Sample viewer

vx.netlux.org/Virus.DOS.HLLO.Vulcanoid.3038

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:16:55.337477898Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:16:55.339292795Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:16:55.340432525Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:16:55.341462044Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:16:55.356924012Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:16:55.358110596Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:16:55.35911639Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:16:55.361216293Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:16:55.362620349Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:16:55.363876819Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:16:55.373582348Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:16:55.374568706Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:16:55.37572725Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:16:55.380321915Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:16:55.381439712Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:16:55.382494188Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:16:55.383698928Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:16:55.384928876Z 53 PC: 12e06 | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:16:55.385971698Z 37 PC: 12e1b | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:16:55.386934109Z 37 PC: 12e23 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:16:55.389128028Z 37 PC: 12e2b | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:16:55.390892784Z 37 PC: 12e33 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:16:55.39294078Z 68 PC: 13178 | I/O control for devices (Set for = '')
2018-12-17T22:16:55.396270447Z 54 PC: 12d2f | Get free disk space
2018-12-17T22:16:55.405398713Z 26 PC: 12d65 | Set disk transfer address
2018-12-17T22:16:55.406801395Z 78 PC: 12d71 | Find first file
2018-12-17T22:16:55.413542837Z 48 PC: 135bd | Get DOS version
2018-12-17T22:16:55.415267935Z 61 PC: 1315f | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:16:55.421846728Z 61 PC: 1315f | Open file (Filename = 'TEST.EXE')
2018-12-17T22:16:55.429288644Z 63 PC: 13224 | Read file or device (Read 128 bytes on handle 5)
2018-12-17T22:16:55.43220379Z 63 PC: 13224 | Read file or device (Read 128 bytes on handle 6)
2018-12-17T22:16:55.435144819Z 62 PC: 13295 | Close file
2018-12-17T22:16:55.438234967Z 62 PC: 13295 | Close file
2018-12-17T22:16:55.439759172Z 26 PC: 12d89 | Set disk transfer address
2018-12-17T22:16:55.440570659Z 79 PC: 12d8e | Find next file
2018-12-17T22:16:55.443148847Z 54 PC: 12d2f | Get free disk space
2018-12-17T22:16:55.446386741Z 14 PC: 136a3 | Set default drive (Drive = 'A')
2018-12-17T22:16:55.447649179Z 25 PC: 136a7 | Get default drive
2018-12-17T22:16:55.448983067Z 59 PC: 13711 | Change current directory
2018-12-17T22:16:55.453000257Z 26 PC: 12d65 | Set disk transfer address
2018-12-17T22:16:55.45397342Z 78 PC: 12d71 | Find first file
2018-12-17T22:16:55.460414313Z 48 PC: 135bd | Get DOS version
2018-12-17T22:16:55.461896082Z 61 PC: 1315f | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:16:55.468402952Z 61 PC: 1315f | Open file (Filename = 'TEST.EXE')
2018-12-17T22:16:55.475254519Z 63 PC: 13224 | Read file or device (Read 128 bytes on handle 5)
2018-12-17T22:16:55.478023089Z 63 PC: 13224 | Read file or device (Read 128 bytes on handle 6)
2018-12-17T22:16:55.480718765Z 62 PC: 13295 | Close file
2018-12-17T22:16:55.483491537Z 62 PC: 13295 | Close file
2018-12-17T22:16:55.48516001Z 26 PC: 12d89 | Set disk transfer address
2018-12-17T22:16:55.486136722Z 79 PC: 12d8e | Find next file
2018-12-17T22:16:55.489253072Z 54 PC: 12d2f | Get free disk space