Sample viewer

vx.netlux.org/Virus.DOS.HLLO.4340

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:52:14.676304467Z 48 PC: 12a4c | Get DOS version
2018-12-17T21:52:14.678602379Z 53 PC: 12ba8 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T21:52:14.680206844Z 53 PC: 12bb5 | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T21:52:14.681742909Z 53 PC: 12bc2 | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T21:52:14.68381418Z 53 PC: 12bcf | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T21:52:14.6849278Z 37 PC: 12be3 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T21:52:14.686052748Z 74 PC: 12b19 | Reallocate memory
2018-12-17T21:52:14.688324985Z 53 PC: 13690 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T21:52:14.690442504Z 53 PC: 13690 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:52:14.691749417Z 53 PC: 13690 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:52:14.694316561Z 53 PC: 13690 | Get interrupt vector (Interrupt = '64' AKA 'Write file or device')
2018-12-17T21:52:14.697070215Z 37 PC: 136a6 | Set interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T21:52:14.698003225Z 37 PC: 136a6 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:52:14.699366178Z 37 PC: 136a6 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:52:14.70312684Z 37 PC: 136a6 | Set interrupt vector (Interrupt = '64' AKA 'Write file or device')
2018-12-17T21:52:14.704731069Z 61 PC: 134ed | Open file (Filename = '�')
2018-12-17T21:52:14.712692452Z 68 PC: 13522 | I/O control for devices (Set for = '�u*� �t�=')
2018-12-17T21:52:14.714431145Z 66 PC: 135dc | Move file pointer
2018-12-17T21:52:14.715527945Z 63 PC: 1356c | Read file or device (Read 4340 bytes on handle 5)