Sample viewer

vx.netlux.org/Virus.DOS.HLLP.Zyx.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:06:02.773069212Z 53 PC: 1370a | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:06:02.785634791Z 53 PC: 1370a | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:06:02.786847542Z 53 PC: 1370a | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:06:02.787927931Z 53 PC: 1370a | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:06:02.789638969Z 53 PC: 1370a | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:06:02.790958942Z 53 PC: 1370a | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:06:02.792297811Z 53 PC: 1370a | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:06:02.794269202Z 53 PC: 1370a | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:06:02.796027109Z 53 PC: 1370a | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:06:02.797438921Z 53 PC: 1370a | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:06:02.799305612Z 53 PC: 1370a | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:06:02.801780947Z 53 PC: 1370a | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:06:02.802955532Z 53 PC: 1370a | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:06:02.803993632Z 53 PC: 1370a | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:06:02.805924291Z 53 PC: 1370a | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:06:02.807087869Z 53 PC: 1370a | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:06:02.808166371Z 53 PC: 1370a | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:06:02.809856055Z 53 PC: 1370a | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:06:02.811256532Z 53 PC: 1370a | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:06:02.81237285Z 37 PC: 1371f | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:06:02.813669097Z 37 PC: 13727 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:06:02.814669896Z 37 PC: 1372f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:06:02.815625762Z 37 PC: 13737 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:06:02.819424907Z 68 PC: 14491 | I/O control for devices (Set for = 'EG=')
2018-12-17T22:06:02.820752251Z 26 PC: 13545 | Set disk transfer address
2018-12-17T22:06:02.821727173Z 78 PC: 13551 | Find first file
2018-12-17T22:06:02.828242057Z 64 PC: 13acd | Write file or device (Write 0 bytes on handle 1)
2018-12-17T22:06:02.830096519Z 37 PC: 13861 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:06:02.831868678Z 37 PC: 13861 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:06:02.834342262Z 37 PC: 13861 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:06:02.835787473Z 37 PC: 13861 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:06:02.83717654Z 37 PC: 13861 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:06:02.838740165Z 37 PC: 13861 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:06:02.840719962Z 37 PC: 13861 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:06:02.84204202Z 37 PC: 13861 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:06:02.844097654Z 37 PC: 13861 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:06:02.851545321Z 37 PC: 13861 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:06:02.852672687Z 37 PC: 13861 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:06:02.853963136Z 37 PC: 13861 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:06:02.855053547Z 37 PC: 13861 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:06:02.856023704Z 37 PC: 13861 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:06:02.857006073Z 37 PC: 13861 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:06:02.858481073Z 37 PC: 13861 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:06:02.859512406Z 37 PC: 13861 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:06:02.860531142Z 37 PC: 13861 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:06:02.862302177Z 37 PC: 13861 | Set interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:06:02.863328258Z 76 PC: 138a0 | Terminate with return code (Return code = '0')