Sample viewer

vx.netlux.org/Virus.DOS.Srp.2306

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:03:38.948418905Z 64 PC: 141ef | Write file or device (Write 56 bytes on handle 1)
2018-12-17T22:03:38.952222371Z 64 PC: 141ef | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:03:38.957974082Z 47 PC: 141ef | Get disk transfer address
2018-12-17T22:03:38.95933006Z 26 PC: 141ef | Set disk transfer address
2018-12-17T22:03:38.968467848Z 78 PC: 141ef | Find first file
2018-12-17T22:03:38.974751646Z 61 PC: 141ef | Open file (Filename = 'TEST.EXE')
2018-12-17T22:03:38.981521267Z 63 PC: 141ef | Read file or device (Read 28 bytes on handle 5)
2018-12-17T22:03:38.984635172Z 66 PC: 141ef | Move file pointer
2018-12-17T22:03:38.987343189Z 63 PC: 141ef | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:03:38.994605186Z 79 PC: 141ef | Find next file
2018-12-17T22:03:38.997629669Z 26 PC: 141ef | Set disk transfer address
2018-12-17T22:03:39.003399845Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:03:39.004485082Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:03:39.00556381Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:03:39.007820169Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:03:39.009937045Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:03:39.011439793Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:03:39.013972442Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:03:39.023689029Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:03:39.03048728Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:03:39.032703746Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:03:39.034100765Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:03:39.035402039Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:03:39.037868813Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:03:39.039211589Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:03:39.040448663Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:03:39.042668663Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:03:39.043845791Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:03:39.044973059Z 53 PC: 13e06 | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:03:39.046372758Z 37 PC: 13e1b | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:03:39.049665884Z 37 PC: 13e23 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:03:39.050818044Z 37 PC: 13e2b | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:03:39.051940103Z 37 PC: 13e33 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:03:39.053789248Z 68 PC: 145ac | I/O control for devices (Set for = '')
2018-12-17T22:03:39.055642692Z 64 PC: 146af | Write file or device (Write 47 bytes on handle 1)
2018-12-17T22:03:39.06045046Z 64 PC: 146af | Write file or device (Write 33 bytes on handle 1)
2018-12-17T22:03:39.067718261Z 64 PC: 146af | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:03:39.084087983Z 64 PC: 146af | Write file or device (Write 35 bytes on handle 1)
2018-12-17T22:03:39.089095487Z 64 PC: 146af | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:03:39.096848462Z 64 PC: 146af | Write file or device (Write 75 bytes on handle 1)
2018-12-17T22:03:39.103307864Z 64 PC: 146af | Write file or device (Write 75 bytes on handle 1)
2018-12-17T22:03:39.10949873Z 64 PC: 146af | Write file or device (Write 75 bytes on handle 1)
2018-12-17T22:03:39.116648934Z 64 PC: 146af | Write file or device (Write 75 bytes on handle 1)
2018-12-17T22:03:39.122820447Z 64 PC: 146af | Write file or device (Write 75 bytes on handle 1)
2018-12-17T22:03:39.130269815Z 64 PC: 146af | Write file or device (Write 75 bytes on handle 1)
2018-12-17T22:03:39.137443852Z 64 PC: 146af | Write file or device (Write 75 bytes on handle 1)
2018-12-17T22:03:39.144115644Z 64 PC: 146af | Write file or device (Write 75 bytes on handle 1)
2018-12-17T22:03:39.150262604Z 64 PC: 146af | Write file or device (Write 75 bytes on handle 1)
2018-12-17T22:03:39.158012995Z 64 PC: 146af | Write file or device (Write 75 bytes on handle 1)
2018-12-17T22:03:39.165001358Z 64 PC: 146af | Write file or device (Write 0 bytes on handle 1)
2018-12-17T22:03:39.166680996Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:03:39.168876466Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:03:39.170003966Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:03:39.171475933Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:03:39.172578973Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:03:39.175107958Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:03:39.176237397Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:03:39.177369075Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:03:39.179600136Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:03:39.180784436Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:03:39.181951316Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:03:39.18408161Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:03:39.189091953Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:03:39.190222675Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:03:39.192969716Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:03:39.194565775Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:03:39.196176015Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:03:39.198852608Z 37 PC: 13f15 | Set interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:03:39.200425659Z 76 PC: 13f54 | Terminate with return code (Return code = '0')