Sample viewer

vx.netlux.org/Virus.DOS.HLLP.5602.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:22:52.320844631Z 48 PC: 12a4c | Get DOS version
2018-12-17T22:22:52.323116385Z 74 PC: 12af0 | Reallocate memory
2018-12-17T22:22:52.32621727Z 67 PC: 1383d | Get or set file attributes
2018-12-17T22:22:52.332371466Z 67 PC: 1383d | Get or set file attributes
2018-12-17T22:22:52.349467414Z 61 PC: 13670 | Open file (Filename = '')
2018-12-17T22:22:52.356371737Z 68 PC: 136a5 | I/O control for devices (Set for = '6-+&D'&&&D &D&d X t&E#t /t)')
2018-12-17T22:22:52.358162644Z 66 PC: 1399a | Move file pointer
2018-12-17T22:22:52.360422634Z 66 PC: 139a7 | Move file pointer
2018-12-17T22:22:52.362388438Z 66 PC: 139b6 | Move file pointer
2018-12-17T22:22:52.364208895Z 87 PC: 1419e | Get or set file date and time
2018-12-17T22:22:52.366133878Z 66 PC: 1375f | Move file pointer
2018-12-17T22:22:52.368405401Z 63 PC: 136ef | Read file or device (Read 5602 bytes on handle 5)
2018-12-17T22:22:52.376503612Z 26 PC: 13edd | Set disk transfer address
2018-12-17T22:22:52.378184851Z 78 PC: 13ee7 | Find first file
2018-12-17T22:22:52.385204228Z 67 PC: 1383d | Get or set file attributes
2018-12-17T22:22:52.391179494Z 67 PC: 1383d | Get or set file attributes
2018-12-17T22:22:52.401379513Z 61 PC: 13670 | Open file (Filename = 'TEST.EXE')
2018-12-17T22:22:52.413705054Z 68 PC: 136a5 | I/O control for devices (Set for = '')
2018-12-17T22:22:52.415232253Z 87 PC: 1419e | Get or set file date and time
2018-12-17T22:22:52.416725493Z 66 PC: 1375f | Move file pointer
2018-12-17T22:22:52.419619977Z 63 PC: 136ef | Read file or device (Read 5602 bytes on handle 6)
2018-12-17T22:22:52.426978232Z 67 PC: 1383d | Get or set file attributes
2018-12-17T22:22:52.436849747Z 26 PC: 13eff | Set disk transfer address
2018-12-17T22:22:52.438543208Z 79 PC: 13f03 | Find next file
2018-12-17T22:22:52.443152612Z 66 PC: 1375f | Move file pointer
2018-12-17T22:22:52.444472514Z 63 PC: 136ef | Read file or device (Read 5602 bytes on handle 5)
2018-12-17T22:22:52.453075896Z 66 PC: 1375f | Move file pointer
2018-12-17T22:22:52.454491245Z 64 PC: 13728 | Write file or device (Write 5602 bytes on handle 5)
2018-12-17T22:22:52.462358223Z 62 PC: 136c8 | Close file
2018-12-17T22:22:52.472116835Z 26 PC: 13edd | Set disk transfer address
2018-12-17T22:22:52.484207795Z 78 PC: 13ee7 | Find first file
2018-12-17T22:22:52.491198158Z 41 PC: 1452d | Parse filename
2018-12-17T22:22:52.492881492Z 41 PC: 1453b | Parse filename
2018-12-17T22:22:52.496866024Z 75 PC: 1457b | Execute program
2018-12-17T22:22:52.51266921Z 76 PC: 28417 | Terminate with return code (Return code = '0')
2018-12-17T22:22:52.515799037Z 77 PC: 1459d | Get program return code
2018-12-17T22:22:52.51810332Z 61 PC: 13670 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:22:52.525200227Z 68 PC: 136a5 | I/O control for devices (Set for = '')
2018-12-17T22:22:52.526847567Z 66 PC: 1375f | Move file pointer
2018-12-17T22:22:52.529501654Z 64 PC: 13728 | Write file or device (Write 5602 bytes on handle 5)
2018-12-17T22:22:52.538108094Z 87 PC: 144e3 | Get or set file date and time
2018-12-17T22:22:52.539578555Z 62 PC: 136c8 | Close file
2018-12-17T22:22:52.547412443Z 67 PC: 1383d | Get or set file attributes
2018-12-17T22:22:52.55758948Z 76 PC: 12b4b | Terminate with return code (Return code = '0')