Sample viewer

vx.netlux.org/Virus.DOS.Sirius.Alive.3800

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:12:10.905923136Z 48 PC: 224cd | Get DOS version
2018-12-17T23:12:10.908520657Z 88 PC: 22b34 | case 0xGet or set allocation strateg:
2018-12-17T23:12:10.909818579Z 88 PC: 22b3e | case 0xGet or set allocation strateg:
2018-12-17T23:12:10.911112729Z 88 PC: 22b4b | case 0xGet or set allocation strateg:
2018-12-17T23:12:10.912904214Z 88 PC: 22b53 | case 0xGet or set allocation strateg:
2018-12-17T23:12:10.915134567Z 88 PC: 22be2 | case 0xGet or set allocation strateg:
2018-12-17T23:12:10.920605875Z 88 PC: 22bed | case 0xGet or set allocation strateg:
2018-12-17T23:12:10.92269435Z 74 PC: 22c03 | Reallocate memory
2018-12-17T23:12:10.935849641Z 74 PC: 22c11 | Reallocate memory
2018-12-17T23:12:10.93745121Z 82 PC: 22c2e | Get DOS internal pointers (SYSVARS)
2018-12-17T23:12:10.939254818Z 82 PC: 9e756 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:12:10.941840692Z 48 PC: 9e771 | Get DOS version
2018-12-17T23:12:10.948806717Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:10.950439755Z 53 PC: 16552 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:12:10.953238461Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:10.95545134Z 53 PC: 16552 | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T23:12:10.957530265Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:10.959769631Z 53 PC: 16552 | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T23:12:10.961874441Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:10.963851754Z 53 PC: 16552 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:12:10.967160782Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:10.968802179Z 53 PC: 16552 | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:12:10.970891134Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:10.973868577Z 53 PC: 16552 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:12:10.976761754Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:10.978478551Z 53 PC: 16552 | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T23:12:10.981005368Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:10.982520072Z 53 PC: 16552 | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T23:12:10.984536719Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:10.98702469Z 53 PC: 16552 | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T23:12:10.98903498Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:10.990664393Z 53 PC: 16552 | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T23:12:10.994268528Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:10.995862057Z 53 PC: 16552 | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T23:12:10.999909312Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.003493069Z 53 PC: 16552 | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T23:12:11.005309954Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.00664813Z 53 PC: 16552 | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T23:12:11.008517344Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.023251054Z 53 PC: 16552 | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T23:12:11.025255647Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.027212757Z 53 PC: 16552 | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T23:12:11.03012488Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.031593937Z 53 PC: 16552 | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T23:12:11.033315174Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.035737582Z 53 PC: 16552 | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T23:12:11.037290065Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.038553967Z 53 PC: 16552 | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T23:12:11.040567199Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.041667069Z 53 PC: 16552 | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T23:12:11.043196354Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.044773686Z 37 PC: 16567 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T23:12:11.046338508Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.047853738Z 37 PC: 1656f | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:12:11.050980363Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.052927793Z 37 PC: 16577 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:12:11.054469439Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.059038675Z 37 PC: 1657f | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T23:12:11.061474594Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.063192296Z 68 PC: 16b52 | I/O control for devices (Set for = '')
2018-12-17T23:12:11.099683296Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.101407105Z 48 PC: 177cd | Get DOS version
2018-12-17T23:12:11.104490378Z 61 PC: 9dfb8 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:12:11.113690677Z 68 PC: 9dfb8 | I/O control for devices
2018-12-17T23:12:11.115577024Z 62 PC: 9dfb8 | Close file
2018-12-17T23:12:11.117929349Z 67 PC: 16482 | Get or set file attributes
2018-12-17T23:12:11.137812129Z 61 PC: 9dfb8 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:12:11.145672076Z 68 PC: 9dfb8 | I/O control for devices
2018-12-17T23:12:11.147551505Z 62 PC: 9dfb8 | Close file
2018-12-17T23:12:11.15118108Z 61 PC: 17556 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:12:11.158483676Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.159804759Z 66 PC: 176f2 | Move file pointer
2018-12-17T23:12:11.16272804Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.164512007Z 87 PC: 9dfb8 | Get or set file date and time
2018-12-17T23:12:11.166422011Z 66 PC: 9dfb1 | Move file pointer
2018-12-17T23:12:11.169627084Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.171043105Z 66 PC: 1770e | Move file pointer
2018-12-17T23:12:11.172818201Z 68 PC: 9dfb8 | I/O control for devices
2018-12-17T23:12:11.175298844Z 62 PC: 175a6 | Close file
2018-12-17T23:12:11.178201072Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.179852669Z 48 PC: 177cd | Get DOS version
2018-12-17T23:12:11.187286392Z 61 PC: 9dfb8 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:12:11.195227208Z 68 PC: 9dfb8 | I/O control for devices
2018-12-17T23:12:11.1985481Z 62 PC: 9dfb8 | Close file
2018-12-17T23:12:11.201887336Z 67 PC: 16482 | Get or set file attributes
2018-12-17T23:12:11.213985594Z 61 PC: 9dfb8 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:12:11.223099319Z 68 PC: 9dfb8 | I/O control for devices
2018-12-17T23:12:11.225859736Z 62 PC: 9dfb8 | Close file
2018-12-17T23:12:11.229033836Z 61 PC: 17556 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:12:11.237661044Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.239583235Z 66 PC: 17688 | Move file pointer
2018-12-17T23:12:11.24277182Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.244228311Z 63 PC: 9dfb8 | Read file or device (Read 29 bytes on handle 5)
2018-12-17T23:12:11.249484808Z 87 PC: 9dfb8 | Get or set file date and time
2018-12-17T23:12:11.251781655Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.255434322Z 63 PC: 9dfb8 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:12:11.257386221Z 87 PC: 9dfb8 | Get or set file date and time
2018-12-17T23:12:11.261885168Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.263064892Z 63 PC: 9dfb8 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T23:12:11.264966848Z 87 PC: 9dfb8 | Get or set file date and time
2018-12-17T23:12:11.267281796Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.268462784Z 63 PC: 9dfb8 | Read file or device (Read 81 bytes on handle 5)
2018-12-17T23:12:11.270713731Z 87 PC: 9dfb8 | Get or set file date and time
2018-12-17T23:12:11.290844912Z 68 PC: 9dfb8 | I/O control for devices
2018-12-17T23:12:11.294102133Z 62 PC: 175a6 | Close file
2018-12-17T23:12:11.297637179Z 61 PC: 9dfb8 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:12:11.306987794Z 68 PC: 9dfb8 | I/O control for devices
2018-12-17T23:12:11.309053018Z 62 PC: 9dfb8 | Close file
2018-12-17T23:12:11.313737255Z 61 PC: 17556 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:12:11.322945808Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.325305298Z 66 PC: 17688 | Move file pointer
2018-12-17T23:12:11.328245022Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.331303958Z 63 PC: 9dfb8 | Read file or device (Read 8192 bytes on handle 5)
2018-12-17T23:12:11.340708919Z 87 PC: 9dfb8 | Get or set file date and time
2018-12-17T23:12:11.343399264Z 68 PC: 9dfb8 | I/O control for devices
2018-12-17T23:12:11.346320123Z 62 PC: 175a6 | Close file
2018-12-17T23:12:11.35384435Z 61 PC: 9dfb8 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:12:11.36965048Z 68 PC: 9dfb8 | I/O control for devices
2018-12-17T23:12:11.372771741Z 62 PC: 9dfb8 | Close file
2018-12-17T23:12:11.380105742Z 61 PC: 17556 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T23:12:11.388129993Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.391191217Z 66 PC: 17688 | Move file pointer
2018-12-17T23:12:11.394022166Z 81 PC: 9dfb8 | Get current PSP
2018-12-17T23:12:11.395976495Z 63 PC: 9dfb8 | Read file or device (Read 49152 bytes on handle 5)
2018-12-17T23:12:11.407574891Z 87 PC: 9dfb8 | Get or set file date and time
2018-12-17T23:12:11.411148298Z 68 PC: 9dfb8 | I/O control for devices
2018-12-17T23:12:11.413133988Z 62 PC: 175a6 | Close file