Sample viewer

vx.netlux.org/Virus.DOS.HLLP.Krile.5762

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:09:55.274951031Z 74 PC: 13bca | Reallocate memory
2018-12-17T23:09:55.34158532Z 74 PC: 18dc9 | Reallocate memory
2018-12-17T23:09:55.344091542Z 98 PC: 182b6 | Get current PSP
2018-12-17T23:09:55.345772838Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.351854503Z 65 PC: 13abe | Delete file (Filename = 'anti-vir.dat')
2018-12-17T23:09:55.357691944Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.363236801Z 65 PC: 13abe | Delete file (Filename = 'chklist.ms')
2018-12-17T23:09:55.369793465Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.375375034Z 65 PC: 13abe | Delete file (Filename = 'chklist.cps')
2018-12-17T23:09:55.381382142Z 26 PC: 12c30 | Set disk transfer address
2018-12-17T23:09:55.382779316Z 78 PC: 12c42 | Find first file
2018-12-17T23:09:55.388943708Z 67 PC: 132a8 | Get or set file attributes
2018-12-17T23:09:55.397395203Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.652549452Z 61 PC: 133f6 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:09:55.660515243Z 63 PC: 13498 | Read file or device (Read 5762 bytes on handle 5)
2018-12-17T23:09:55.667885984Z 62 PC: 134de | Close file
2018-12-17T23:09:55.669854425Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.68131341Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.687334408Z 65 PC: 13abe | Delete file (Filename = 'anti-vir.dat')
2018-12-17T23:09:55.693216743Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.705067792Z 65 PC: 13abe | Delete file (Filename = 'chklist.ms')
2018-12-17T23:09:55.711494492Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.717354875Z 65 PC: 13abe | Delete file (Filename = 'chklist.cps')
2018-12-17T23:09:55.724558878Z 47 PC: 180a5 | Get disk transfer address
2018-12-17T23:09:55.726019524Z 26 PC: 180b0 | Set disk transfer address
2018-12-17T23:09:55.727384662Z 78 PC: 180bc | Find first file
2018-12-17T23:09:55.733598605Z 26 PC: 180ce | Set disk transfer address
2018-12-17T23:09:55.736347588Z 26 PC: 1390c | Set disk transfer address
2018-12-17T23:09:55.737668988Z 78 PC: 1391e | Find first file
2018-12-17T23:09:55.748312658Z 67 PC: 132a8 | Get or set file attributes
2018-12-17T23:09:55.759315884Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.772369844Z 61 PC: 133f6 | Open file (Filename = 'TEST.EXE')
2018-12-17T23:09:55.779455487Z 66 PC: 183db | Move file pointer
2018-12-17T23:09:55.783238508Z 63 PC: 13498 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:09:55.791029976Z 62 PC: 134de | Close file
2018-12-17T23:09:55.792731862Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.805256821Z 47 PC: 180e2 | Get disk transfer address
2018-12-17T23:09:55.806444597Z 26 PC: 180ed | Set disk transfer address
2018-12-17T23:09:55.807538315Z 79 PC: 180f1 | Find next file
2018-12-17T23:09:55.811041029Z 26 PC: 18101 | Set disk transfer address
2018-12-17T23:09:55.812724544Z 47 PC: 180a5 | Get disk transfer address
2018-12-17T23:09:55.815042555Z 26 PC: 180b0 | Set disk transfer address
2018-12-17T23:09:55.816622389Z 78 PC: 180bc | Find first file
2018-12-17T23:09:55.822652536Z 26 PC: 180ce | Set disk transfer address
2018-12-17T23:09:55.825273664Z 26 PC: 1390c | Set disk transfer address
2018-12-17T23:09:55.826916864Z 78 PC: 1391e | Find first file
2018-12-17T23:09:55.832767518Z 47 PC: 180e2 | Get disk transfer address
2018-12-17T23:09:55.833794508Z 26 PC: 180ed | Set disk transfer address
2018-12-17T23:09:55.835230587Z 79 PC: 180f1 | Find next file
2018-12-17T23:09:55.838460275Z 26 PC: 18101 | Set disk transfer address
2018-12-17T23:09:55.840710565Z 26 PC: 1390c | Set disk transfer address
2018-12-17T23:09:55.841933719Z 78 PC: 1391e | Find first file
2018-12-17T23:09:55.848135056Z 47 PC: 180e2 | Get disk transfer address
2018-12-17T23:09:55.849437367Z 26 PC: 180ed | Set disk transfer address
2018-12-17T23:09:55.850749291Z 79 PC: 180f1 | Find next file
2018-12-17T23:09:55.853854279Z 26 PC: 18101 | Set disk transfer address
2018-12-17T23:09:55.856074969Z 26 PC: 1390c | Set disk transfer address
2018-12-17T23:09:55.857138435Z 78 PC: 1391e | Find first file
2018-12-17T23:09:55.865136463Z 47 PC: 180e2 | Get disk transfer address
2018-12-17T23:09:55.866559059Z 26 PC: 180ed | Set disk transfer address
2018-12-17T23:09:55.867989814Z 79 PC: 180f1 | Find next file
2018-12-17T23:09:55.871732044Z 26 PC: 18101 | Set disk transfer address
2018-12-17T23:09:55.874216878Z 26 PC: 1390c | Set disk transfer address
2018-12-17T23:09:55.875716051Z 78 PC: 1391e | Find first file
2018-12-17T23:09:55.882420423Z 47 PC: 180e2 | Get disk transfer address
2018-12-17T23:09:55.883465064Z 26 PC: 180ed | Set disk transfer address
2018-12-17T23:09:55.884504443Z 79 PC: 180f1 | Find next file
2018-12-17T23:09:55.888969985Z 26 PC: 18101 | Set disk transfer address
2018-12-17T23:09:55.891272181Z 26 PC: 1390c | Set disk transfer address
2018-12-17T23:09:55.892299345Z 78 PC: 1391e | Find first file
2018-12-17T23:09:55.898901212Z 47 PC: 180e2 | Get disk transfer address
2018-12-17T23:09:55.899867097Z 26 PC: 180ed | Set disk transfer address
2018-12-17T23:09:55.900770038Z 79 PC: 180f1 | Find next file
2018-12-17T23:09:55.903611218Z 26 PC: 18101 | Set disk transfer address
2018-12-17T23:09:55.906740528Z 26 PC: 1390c | Set disk transfer address
2018-12-17T23:09:55.907773394Z 78 PC: 1391e | Find first file
2018-12-17T23:09:55.914666289Z 47 PC: 180e2 | Get disk transfer address
2018-12-17T23:09:55.915731985Z 26 PC: 180ed | Set disk transfer address
2018-12-17T23:09:55.916745699Z 79 PC: 180f1 | Find next file
2018-12-17T23:09:55.919807128Z 26 PC: 18101 | Set disk transfer address
2018-12-17T23:09:55.922459243Z 26 PC: 1390c | Set disk transfer address
2018-12-17T23:09:55.923549145Z 78 PC: 1391e | Find first file
2018-12-17T23:09:55.930666514Z 47 PC: 180e2 | Get disk transfer address
2018-12-17T23:09:55.931873379Z 26 PC: 180ed | Set disk transfer address
2018-12-17T23:09:55.932810145Z 79 PC: 180f1 | Find next file
2018-12-17T23:09:55.935442184Z 26 PC: 18101 | Set disk transfer address
2018-12-17T23:09:55.936923223Z 98 PC: 182ed | Get current PSP
2018-12-17T23:09:55.938931335Z 98 PC: 182ed | Get current PSP
2018-12-17T23:09:55.945958939Z 98 PC: 182ed | Get current PSP
2018-12-17T23:09:55.947770242Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.956554385Z 65 PC: 13abe | Delete file (Filename = 'C:\DOS\anti-vir.dat')
2018-12-17T23:09:55.963449312Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.969532986Z 65 PC: 13abe | Delete file (Filename = 'C:\DOS\chklist.ms')
2018-12-17T23:09:55.973933281Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:55.978705632Z 65 PC: 13abe | Delete file (Filename = 'C:\DOS\chklist.cps')
2018-12-17T23:09:55.98276075Z 47 PC: 180a5 | Get disk transfer address
2018-12-17T23:09:55.983545036Z 26 PC: 180b0 | Set disk transfer address
2018-12-17T23:09:55.985403122Z 78 PC: 180bc | Find first file
2018-12-17T23:09:55.992964091Z 26 PC: 180ce | Set disk transfer address
2018-12-17T23:09:55.995831847Z 26 PC: 1390c | Set disk transfer address
2018-12-17T23:09:55.998043289Z 78 PC: 1391e | Find first file
2018-12-17T23:09:56.004900563Z 67 PC: 132a8 | Get or set file attributes
2018-12-17T23:09:56.011477052Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:56.355266633Z 61 PC: 133f6 | Open file (Filename = 'C:\DOS\ATTRIB.EXE')
2018-12-17T23:09:56.362361744Z 66 PC: 183db | Move file pointer
2018-12-17T23:09:56.364223008Z 63 PC: 13498 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:09:56.370252588Z 62 PC: 134de | Close file
2018-12-17T23:09:56.372571869Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:56.382822547Z 86 PC: 13e08 | Rename file
2018-12-17T23:09:56.39513556Z 26 PC: 13190 | Set disk transfer address
2018-12-17T23:09:56.396437301Z 78 PC: 131a2 | Find first file
2018-12-17T23:09:56.40301961Z 67 PC: 132a8 | Get or set file attributes
2018-12-17T23:09:56.407578334Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:56.414408224Z 61 PC: 133f6 | Open file (Filename = 'C:\DOS\ATTRIB.���')
2018-12-17T23:09:56.419961937Z 87 PC: 13363 | Get or set file date and time
2018-12-17T23:09:56.422120566Z 63 PC: 13498 | Read file or device (Read 5762 bytes on handle 5)
2018-12-17T23:09:56.428937778Z 66 PC: 183db | Move file pointer
2018-12-17T23:09:56.430671059Z 64 PC: 13442 | Write file or device (Write 5762 bytes on handle 5)
2018-12-17T23:09:56.438664539Z 66 PC: 183db | Move file pointer
2018-12-17T23:09:56.44246231Z 64 PC: 13442 | Write file or device (Write 5762 bytes on handle 5)
2018-12-17T23:09:56.45294553Z 87 PC: 133c5 | Get or set file date and time
2018-12-17T23:09:56.454934222Z 62 PC: 134de | Close file
2018-12-17T23:09:56.462282452Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:56.472329691Z 86 PC: 13e21 | Rename file
2018-12-17T23:09:56.48080724Z 47 PC: 180e2 | Get disk transfer address
2018-12-17T23:09:56.481679143Z 26 PC: 180ed | Set disk transfer address
2018-12-17T23:09:56.482448902Z 79 PC: 180f1 | Find next file
2018-12-17T23:09:56.484815411Z 26 PC: 18101 | Set disk transfer address
2018-12-17T23:09:56.486125737Z 47 PC: 180a5 | Get disk transfer address
2018-12-17T23:09:56.487019344Z 26 PC: 180b0 | Set disk transfer address
2018-12-17T23:09:56.488312401Z 78 PC: 180bc | Find first file
2018-12-17T23:09:56.492311673Z 26 PC: 180ce | Set disk transfer address
2018-12-17T23:09:56.493896525Z 26 PC: 1390c | Set disk transfer address
2018-12-17T23:09:56.49521116Z 78 PC: 1391e | Find first file
2018-12-17T23:09:56.49914603Z 47 PC: 180e2 | Get disk transfer address
2018-12-17T23:09:56.500054107Z 26 PC: 180ed | Set disk transfer address
2018-12-17T23:09:56.501590533Z 79 PC: 180f1 | Find next file
2018-12-17T23:09:56.503501168Z 26 PC: 18101 | Set disk transfer address
2018-12-17T23:09:56.504671271Z 86 PC: 13e08 | Rename file
2018-12-17T23:09:56.512497862Z 26 PC: 12d57 | Set disk transfer address
2018-12-17T23:09:56.513587708Z 78 PC: 12d69 | Find first file
2018-12-17T23:09:56.519758303Z 67 PC: 132a8 | Get or set file attributes
2018-12-17T23:09:56.527093548Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:56.537256206Z 61 PC: 133f6 | Open file (Filename = 'A:\TEST.���')
2018-12-17T23:09:56.544094938Z 87 PC: 13363 | Get or set file date and time
2018-12-17T23:09:56.546806093Z 66 PC: 183db | Move file pointer
2018-12-17T23:09:56.549121172Z 63 PC: 13498 | Read file or device (Read 5762 bytes on handle 5)
2018-12-17T23:09:56.556896496Z 66 PC: 183db | Move file pointer
2018-12-17T23:09:56.561841583Z 64 PC: 13442 | Write file or device (Write 5762 bytes on handle 5)
2018-12-17T23:09:56.569764663Z 87 PC: 133c5 | Get or set file date and time
2018-12-17T23:09:56.571293244Z 62 PC: 134de | Close file
2018-12-17T23:09:56.578856396Z 61 PC: 133f6 | Open file (Filename = 'A:\TEST.���')
2018-12-17T23:09:56.585988898Z 66 PC: 183db | Move file pointer
2018-12-17T23:09:56.587736558Z 64 PC: 13442 | Write file or device (Write 0 bytes on handle 5)
2018-12-17T23:09:56.595420671Z 87 PC: 133c5 | Get or set file date and time
2018-12-17T23:09:56.597210857Z 62 PC: 134de | Close file
2018-12-17T23:09:56.60406208Z 67 PC: 132df | Get or set file attributes
2018-12-17T23:09:56.613839801Z 86 PC: 13e21 | Rename file
2018-12-17T23:09:56.626599938Z 75 PC: 12ff6 | Execute program
2018-12-17T23:09:56.646216425Z 80 PC: 1b6c9 | Set current PSP
2018-12-17T23:09:56.64742406Z 48 PC: 1b6ce | Get DOS version
2018-12-17T23:09:56.650075545Z 99 PC: 21eb0 | Get DBCS lead byte table pointer
2018-12-17T23:09:56.653280445Z 101 PC: 1b754 | Get extended country info
2018-12-17T23:09:56.654409452Z 99 PC: 1b75a | Get DBCS lead byte table pointer
2018-12-17T23:09:56.656993571Z 74 PC: 1b7bc | Reallocate memory
2018-12-17T23:09:56.658646002Z 25 PC: 1b7f3 | Get default drive
2018-12-17T23:09:56.660096408Z 37 PC: 1b2b3 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T23:09:56.662110397Z 37 PC: 1b2ba | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:09:56.663157257Z 37 PC: 1b2c1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:09:56.667269098Z 74 PC: 1a45c | Reallocate memory
2018-12-17T23:09:56.66922193Z 72 PC: 1a49d | Allocate memory
2018-12-17T23:09:56.67085376Z 72 PC: 1a4d5 | Allocate memory
2018-12-17T23:09:56.672498681Z 72 PC: 1a4dd | Allocate memory