Sample viewer

vx.netlux.org/Virus.DOS.HLLP.PasInf.c

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:09:51.542479536Z 53 PC: 134ca | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:09:51.550976959Z 53 PC: 134ca | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:09:51.553058336Z 53 PC: 134ca | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T23:09:51.554255405Z 53 PC: 134ca | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:09:51.555945514Z 53 PC: 134ca | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:09:51.556989508Z 53 PC: 134ca | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:09:51.558048147Z 53 PC: 134ca | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T23:09:51.559693084Z 53 PC: 134ca | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T23:09:51.560994569Z 53 PC: 134ca | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T23:09:51.562000733Z 53 PC: 134ca | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T23:09:51.564073098Z 53 PC: 134ca | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T23:09:51.565253736Z 53 PC: 134ca | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T23:09:51.566280083Z 53 PC: 134ca | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T23:09:51.568078234Z 53 PC: 134ca | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T23:09:51.570132234Z 53 PC: 134ca | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T23:09:51.571146794Z 53 PC: 134ca | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T23:09:51.572467366Z 53 PC: 134ca | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T23:09:51.573835515Z 53 PC: 134ca | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T23:09:51.574918165Z 53 PC: 134ca | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T23:09:51.575929622Z 37 PC: 134df | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:09:51.577908275Z 37 PC: 134e7 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:09:51.579435196Z 37 PC: 134ef | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:09:51.580971881Z 37 PC: 134f7 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T23:09:51.583152054Z 68 PC: 140fc | I/O control for devices
2018-12-17T23:09:51.58456457Z 25 PC: 13b54 | Get default drive
2018-12-17T23:09:51.58550081Z 71 PC: 13b67 | Get current directory
2018-12-17T23:09:51.589166175Z 59 PC: 13c1b | Change current directory
2018-12-17T23:09:51.593328634Z 14 PC: 13bad | Set default drive (Drive = 'A')
2018-12-17T23:09:51.594620079Z 25 PC: 13bb1 | Get default drive
2018-12-17T23:09:51.596875889Z 59 PC: 13c1b | Change current directory
2018-12-17T23:09:51.601579029Z 64 PC: 138e8 | Write file or device (Write 0 bytes on handle 1)
2018-12-17T23:09:51.603692378Z 37 PC: 13621 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:09:51.606231685Z 37 PC: 13621 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:09:51.607723258Z 37 PC: 13621 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T23:09:51.609254559Z 37 PC: 13621 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:09:51.618153101Z 37 PC: 13621 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:09:51.619543354Z 37 PC: 13621 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:09:51.620767031Z 37 PC: 13621 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T23:09:51.622432081Z 37 PC: 13621 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T23:09:51.623677875Z 37 PC: 13621 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T23:09:51.625175825Z 37 PC: 13621 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T23:09:51.627079468Z 37 PC: 13621 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T23:09:51.62812345Z 37 PC: 13621 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T23:09:51.629169219Z 37 PC: 13621 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T23:09:51.630784203Z 37 PC: 13621 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T23:09:51.631606711Z 37 PC: 13621 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T23:09:51.632385226Z 37 PC: 13621 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T23:09:51.634212256Z 37 PC: 13621 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T23:09:51.636360959Z 37 PC: 13621 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T23:09:51.638334327Z 37 PC: 13621 | Set interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T23:09:51.640567058Z 76 PC: 13660 | Terminate with return code (Return code = '0')