Sample viewer

vx.netlux.org/Virus.DOS.HLLO.3522.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:12:37.389205556Z 48 PC: 12a4c | Get DOS version
2018-12-17T22:12:37.390978898Z 53 PC: 12ba8 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:12:37.392488802Z 53 PC: 12bb5 | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:12:37.393672971Z 53 PC: 12bc2 | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:12:37.402942736Z 53 PC: 12bcf | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:12:37.40411618Z 37 PC: 12be3 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:12:37.405289278Z 74 PC: 12b19 | Reallocate memory
2018-12-17T22:12:37.408967004Z 61 PC: 1368e | Open file (Filename = '')
2018-12-17T22:12:37.417279759Z 68 PC: 136c3 | I/O control for devices (Set for = '')
2018-12-17T22:12:37.418642955Z 66 PC: 1377d | Move file pointer
2018-12-17T22:12:37.419953119Z 63 PC: 1370d | Read file or device (Read 3522 bytes on handle 5)
2018-12-17T22:12:37.428190922Z 62 PC: 136e6 | Close file
2018-12-17T22:12:37.429927314Z 26 PC: 1382d | Set disk transfer address
2018-12-17T22:12:37.430906347Z 78 PC: 13837 | Find first file
2018-12-17T22:12:37.437866928Z 26 PC: 1384f | Set disk transfer address
2018-12-17T22:12:37.43885747Z 79 PC: 13853 | Find next file
2018-12-17T22:12:37.441563745Z 26 PC: 1384f | Set disk transfer address
2018-12-17T22:12:37.443523214Z 79 PC: 13853 | Find next file
2018-12-17T22:12:37.446236121Z 26 PC: 1384f | Set disk transfer address
2018-12-17T22:12:37.447197703Z 79 PC: 13853 | Find next file
2018-12-17T22:12:37.450448255Z 26 PC: 1384f | Set disk transfer address
2018-12-17T22:12:37.451407906Z 79 PC: 13853 | Find next file
2018-12-17T22:12:37.454038358Z 26 PC: 1384f | Set disk transfer address
2018-12-17T22:12:37.455387265Z 79 PC: 13853 | Find next file
2018-12-17T22:12:37.458616592Z 26 PC: 1384f | Set disk transfer address
2018-12-17T22:12:37.460385695Z 79 PC: 13853 | Find next file
2018-12-17T22:12:37.46403749Z 26 PC: 1384f | Set disk transfer address
2018-12-17T22:12:37.46594561Z 79 PC: 13853 | Find next file
2018-12-17T22:12:37.468736289Z 26 PC: 1382d | Set disk transfer address
2018-12-17T22:12:37.470180776Z 78 PC: 13837 | Find first file
2018-12-17T22:12:37.476832335Z 67 PC: 13816 | Get or set file attributes
2018-12-17T22:12:37.482280502Z 67 PC: 13816 | Get or set file attributes
2018-12-17T22:12:37.498488012Z 61 PC: 1368e | Open file (Filename = 'TEST.EXE')
2018-12-17T22:12:37.505591439Z 68 PC: 136c3 | I/O control for devices (Set for = '')
2018-12-17T22:12:37.507003534Z 87 PC: 1386e | Get or set file date and time
2018-12-17T22:12:37.508411929Z 66 PC: 1377d | Move file pointer
2018-12-17T22:12:37.510965627Z 63 PC: 1370d | Read file or device (Read 3522 bytes on handle 5)
2018-12-17T22:12:37.518388411Z 67 PC: 13816 | Get or set file attributes
2018-12-17T22:12:37.528009421Z 26 PC: 1384f | Set disk transfer address
2018-12-17T22:12:37.53023683Z 79 PC: 13853 | Find next file
2018-12-17T22:12:37.533021211Z 37 PC: 12bef | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:12:37.534535144Z 37 PC: 12bfa | Set interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:12:37.537069248Z 37 PC: 12c05 | Set interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:12:37.538573757Z 37 PC: 12c10 | Set interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:12:37.540149264Z 76 PC: 12b98 | Terminate with return code (Return code = '0')