Sample viewer

vx.netlux.org/Virus.DOS.HLLO.4778

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:11:56.782353779Z 48 PC: 12a4c | Get DOS version
2018-12-17T22:11:56.79119743Z 53 PC: 12ba8 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:11:56.79202129Z 53 PC: 12bb5 | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:11:56.792804205Z 53 PC: 12bc2 | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:11:56.793953015Z 53 PC: 12bcf | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:11:56.794862617Z 37 PC: 12be3 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:11:56.795933283Z 74 PC: 12b19 | Reallocate memory
2018-12-17T22:11:56.81342108Z 61 PC: 1362a | Open file (Filename = '')
2018-12-17T22:11:56.819928829Z 68 PC: 1365f | I/O control for devices (Set for = 'NË!')
2018-12-17T22:11:56.82120589Z 66 PC: 13719 | Move file pointer
2018-12-17T22:11:56.822762712Z 63 PC: 136a9 | Read file or device (Read 4778 bytes on handle 5)
2018-12-17T22:11:56.829796008Z 62 PC: 13682 | Close file
2018-12-17T22:11:56.831400742Z 26 PC: 137c9 | Set disk transfer address
2018-12-17T22:11:56.8324389Z 78 PC: 137d3 | Find first file
2018-12-17T22:11:56.838111011Z 26 PC: 137eb | Set disk transfer address
2018-12-17T22:11:56.838959728Z 79 PC: 137ef | Find next file
2018-12-17T22:11:56.841530819Z 26 PC: 137eb | Set disk transfer address
2018-12-17T22:11:56.84321135Z 79 PC: 137ef | Find next file
2018-12-17T22:11:56.846377827Z 26 PC: 137eb | Set disk transfer address
2018-12-17T22:11:56.847929501Z 79 PC: 137ef | Find next file
2018-12-17T22:11:56.850519851Z 26 PC: 137eb | Set disk transfer address
2018-12-17T22:11:56.852424952Z 79 PC: 137ef | Find next file
2018-12-17T22:11:56.854799572Z 26 PC: 137eb | Set disk transfer address
2018-12-17T22:11:56.855725934Z 79 PC: 137ef | Find next file
2018-12-17T22:11:56.858678431Z 26 PC: 137eb | Set disk transfer address
2018-12-17T22:11:56.859588429Z 79 PC: 137ef | Find next file
2018-12-17T22:11:56.862002765Z 26 PC: 137eb | Set disk transfer address
2018-12-17T22:11:56.863188717Z 79 PC: 137ef | Find next file
2018-12-17T22:11:56.865501634Z 26 PC: 137c9 | Set disk transfer address
2018-12-17T22:11:56.866532558Z 78 PC: 137d3 | Find first file
2018-12-17T22:11:56.872834983Z 67 PC: 137b2 | Get or set file attributes
2018-12-17T22:11:56.878311889Z 67 PC: 137b2 | Get or set file attributes
2018-12-17T22:11:56.952982058Z 61 PC: 1362a | Open file (Filename = 'TEST.EXE')
2018-12-17T22:11:56.960356945Z 68 PC: 1365f | I/O control for devices (Set for = '')
2018-12-17T22:11:56.962288573Z 87 PC: 1380a | Get or set file date and time
2018-12-17T22:11:56.963748876Z 66 PC: 13719 | Move file pointer
2018-12-17T22:11:56.965916039Z 63 PC: 136a9 | Read file or device (Read 4778 bytes on handle 5)
2018-12-17T22:11:56.973409705Z 67 PC: 137b2 | Get or set file attributes
2018-12-17T22:11:56.983936802Z 26 PC: 137eb | Set disk transfer address
2018-12-17T22:11:56.986006566Z 79 PC: 137ef | Find next file
2018-12-17T22:11:56.988826085Z 37 PC: 12bef | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:11:56.990404444Z 37 PC: 12bfa | Set interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:11:56.992820871Z 37 PC: 12c05 | Set interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:11:56.994377318Z 37 PC: 12c10 | Set interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:11:56.99614524Z 76 PC: 12b98 | Terminate with return code (Return code = '0')