Sample viewer

vx.netlux.org/Trojan.DOS.6787

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:08:22.937315663Z 48 PC: 12b4b | Get DOS version
2018-12-17T23:08:22.93987875Z 53 PC: 12c83 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:08:22.941963869Z 53 PC: 12c90 | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T23:08:22.94399138Z 53 PC: 12c9d | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T23:08:22.945992191Z 53 PC: 12caa | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T23:08:22.949516415Z 37 PC: 12cbe | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:08:22.951667218Z 74 PC: 12bf3 | Reallocate memory
2018-12-17T23:08:22.954511654Z 68 PC: 133ec | I/O control for devices (Set for = '�@')
2018-12-17T23:08:22.957982899Z 68 PC: 133ec | I/O control for devices (Set for = '')
2018-12-17T23:08:22.960168546Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.353048144Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.355914351Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.358319521Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.360391846Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.364064449Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.366312565Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.368301583Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.371312302Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.378411216Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.381704907Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.384477267Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.388696077Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.391211716Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.393626053Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.396850274Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.399138044Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.401403602Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.405200518Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.408210296Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.410827455Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.41396381Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.416716865Z 28 PC: 13376 | Get allocation info for specified drive
2018-12-17T23:08:23.419816852Z 37 PC: 12cca | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:08:23.422269361Z 37 PC: 12cd5 | Set interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T23:08:23.424253801Z 37 PC: 12ce0 | Set interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T23:08:23.425858618Z 37 PC: 12ceb | Set interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T23:08:23.427438537Z 76 PC: 12c74 | Terminate with return code (Return code = '255')