Sample viewer

vx.netlux.org/Virus.DOS.Marina.1296.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:11:11.007801218Z 48 PC: 1682e | Get DOS version
2018-12-17T23:11:11.009729342Z 74 PC: 168a3 | Reallocate memory
2018-12-17T23:11:11.013138715Z 48 PC: 16b1a | Get DOS version
2018-12-17T23:11:11.014941882Z 53 PC: 16919 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:11:11.01727586Z 37 PC: 1692b | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:11:11.020562793Z 53 PC: 1bd82 | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:11:11.022219711Z 37 PC: 1bd92 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:11:11.024113223Z 53 PC: 1bd97 | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:11:11.026608577Z 37 PC: 1bda7 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:11:11.028491449Z 53 PC: 19903 | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T23:11:11.029956294Z 53 PC: 19903 | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T23:11:11.041004608Z 53 PC: 19903 | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T23:11:11.0428776Z 53 PC: 19903 | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T23:11:11.044762632Z 53 PC: 19903 | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T23:11:11.046941869Z 53 PC: 19903 | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T23:11:11.04965197Z 53 PC: 19903 | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T23:11:11.051606509Z 53 PC: 19903 | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T23:11:11.053575659Z 53 PC: 19903 | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T23:11:11.062003609Z 53 PC: 19903 | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T23:11:11.063592096Z 53 PC: 19903 | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T23:11:11.065128401Z 37 PC: 19932 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T23:11:11.067228291Z 37 PC: 19932 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T23:11:11.069056152Z 37 PC: 19932 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T23:11:11.070424348Z 37 PC: 19932 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T23:11:11.090629531Z 37 PC: 19932 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T23:11:11.092223217Z 37 PC: 19932 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T23:11:11.093720699Z 37 PC: 19932 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T23:11:11.096592308Z 37 PC: 19932 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T23:11:11.09850985Z 37 PC: 19939 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T23:11:11.100687871Z 37 PC: 1993e | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T23:11:11.103362235Z 68 PC: 169c0 | I/O control for devices (Set for = 'P���� �')
2018-12-17T23:11:11.106137367Z 68 PC: 169c0 | I/O control for devices (Set for = ' �')
2018-12-17T23:11:11.108208153Z 68 PC: 169c0 | I/O control for devices (Set for = '�����?')
2018-12-17T23:11:11.110356059Z 68 PC: 169c0 | I/O control for devices (Set for = '������΋������?t���Xx"L\|s����������s��@���+L\|s3���������������������X��P�U��2�R�@P"�3ۋ�ˋ �t � �t����U3� �t�U �t ���ڃ�')
2018-12-17T23:11:11.114077854Z 68 PC: 169c0 | I/O control for devices (Set for = '������΋������?t���Xx"L\|s����������s��@���+L\|s3���������������������X��P�U��2�R�@P"�3ۋ�ˋ �t � �t����U3� �t�U �t ���ڃ�')
2018-12-17T23:11:11.202018604Z 64 PC: 176ec | Write file or device (Write 53 bytes on handle 1)
2018-12-17T23:11:11.207869391Z 37 PC: 1994e | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T23:11:11.210421442Z 37 PC: 1994e | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T23:11:11.212298935Z 37 PC: 1994e | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T23:11:11.214229868Z 37 PC: 1994e | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T23:11:11.216383745Z 37 PC: 1994e | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T23:11:11.217679487Z 37 PC: 1994e | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T23:11:11.219093395Z 37 PC: 1994e | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T23:11:11.221491927Z 37 PC: 1994e | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T23:11:11.222839872Z 37 PC: 1994e | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T23:11:11.224169631Z 37 PC: 1994e | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T23:11:11.226493844Z 37 PC: 1994e | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T23:11:11.228179686Z 37 PC: 1bdb6 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:11:11.229847573Z 37 PC: 16a7a | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:11:11.231704675Z 76 PC: 16a5f | Terminate with return code (Return code = '0')