Sample viewer

vx.netlux.org/Virus.DOS.HLLO.Koles

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:08:37.15545975Z 53 PC: 13dba | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:08:37.160437873Z 53 PC: 13dba | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:08:37.165782681Z 53 PC: 13dba | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T23:08:37.166972179Z 53 PC: 13dba | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:08:37.168539258Z 53 PC: 13dba | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:08:37.170086996Z 53 PC: 13dba | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:08:37.171324132Z 53 PC: 13dba | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T23:08:37.172763797Z 53 PC: 13dba | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T23:08:37.183523309Z 53 PC: 13dba | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T23:08:37.185391958Z 53 PC: 13dba | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T23:08:37.187230109Z 53 PC: 13dba | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T23:08:37.189937977Z 53 PC: 13dba | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T23:08:37.191019754Z 53 PC: 13dba | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T23:08:37.192165146Z 53 PC: 13dba | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T23:08:37.193866253Z 53 PC: 13dba | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T23:08:37.194992744Z 53 PC: 13dba | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T23:08:37.196082255Z 53 PC: 13dba | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T23:08:37.197789664Z 53 PC: 13dba | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T23:08:37.198949625Z 53 PC: 13dba | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T23:08:37.200694261Z 37 PC: 13dcf | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:08:37.21113389Z 37 PC: 13dd7 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:08:37.212221497Z 37 PC: 13ddf | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:08:37.213291227Z 37 PC: 13de7 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T23:08:37.21621836Z 68 PC: 14b62 | I/O control for devices (Set for = '|WR�д�!Z_ô�!A����2Ҿ>�����A�:�� �����>%��G�!��s����N3��')
2018-12-17T23:08:37.217824891Z 53 PC: 136d5 | Get interrupt vector (Interrupt = '51' AKA 'Get or set Ctrl-Break')
2018-12-17T23:08:37.40784049Z 64 PC: 144df | Write file or device (Write 0 bytes on handle 1)
2018-12-17T23:08:37.411380888Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:08:37.413059383Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:08:37.414222571Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T23:08:37.415834913Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:08:37.417176213Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:08:37.418596202Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:08:37.420334133Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T23:08:37.422363135Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T23:08:37.423805988Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T23:08:37.425427692Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T23:08:37.427819392Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T23:08:37.429231235Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T23:08:37.430631125Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T23:08:37.433077231Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T23:08:37.434314039Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T23:08:37.435401633Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T23:08:37.437433938Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T23:08:37.438524398Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T23:08:37.439601948Z 37 PC: 13f11 | Set interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T23:08:37.44152539Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.443421677Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.445362605Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.448137446Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.450188661Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.452614905Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.455264273Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.457141955Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.459321716Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.462094132Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.464140041Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.466155298Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.469288595Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.471630237Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.474068581Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.477165033Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.4791128Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.480976335Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.484643271Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.486690067Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.488604273Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.491542562Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.494498267Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.497038988Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.499583632Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.501700334Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.50444421Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.507226163Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.509411109Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.511497242Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.513950628Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.517275731Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.519544528Z 6 PC: 13f98 | Direct console I/O
2018-12-17T23:08:37.523366488Z 76 PC: 13f50 | Terminate with return code (Return code = '200')