Sample viewer

vx.netlux.org/Virus.DOS.Vpp.684

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:21:20.754485605Z 99 PC: 13f00 | Get DBCS lead byte table pointer
2018-12-17T22:21:20.756971128Z 68 PC: 13f1a | I/O control for devices (Set for = '')
2018-12-17T22:21:20.758310093Z 68 PC: 13f25 | I/O control for devices (Set for = '')
2018-12-17T22:21:20.7604077Z 68 PC: 13f30 | I/O control for devices (Set for = '')
2018-12-17T22:21:20.762847219Z 68 PC: 13f38 | I/O control for devices (Set for = 'bgtS3[r2W<t<u6u>>W')
2018-12-17T22:21:20.764722309Z 48 PC: 13f3d | Get DOS version
2018-12-17T22:21:20.767067002Z 47 PC: 145b2 | Get disk transfer address
2018-12-17T22:21:20.769135474Z 26 PC: 145c8 | Set disk transfer address
2018-12-17T22:21:20.770989021Z 78 PC: 145db | Find first file
2018-12-17T22:21:20.777027761Z 67 PC: 14611 | Get or set file attributes
2018-12-17T22:21:20.79299854Z 61 PC: 1461e | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:21:20.800525666Z 66 PC: 1462f | Move file pointer
2018-12-17T22:21:20.801804326Z 62 PC: 14686 | Close file
2018-12-17T22:21:20.803376163Z 67 PC: 1469b | Get or set file attributes
2018-12-17T22:21:20.813410497Z 79 PC: 145db | Find next file
2018-12-17T22:21:20.816831291Z 67 PC: 14611 | Get or set file attributes
2018-12-17T22:21:20.826398509Z 61 PC: 1461e | Open file (Filename = 'PRINT.COM')
2018-12-17T22:21:20.833014622Z 66 PC: 1462f | Move file pointer
2018-12-17T22:21:20.834309819Z 62 PC: 14686 | Close file
2018-12-17T22:21:20.835911823Z 67 PC: 1469b | Get or set file attributes
2018-12-17T22:21:20.84602653Z 79 PC: 145db | Find next file
2018-12-17T22:21:20.848944864Z 67 PC: 14611 | Get or set file attributes
2018-12-17T22:21:20.859447369Z 61 PC: 1461e | Open file (Filename = 'HELLO.COM')
2018-12-17T22:21:20.866669233Z 66 PC: 1462f | Move file pointer
2018-12-17T22:21:20.868375263Z 62 PC: 14686 | Close file
2018-12-17T22:21:20.870040015Z 67 PC: 1469b | Get or set file attributes
2018-12-17T22:21:20.879867125Z 79 PC: 145db | Find next file
2018-12-17T22:21:20.882658744Z 67 PC: 14611 | Get or set file attributes
2018-12-17T22:21:20.892473077Z 61 PC: 1461e | Open file (Filename = 'PHANG.COM')
2018-12-17T22:21:20.905615356Z 66 PC: 1462f | Move file pointer
2018-12-17T22:21:20.907343Z 62 PC: 14686 | Close file
2018-12-17T22:21:20.909405644Z 67 PC: 1469b | Get or set file attributes
2018-12-17T22:21:20.921079653Z 79 PC: 145db | Find next file
2018-12-17T22:21:20.923654529Z 67 PC: 14611 | Get or set file attributes
2018-12-17T22:21:20.93331046Z 61 PC: 1461e | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:21:20.940291892Z 66 PC: 1462f | Move file pointer
2018-12-17T22:21:20.94244826Z 62 PC: 14686 | Close file
2018-12-17T22:21:20.944740375Z 67 PC: 1469b | Get or set file attributes
2018-12-17T22:21:20.955845311Z 79 PC: 145db | Find next file
2018-12-17T22:21:20.958788793Z 67 PC: 14611 | Get or set file attributes
2018-12-17T22:21:20.971622415Z 61 PC: 1461e | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:21:20.979032922Z 66 PC: 1462f | Move file pointer
2018-12-17T22:21:20.980482658Z 62 PC: 14686 | Close file
2018-12-17T22:21:20.982187956Z 67 PC: 1469b | Get or set file attributes
2018-12-17T22:21:20.992886783Z 79 PC: 145db | Find next file
2018-12-17T22:21:20.996046155Z 67 PC: 14611 | Get or set file attributes
2018-12-17T22:21:21.006136869Z 61 PC: 1461e | Open file (Filename = 'PAH.COM')
2018-12-17T22:21:21.013625521Z 66 PC: 1462f | Move file pointer
2018-12-17T22:21:21.015067296Z 62 PC: 14686 | Close file
2018-12-17T22:21:21.016778689Z 67 PC: 1469b | Get or set file attributes
2018-12-17T22:21:21.029750232Z 79 PC: 145db | Find next file
2018-12-17T22:21:21.032426656Z 67 PC: 14611 | Get or set file attributes
2018-12-17T22:21:21.042266726Z 61 PC: 1461e | Open file (Filename = 'TEST.COM')
2018-12-17T22:21:21.050041755Z 66 PC: 1462f | Move file pointer
2018-12-17T22:21:21.051517873Z 66 PC: 14654 | Move file pointer
2018-12-17T22:21:21.052712905Z 63 PC: 14664 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:21:21.060220322Z 62 PC: 14686 | Close file
2018-12-17T22:21:21.061838046Z 67 PC: 1469b | Get or set file attributes
2018-12-17T22:21:21.071578857Z 79 PC: 145db | Find next file
2018-12-17T22:21:21.074068193Z 26 PC: 145f3 | Set disk transfer address
2018-12-17T22:21:21.075627399Z 25 PC: 12d0d | Get default drive
2018-12-17T22:21:21.076613453Z 26 PC: 12ddc | Set disk transfer address
2018-12-17T22:21:21.07787646Z 53 PC: 12e03 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:21:21.079662267Z 37 PC: 12e14 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:21:21.080738414Z 53 PC: 12e1a | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:21:21.081841585Z 37 PC: 12e2b | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:21:21.084275808Z 71 PC: 12d30 | Get current directory
2018-12-17T22:21:21.087043903Z 17 PC: 12e60 | Find first file
2018-12-17T22:21:21.093430612Z 64 PC: 141b6 | Write file or device (Write 34 bytes on handle 1)
2018-12-17T22:21:21.096763934Z 64 PC: 141b6 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:21:21.099674969Z 64 PC: 141b6 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:21:21.10457417Z 105 PC: 12eb1 | Get or set media id
2018-12-17T22:21:21.110961904Z 64 PC: 141b6 | Write file or device (Write 24 bytes on handle 1)
2018-12-17T22:21:21.116206072Z 64 PC: 141b6 | Write file or device (Write 4 bytes on handle 1)
2018-12-17T22:21:21.119142877Z 64 PC: 14186 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:21:21.123922768Z 64 PC: 141b6 | Write file or device (Write 4 bytes on handle 1)
2018-12-17T22:21:21.126670381Z 64 PC: 141b6 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:21:21.131061168Z 64 PC: 131c9 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:21:21.135912957Z 64 PC: 131c9 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:21:21.140482389Z 78 PC: 12e9f | Find first file
2018-12-17T22:21:21.147510446Z 59 PC: 12ef9 | Change current directory
2018-12-17T22:21:21.152641312Z 71 PC: 12f0d | Get current directory
2018-12-17T22:21:21.155668742Z 26 PC: 13079 | Set disk transfer address
2018-12-17T22:21:21.156756179Z 78 PC: 13083 | Find first file
2018-12-17T22:21:21.164514586Z 79 PC: 13089 | Find next file
2018-12-17T22:21:21.17000344Z 79 PC: 13089 | Find next file
2018-12-17T22:21:21.173426048Z 79 PC: 13089 | Find next file
2018-12-17T22:21:21.178239148Z 79 PC: 13089 | Find next file
2018-12-17T22:21:21.181081427Z 79 PC: 13089 | Find next file
2018-12-17T22:21:21.183891598Z 79 PC: 13089 | Find next file
2018-12-17T22:21:21.187637971Z 79 PC: 13089 | Find next file
2018-12-17T22:21:21.190427195Z 79 PC: 13089 | Find next file
2018-12-17T22:21:21.193220587Z 79 PC: 13089 | Find next file
2018-12-17T22:21:21.196813537Z 89 PC: 131e8 | Get extended error info
2018-12-17T22:21:21.198193693Z 64 PC: 141b6 | Write file or device (Write 27 bytes on handle 1)
2018-12-17T22:21:21.201783333Z 59 PC: 1323b | Change current directory
2018-12-17T22:21:21.20647617Z 14 PC: 13243 | Set default drive (Drive = 'A')
2018-12-17T22:21:21.207836919Z 37 PC: 1325d | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:21:21.209078748Z 37 PC: 13268 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:21:21.211099643Z 76 PC: 12d4f | Terminate with return code (Return code = '0')