Sample viewer

vx.netlux.org/Virus.DOS.HS.903

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:52:58.060849992Z 220 PC: 1c6d2 | UNKNOWN!
2018-12-17T21:52:58.06285641Z 53 PC: 1c700 | Get interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-17T21:52:58.064301743Z 53 PC: 1c70c | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:52:58.065676971Z 37 PC: 1c71b | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T21:52:58.068118513Z 37 PC: 1c722 | Set interrupt vector (Interrupt = '23' AKA 'Rename file')
2018-12-17T21:52:58.085396786Z 74 PC: 12add | Reallocate memory
2018-12-17T21:52:58.087678472Z 48 PC: 12af9 | Get DOS version
2018-12-17T21:52:58.09355288Z 55 PC: 12b08 | Get or set switch character
2018-12-17T21:52:58.095604619Z 48 PC: 12b21 | Get DOS version
2018-12-17T21:52:58.098637034Z 56 PC: 1f6ab | Get or set country info
2018-12-17T21:52:58.101543414Z 102 PC: 1f6b7 | Get or set code page
2018-12-17T21:52:58.103961046Z 2 PC: 1f0d7 | Character output (Char = '41')
2018-12-17T21:52:58.106785504Z 2 PC: 1f0d7 | Character output (Char = '44')
2018-12-17T21:52:58.111030884Z 2 PC: 1f0d7 | Character output (Char = '2d')
2018-12-17T21:52:58.112961575Z 2 PC: 1f0d7 | Character output (Char = '41')
2018-12-17T21:52:58.114842108Z 2 PC: 1f0d7 | Character output (Char = '63')
2018-12-17T21:52:58.118632637Z 2 PC: 1f0d7 | Character output (Char = '65')
2018-12-17T21:52:58.120960378Z 2 PC: 1f0d7 | Character output (Char = '6c')
2018-12-17T21:52:58.124361377Z 2 PC: 1f0d7 | Character output (Char = '65')
2018-12-17T21:52:58.127359645Z 2 PC: 1f0d7 | Character output (Char = '72')
2018-12-17T21:52:58.132506381Z 2 PC: 1f0d7 | Character output (Char = '61')
2018-12-17T21:52:58.135608621Z 2 PC: 1f0d7 | Character output (Char = '72')
2018-12-17T21:52:58.138484515Z 2 PC: 1f0d7 | Character output (Char = '20')
2018-12-17T21:52:58.140792558Z 2 PC: 1f0d7 | Character output (Char = '44')
2018-12-17T21:52:58.144083231Z 2 PC: 1f0d7 | Character output (Char = '69')
2018-12-17T21:52:58.147740401Z 2 PC: 1f0d7 | Character output (Char = '73')
2018-12-17T21:52:58.150464473Z 2 PC: 1f0d7 | Character output (Char = '63')
2018-12-17T21:52:58.153432901Z 2 PC: 1f0d7 | Character output (Char = '6f')
2018-12-17T21:52:58.156478696Z 2 PC: 1f0d7 | Character output (Char = '2c')
2018-12-17T21:52:58.159018937Z 2 PC: 1f0d7 | Character output (Char = '20')
2018-12-17T21:52:58.161523018Z 2 PC: 1f0d7 | Character output (Char = '45')
2018-12-17T21:52:58.164523807Z 2 PC: 1f0d7 | Character output (Char = '64')
2018-12-17T21:52:58.167088889Z 2 PC: 1f0d7 | Character output (Char = '69')
2018-12-17T21:52:58.170318808Z 2 PC: 1f0d7 | Character output (Char = '63')
2018-12-17T21:52:58.173373315Z 2 PC: 1f0d7 | Character output (Char = '69')
2018-12-17T21:52:58.176347721Z 2 PC: 1f0d7 | Character output (Char = 'a2')
2018-12-17T21:52:58.178904655Z 2 PC: 1f0d7 | Character output (Char = '6e')
2018-12-17T21:52:58.182455482Z 2 PC: 1f0d7 | Character output (Char = '20')
2018-12-17T21:52:58.185088422Z 2 PC: 1f0d7 | Character output (Char = '41')
2018-12-17T21:52:58.187565918Z 2 PC: 1f0d7 | Character output (Char = '76')
2018-12-17T21:52:58.195796392Z 2 PC: 1f0d7 | Character output (Char = '61')
2018-12-17T21:52:58.201056023Z 2 PC: 1f0d7 | Character output (Char = '6e')
2018-12-17T21:52:58.203828733Z 2 PC: 1f0d7 | Character output (Char = '7a')
2018-12-17T21:52:58.208100849Z 2 PC: 1f0d7 | Character output (Char = '61')
2018-12-17T21:52:58.210936871Z 2 PC: 1f0d7 | Character output (Char = '64')
2018-12-17T21:52:58.213613076Z 2 PC: 1f0d7 | Character output (Char = '61')
2018-12-17T21:52:58.216832672Z 2 PC: 1f0d7 | Character output (Char = '20')
2018-12-17T21:52:58.220511038Z 2 PC: 1f0d7 | Character output (Char = '34')
2018-12-17T21:52:58.223121068Z 2 PC: 1f0d7 | Character output (Char = '2e')
2018-12-17T21:52:58.226628371Z 2 PC: 1f0d7 | Character output (Char = '35')
2018-12-17T21:52:58.229183566Z 2 PC: 1f0d7 | Character output (Char = '30')
2018-12-17T21:52:58.231606765Z 2 PC: 1f0d7 | Character output (Char = '2c')
2018-12-17T21:52:58.234507633Z 2 PC: 1f0d7 | Character output (Char = '20')
2018-12-17T21:52:58.236188846Z 2 PC: 1f0d7 | Character output (Char = '28')
2018-12-17T21:52:58.237823107Z 2 PC: 1f0d7 | Character output (Char = '43')
2018-12-17T21:52:58.240070708Z 2 PC: 1f0d7 | Character output (Char = '29')
2018-12-17T21:52:58.241740544Z 2 PC: 1f0d7 | Character output (Char = '20')
2018-12-17T21:52:58.24355238Z 2 PC: 1f0d7 | Character output (Char = '43')
2018-12-17T21:52:58.247396114Z 2 PC: 1f0d7 | Character output (Char = '6f')
2018-12-17T21:52:58.249066266Z 2 PC: 1f0d7 | Character output (Char = '70')
2018-12-17T21:52:58.253705813Z 2 PC: 1f0d7 | Character output (Char = '72')
2018-12-17T21:52:58.256640614Z 2 PC: 1f0d7 | Character output (Char = '20')
2018-12-17T21:52:58.259427128Z 2 PC: 1f0d7 | Character output (Char = '31')
2018-12-17T21:52:58.262191076Z 2 PC: 1f0d7 | Character output (Char = '39')
2018-12-17T21:52:58.265560263Z 2 PC: 1f0d7 | Character output (Char = '38')
2018-12-17T21:52:58.268138998Z 2 PC: 1f0d7 | Character output (Char = '37')
2018-12-17T21:52:58.272441508Z 2 PC: 1f0d7 | Character output (Char = '2d')
2018-12-17T21:52:58.27536704Z 2 PC: 1f0d7 | Character output (Char = '38')
2018-12-17T21:52:58.280168517Z 2 PC: 1f0d7 | Character output (Char = '38')
2018-12-17T21:52:58.282895296Z 2 PC: 1f0d7 | Character output (Char = '2c')
2018-12-17T21:52:58.286154516Z 2 PC: 1f0d7 | Character output (Char = '20')
2018-12-17T21:52:58.29039401Z 2 PC: 1f0d7 | Character output (Char = '50')
2018-12-17T21:52:58.293389152Z 2 PC: 1f0d7 | Character output (Char = '65')
2018-12-17T21:52:58.298257249Z 2 PC: 1f0d7 | Character output (Char = '74')
2018-12-17T21:52:58.301958344Z 2 PC: 1f0d7 | Character output (Char = '65')
2018-12-17T21:52:58.305209408Z 2 PC: 1f0d7 | Character output (Char = '72')
2018-12-17T21:52:58.308606115Z 2 PC: 1f0d7 | Character output (Char = '20')
2018-12-17T21:52:58.311511499Z 2 PC: 1f0d7 | Character output (Char = '4e')
2018-12-17T21:52:58.314389409Z 2 PC: 1f0d7 | Character output (Char = '6f')
2018-12-17T21:52:58.317964651Z 2 PC: 1f0d7 | Character output (Char = '72')
2018-12-17T21:52:58.320822073Z 2 PC: 1f0d7 | Character output (Char = '74')
2018-12-17T21:52:58.323782706Z 2 PC: 1f0d7 | Character output (Char = '6f')
2018-12-17T21:52:58.328131605Z 2 PC: 1f0d7 | Character output (Char = '6e')
2018-12-17T21:52:58.331748817Z 2 PC: 1f0d0 | Character output (Char = '0d')
2018-12-17T21:52:58.334541274Z 2 PC: 1f0d7 | Character output (Char = '0a')
2018-12-17T21:52:58.340621375Z 2 PC: 1f0d0 | Character output (Char = '0d')
2018-12-17T21:52:58.346662468Z 2 PC: 1f0d7 | Character output (Char = '0a')
2018-12-17T21:52:58.350995363Z 13 PC: 1b649 | Disk reset
2018-12-17T21:52:58.353003899Z 25 PC: 1b61a | Get default drive
2018-12-17T21:52:58.354906986Z 37 PC: 1b4e9 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T21:52:58.356651313Z 53 PC: 1b45f | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T21:52:58.359148491Z 53 PC: 1b46c | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T21:52:58.361170634Z 37 PC: 1b47e | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T21:52:58.362564188Z 37 PC: 1b488 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T21:52:58.374367059Z 25 PC: 1b61a | Get default drive
2018-12-17T21:52:58.377357713Z 14 PC: 1b657 | Set default drive (Drive = 'A')
2018-12-17T21:52:58.378828477Z 14 PC: 1b657 | Set default drive (Drive = 'A')
2018-12-17T21:52:58.380332234Z 25 PC: 1b61a | Get default drive
2018-12-17T21:52:58.382212798Z 41 PC: 1b63e | Parse filename
2018-12-17T21:52:58.384029083Z 96 PC: 1e852 | Qualify filename
2018-12-17T21:52:58.387054721Z 68 PC: 1b6a6 | I/O control for devices (Set for = 'W')
2018-12-17T21:52:58.388998694Z 14 PC: 1b657 | Set default drive (Drive = 'C')
2018-12-17T21:52:58.390472564Z 25 PC: 1b61a | Get default drive
2018-12-17T21:52:58.392314643Z 41 PC: 1b63e | Parse filename
2018-12-17T21:52:58.394194428Z 96 PC: 1e852 | Qualify filename
2018-12-17T21:52:58.396906654Z 68 PC: 1b6a6 | I/O control for devices (Set for = 'W')
2018-12-17T21:52:58.399348899Z 14 PC: 1b657 | Set default drive (Drive = 'D')
2018-12-17T21:52:58.400836375Z 25 PC: 1b61a | Get default drive
2018-12-17T21:52:58.402253088Z 41 PC: 1b63e | Parse filename
2018-12-17T21:52:58.404768643Z 14 PC: 1b657 | Set default drive (Drive = 'E')
2018-12-17T21:52:58.406170923Z 25 PC: 1b61a | Get default drive
2018-12-17T21:52:58.407471237Z 41 PC: 1b63e | Parse filename
2018-12-17T21:52:58.409777278Z 14 PC: 1b657 | Set default drive (Drive = 'A')
2018-12-17T21:52:58.645855861Z 12 PC: 1e7a8 | Flush input buffer and input
2018-12-17T21:52:58.649259884Z 7 PC: 1e789 | Direct console input without echo