Sample viewer

vx.netlux.org/Virus.DOS.HLLP.Lomza

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:52:01.927853261Z 53 PC: 13106 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T21:52:01.929705723Z 53 PC: 13106 | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T21:52:01.930912667Z 53 PC: 13106 | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T21:52:01.932054814Z 53 PC: 13106 | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T21:52:01.93486654Z 53 PC: 13106 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:52:01.936108931Z 53 PC: 13106 | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T21:52:01.937281126Z 53 PC: 13106 | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T21:52:01.943992081Z 53 PC: 13106 | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T21:52:01.9455966Z 53 PC: 13106 | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T21:52:01.946747224Z 53 PC: 13106 | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T21:52:01.948106398Z 53 PC: 13106 | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T21:52:01.950648583Z 53 PC: 13106 | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T21:52:01.952040109Z 53 PC: 13106 | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T21:52:01.953248273Z 53 PC: 13106 | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T21:52:01.955005158Z 53 PC: 13106 | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T21:52:01.956116342Z 53 PC: 13106 | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T21:52:01.957229753Z 53 PC: 13106 | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T21:52:01.958972329Z 53 PC: 13106 | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T21:52:01.960037837Z 37 PC: 1311b | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T21:52:01.96103446Z 37 PC: 13123 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T21:52:01.962986306Z 37 PC: 1312b | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:52:01.964082325Z 37 PC: 13133 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T21:52:01.965583665Z 68 PC: 13a72 | I/O control for devices (Set for = '')
2018-12-17T21:52:01.967460304Z 44 PC: 1390e | Get time 0x1390e: mov word ptr [0x5c], cx
0x13912: mov word ptr [0x5e], dx
0x13916: retf
0x13917: mov bx, sp
0x13919: push ds
0x1391a: les di, ptr ss:[bx + 8]
0x1391e: lds si, ptr ss:[bx + 4]
0x13922: cld
0x13923: xor ax, ax
0x13925: stosw word ptr es:[di], ax
0x13926: mov ax, 0xd7b0
0x13929: stosw word ptr es:[di], ax
0x1392a: mov ax, 0x80
0x1392d: stosw word ptr es:[di], ax
0x1392e: xor ax, ax
0x13930: stosw word ptr es:[di], ax
0x13931: stosw word ptr es:[di], ax
0x13932: stosw word ptr es:[di], ax
0x13933: lea ax, word ptr [di + 0x74]
0x13936: stosw word ptr es:[di], ax
2018-12-17T21:52:01.969739077Z 48 PC: 13de6 | Get DOS version
2018-12-17T21:52:01.971400342Z 61 PC: 13c0c | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T21:52:01.979245044Z 63 PC: 13cdf | Read file or device (Read 5520 bytes on handle 5)
2018-12-17T21:52:02.004368331Z 62 PC: 13c5c | Close file
2018-12-17T21:52:02.008228314Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.010614836Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.013185701Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.014730226Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.019015347Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.020334401Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.034074219Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.04380992Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.050281628Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.051143485Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.054848833Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.055932789Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.06004524Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.061660524Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.065773136Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.066824228Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.070068772Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.071106935Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.077443567Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.079019444Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.08125038Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.08222158Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.085627221Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.086574177Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.092168698Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.093730965Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.095886461Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.096976487Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.105027536Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.106914702Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.113568017Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.115779595Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.123197344Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.124255418Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.131840488Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.133154992Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.13587217Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.137449355Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.140476946Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.141569292Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.16682042Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.168544516Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.172799969Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.173953358Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.178379802Z 26 PC: 12edf | Set disk transfer address
2018-12-17T21:52:02.179371662Z 79 PC: 12ee4 | Find next file
2018-12-17T21:52:02.181539202Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.182746776Z 78 PC: 12ec7 | Find first file
2018-12-17T21:52:02.187381981Z 26 PC: 12ebb | Set disk transfer address
2018-12-17T21:52:02.188549828Z 78 PC: 12ec7 | Find first file