Sample viewer

vx.netlux.org/Virus.DOS.F1.337

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:19:43.87313753Z 241 PC: 12a48 | UNKNOWN!
2018-12-17T22:19:43.874458291Z 74 PC: 12a4f | Reallocate memory
2018-12-17T22:19:43.87656087Z 53 PC: 12a54 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:19:43.878265739Z 37 PC: 12a63 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:19:43.880225746Z 53 PC: 12b07 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:43.882700546Z 37 PC: 12b10 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:43.884073744Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:19:43.890993176Z 67 PC: 12b25 | Get or set file attributes
2018-12-17T22:19:43.909553749Z 72 PC: 12b2b | Allocate memory
2018-12-17T22:19:43.91177024Z 53 PC: 12b07 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:43.913695879Z 37 PC: 12b10 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:43.916285616Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:19:43.930414573Z 67 PC: 12b25 | Get or set file attributes
2018-12-17T22:19:43.941579998Z 72 PC: 12b2b | Allocate memory
2018-12-17T22:19:43.944227466Z 53 PC: 12b07 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:43.945985842Z 37 PC: 12b10 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:43.948073548Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:19:43.956311512Z 67 PC: 12b25 | Get or set file attributes
2018-12-17T22:19:43.968923671Z 72 PC: 12b2b | Allocate memory
2018-12-17T22:19:43.971530945Z 53 PC: 12b07 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:43.973800983Z 37 PC: 12b10 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:43.976981653Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:19:43.984320424Z 67 PC: 12b25 | Get or set file attributes
2018-12-17T22:19:43.999166236Z 72 PC: 12b2b | Allocate memory
2018-12-17T22:19:44.00315945Z 53 PC: 12b07 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.005218599Z 37 PC: 12b10 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.007207319Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:19:44.015379129Z 67 PC: 12b25 | Get or set file attributes
2018-12-17T22:19:44.026743305Z 72 PC: 12b2b | Allocate memory
2018-12-17T22:19:44.028525024Z 53 PC: 12b07 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.030051732Z 37 PC: 12b10 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.031983248Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:19:44.038400121Z 67 PC: 12b25 | Get or set file attributes
2018-12-17T22:19:44.049232047Z 72 PC: 12b2b | Allocate memory
2018-12-17T22:19:44.051414898Z 53 PC: 12b07 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.052774067Z 37 PC: 12b10 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.054074782Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:19:44.066796298Z 67 PC: 12b25 | Get or set file attributes
2018-12-17T22:19:44.07783717Z 72 PC: 12b2b | Allocate memory
2018-12-17T22:19:44.080157649Z 53 PC: 12b07 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.082283564Z 37 PC: 12b10 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.083825698Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:19:44.09112009Z 67 PC: 12b25 | Get or set file attributes
2018-12-17T22:19:44.103586132Z 72 PC: 12b2b | Allocate memory
2018-12-17T22:19:44.105637028Z 53 PC: 12b07 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.107265417Z 37 PC: 12b10 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.109864018Z 67 PC: 12b1a | Get or set file attributes
2018-12-17T22:19:44.113800946Z 67 PC: 12b25 | Get or set file attributes
2018-12-17T22:19:44.121917654Z 72 PC: 12b2b | Allocate memory
2018-12-17T22:19:44.123781907Z 67 PC: 12b83 | Get or set file attributes
2018-12-17T22:19:44.132502402Z 37 PC: 12b88 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.133594668Z 61 PC: 12b34 | Open file (Filename = '')
2018-12-17T22:19:44.138209652Z 63 PC: 12af3 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:19:44.143006576Z 66 PC: 12afd | Move file pointer
2018-12-17T22:19:44.144475052Z 62 PC: 12b79 | Close file
2018-12-17T22:19:44.146001871Z 73 PC: 12b7d | Release memory
2018-12-17T22:19:44.147887961Z 67 PC: 12b83 | Get or set file attributes
2018-12-17T22:19:44.154463446Z 37 PC: 12b88 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.155527386Z 61 PC: 12b34 | Open file (Filename = '')
2018-12-17T22:19:44.163989798Z 63 PC: 12af3 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:19:44.167472675Z 66 PC: 12afd | Move file pointer
2018-12-17T22:19:44.17002537Z 62 PC: 12b79 | Close file
2018-12-17T22:19:44.173346837Z 73 PC: 12b7d | Release memory
2018-12-17T22:19:44.175032034Z 67 PC: 12b83 | Get or set file attributes
2018-12-17T22:19:44.186844833Z 37 PC: 12b88 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.189924171Z 61 PC: 12b34 | Open file (Filename = '')
2018-12-17T22:19:44.203432372Z 63 PC: 12af3 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:19:44.210961628Z 66 PC: 12afd | Move file pointer
2018-12-17T22:19:44.213129458Z 62 PC: 12b79 | Close file
2018-12-17T22:19:44.215510199Z 73 PC: 12b7d | Release memory
2018-12-17T22:19:44.217302526Z 67 PC: 12b83 | Get or set file attributes
2018-12-17T22:19:44.229728158Z 37 PC: 12b88 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.231761615Z 61 PC: 12b34 | Open file (Filename = '')
2018-12-17T22:19:44.240025455Z 63 PC: 12af3 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:19:44.24332609Z 66 PC: 12afd | Move file pointer
2018-12-17T22:19:44.246611188Z 62 PC: 12b79 | Close file
2018-12-17T22:19:44.248806935Z 73 PC: 12b7d | Release memory
2018-12-17T22:19:44.250432665Z 67 PC: 12b83 | Get or set file attributes
2018-12-17T22:19:44.262567822Z 37 PC: 12b88 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.264007783Z 61 PC: 12b34 | Open file (Filename = '')
2018-12-17T22:19:44.272440123Z 63 PC: 12af3 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:19:44.276585784Z 66 PC: 12afd | Move file pointer
2018-12-17T22:19:44.279060921Z 62 PC: 12b79 | Close file
2018-12-17T22:19:44.281418845Z 73 PC: 12b7d | Release memory
2018-12-17T22:19:44.283528389Z 67 PC: 12b83 | Get or set file attributes
2018-12-17T22:19:44.295608329Z 37 PC: 12b88 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.296947431Z 61 PC: 12b34 | Open file (Filename = '')
2018-12-17T22:19:44.304433705Z 63 PC: 12af3 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:19:44.30842862Z 66 PC: 12afd | Move file pointer
2018-12-17T22:19:44.310188186Z 62 PC: 12b79 | Close file
2018-12-17T22:19:44.312209786Z 73 PC: 12b7d | Release memory
2018-12-17T22:19:44.31444714Z 67 PC: 12b83 | Get or set file attributes
2018-12-17T22:19:44.32999359Z 37 PC: 12b88 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.331596382Z 61 PC: 12b34 | Open file (Filename = '')
2018-12-17T22:19:44.340600022Z 63 PC: 12af3 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:19:44.34400477Z 66 PC: 12afd | Move file pointer
2018-12-17T22:19:44.346001154Z 62 PC: 12b79 | Close file
2018-12-17T22:19:44.347838709Z 73 PC: 12b7d | Release memory
2018-12-17T22:19:44.349739668Z 67 PC: 12b83 | Get or set file attributes
2018-12-17T22:19:44.356123253Z 37 PC: 12b88 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.357040216Z 61 PC: 12b34 | Open file (Filename = '�!')
2018-12-17T22:19:44.361866151Z 63 PC: 12af3 | Read file or device (Read 2 bytes on handle 5)
2018-12-17T22:19:44.363769102Z 66 PC: 12afd | Move file pointer
2018-12-17T22:19:44.364944365Z 62 PC: 12b79 | Close file
2018-12-17T22:19:44.367090784Z 73 PC: 12b7d | Release memory
2018-12-17T22:19:44.36830887Z 67 PC: 12b83 | Get or set file attributes
2018-12-17T22:19:44.375097564Z 37 PC: 12b88 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:19:44.376881701Z 75 PC: 12a87 | Execute program
2018-12-17T22:19:44.388134746Z 77 PC: 12a8b | Get program return code
2018-12-17T22:19:44.389790844Z 49 PC: 12a92 | Terminate and stay resident (Return code = '0' | Memory size = '54')