.149724814Z 53 PC: 1324a | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T23:01:25.15230404Z 53 PC: 1324a | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T23:01:25.153812866Z 53 PC: 1324a | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T23:01:25.155576109Z 53 PC: 1324a | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T23:01:25.158012146Z 53 PC: 1324a | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T23:01:25.159628623Z 53 PC: 1324a | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T23:01:25.161304062Z 53 PC: 1324a | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T23:01:25.164551373Z 53 PC: 1324a | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T23:01:25.166386171Z 53 PC: 1324a | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T23:01:25.168065687Z 53 PC: 1324a | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T23:01:25.170654151Z 53 PC: 1324a | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T23:01:25.172263355Z 53 PC: 1324a | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T23:01:25.175212136Z 37 PC: 1325f | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:01:25.177674483Z 37 PC: 13267 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:01:25.179475176Z 37 PC: 1326f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:25.181076515Z 37 PC: 13277 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T23:01:25.184188773Z 68 PC: 13b79 | I/O control for devices (Set for = '���/��.����')
2018-12-17T23:01:25.187618768Z 26 PC: 12ff5 | Set disk transfer address
2018-12-17T23:01:25.189534488Z 78 PC: 13001 | Find first file
2018-12-17T23:01:25.197785301Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.199621241Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.203134322Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.204424867Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.208728724Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.210289597Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.213552218Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.215505358Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.218738374Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.219888455Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.224280026Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.225426Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.228660287Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.230551971Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.233843907Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.235035877Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.238530714Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.240021455Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.243711138Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.245165551Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.248673552Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.249816079Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.252995754Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.254932843Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.258136824Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.259261177Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.263602705Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.264872151Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.268577453Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.286073558Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.288787348Z 26 PC: 12ff5 | Set disk transfer address
2018-12-17T23:01:25.290238554Z 78 PC: 13001 | Find first file
2018-12-17T23:01:25.297790304Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.299329266Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.302499082Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.309514535Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.312883405Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.314298815Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.318084939Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.319458901Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.322474718Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.323792474Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.327508827Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.328791387Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.331782307Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.333672789Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.33658417Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.337887639Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.342494044Z 26 PC: 13019 | Set disk transfer address
2018-12-17T23:01:25.343809266Z 79 PC: 1301e | Find next file
2018-12-17T23:01:25.346658389Z 64 PC: 13668 | Write file or device (Write 0 bytes on handle 1)
2018-12-17T23:01:25.35064992Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:01:25.352462807Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:01:25.353778168Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T23:01:25.355985456Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:01:25.357747076Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:01:25.359469412Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:01:25.362435145Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T23:01:25.364138285Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T23:01:25.365893092Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T23:01:25.368046489Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T23:01:25.369663377Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T23:01:25.37103805Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T23:01:25.373495738Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T23:01:25.375248742Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T23:01:25.376798454Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T23:01:25.378344248Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T23:01:25.380703672Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T23:01:25.382211315Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T23:01:25.383678832Z 37 PC: 133a1 | Set interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T23:01:25.386132773Z 76 PC: 133e0 | Terminate with return code (Return code = '0')