Sample viewer

vx.netlux.org/Virus.DOS.HLLP.Teacher.5113

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:23:18.080047054Z 53 PC: 137ea | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:23:18.082707021Z 53 PC: 137ea | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:23:18.084007695Z 53 PC: 137ea | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:23:18.085522431Z 53 PC: 137ea | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:23:18.087486358Z 53 PC: 137ea | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:23:18.088649147Z 53 PC: 137ea | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:23:18.090044701Z 53 PC: 137ea | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:23:18.091975137Z 53 PC: 137ea | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:23:18.093335763Z 53 PC: 137ea | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:23:18.094707684Z 53 PC: 137ea | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:23:18.096568413Z 53 PC: 137ea | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:23:18.097829904Z 53 PC: 137ea | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:23:18.099054746Z 53 PC: 137ea | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:23:18.1005471Z 53 PC: 137ea | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:23:18.10235239Z 53 PC: 137ea | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:23:18.103813027Z 53 PC: 137ea | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:23:18.105309955Z 53 PC: 137ea | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:23:18.107048175Z 53 PC: 137ea | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:23:18.108182601Z 53 PC: 137ea | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:23:18.109441523Z 37 PC: 137ff | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:23:18.111364985Z 37 PC: 13807 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:23:18.112629896Z 37 PC: 1380f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:23:18.114125675Z 37 PC: 13817 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:23:18.11940253Z 68 PC: 1445c | I/O control for devices (Set for = '')
2018-12-17T22:23:18.122814462Z 67 PC: 1360c | Get or set file attributes
2018-12-17T22:23:18.129528225Z 67 PC: 1360c | Get or set file attributes
2018-12-17T22:23:18.140599321Z 67 PC: 1358f | Get or set file attributes
2018-12-17T22:23:18.478096855Z 61 PC: 13eb0 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T22:23:18.48602561Z 66 PC: 1455b | Move file pointer
2018-12-17T22:23:18.48922446Z 66 PC: 14569 | Move file pointer
2018-12-17T22:23:18.497604849Z 66 PC: 14577 | Move file pointer
2018-12-17T22:23:18.499136568Z 66 PC: 13fe2 | Move file pointer
2018-12-17T22:23:18.501588944Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.505530709Z 67 PC: 1360c | Get or set file attributes
2018-12-17T22:23:18.511659429Z 67 PC: 1360c | Get or set file attributes
2018-12-17T22:23:18.520035509Z 67 PC: 13568 | Get or set file attributes
2018-12-17T22:23:18.523356465Z 62 PC: 13f00 | Close file
2018-12-17T22:23:18.525456062Z 26 PC: 135a6 | Set disk transfer address
2018-12-17T22:23:18.527507359Z 78 PC: 13557 | Find first file
2018-12-17T22:23:18.534234769Z 67 PC: 13568 | Get or set file attributes
2018-12-17T22:23:18.540062941Z 61 PC: 13eb0 | Open file (Filename = 'TEST.EXE')
2018-12-17T22:23:18.547095745Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.550356588Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.553121427Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.55579078Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.559635964Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.562746835Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.565228842Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.568027908Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.570484518Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.572880345Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.575466804Z 62 PC: 13f00 | Close file
2018-12-17T22:23:18.577549113Z 26 PC: 135c8 | Set disk transfer address
2018-12-17T22:23:18.578694313Z 79 PC: 135cd | Find next file
2018-12-17T22:23:18.582229011Z 26 PC: 135a6 | Set disk transfer address
2018-12-17T22:23:18.583243309Z 78 PC: 13557 | Find first file
2018-12-17T22:23:18.58926045Z 67 PC: 13568 | Get or set file attributes
2018-12-17T22:23:18.596395009Z 61 PC: 13eb0 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:23:18.603376085Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.609787582Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.613287179Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.616108957Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.618993763Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.622682188Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.625368384Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.62807053Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.636571119Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.639221794Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.641965662Z 66 PC: 1455b | Move file pointer
2018-12-17T22:23:18.644740683Z 66 PC: 14569 | Move file pointer
2018-12-17T22:23:18.647076381Z 66 PC: 14577 | Move file pointer
2018-12-17T22:23:18.649746663Z 62 PC: 13f00 | Close file
2018-12-17T22:23:18.652212846Z 26 PC: 135c8 | Set disk transfer address
2018-12-17T22:23:18.654660446Z 79 PC: 135cd | Find next file
2018-12-17T22:23:18.657940422Z 67 PC: 13568 | Get or set file attributes
2018-12-17T22:23:18.664030851Z 61 PC: 13eb0 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:23:18.671156664Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.678004585Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.680794163Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.684284306Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.6873907Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.690412507Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.69374137Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.696344257Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.698845426Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.702098167Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.70459275Z 66 PC: 1455b | Move file pointer
2018-12-17T22:23:18.705991468Z 66 PC: 14569 | Move file pointer
2018-12-17T22:23:18.708474501Z 66 PC: 14577 | Move file pointer
2018-12-17T22:23:18.709948461Z 62 PC: 13f00 | Close file
2018-12-17T22:23:18.711712737Z 26 PC: 135c8 | Set disk transfer address
2018-12-17T22:23:18.713511097Z 79 PC: 135cd | Find next file
2018-12-17T22:23:18.716561201Z 67 PC: 13568 | Get or set file attributes
2018-12-17T22:23:18.722279226Z 61 PC: 13eb0 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:23:18.730246269Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.736656437Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.739067241Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.741967482Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.7449885Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.747383131Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.750390615Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.752748573Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.755260939Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.758349929Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.760727482Z 66 PC: 1455b | Move file pointer
2018-12-17T22:23:18.762039562Z 66 PC: 14569 | Move file pointer
2018-12-17T22:23:18.763990222Z 66 PC: 14577 | Move file pointer
2018-12-17T22:23:18.765381715Z 62 PC: 13f00 | Close file
2018-12-17T22:23:18.767089894Z 26 PC: 135c8 | Set disk transfer address
2018-12-17T22:23:18.76879945Z 79 PC: 135cd | Find next file
2018-12-17T22:23:18.771688044Z 67 PC: 13568 | Get or set file attributes
2018-12-17T22:23:18.7772321Z 61 PC: 13eb0 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:23:18.783854031Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.790074559Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.792633986Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.79540602Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.797747305Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.800048919Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.802629287Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.804915685Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.80722329Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.809738447Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.812783041Z 66 PC: 1455b | Move file pointer
2018-12-17T22:23:18.814370815Z 66 PC: 14569 | Move file pointer
2018-12-17T22:23:18.816249129Z 66 PC: 14577 | Move file pointer
2018-12-17T22:23:18.817557135Z 62 PC: 13f00 | Close file
2018-12-17T22:23:18.819151484Z 26 PC: 135c8 | Set disk transfer address
2018-12-17T22:23:18.82127789Z 79 PC: 135cd | Find next file
2018-12-17T22:23:18.824567072Z 67 PC: 13568 | Get or set file attributes
2018-12-17T22:23:18.830537347Z 61 PC: 13eb0 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:23:18.837694232Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.844178466Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.846500001Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.849363661Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.852037323Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.854765381Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.857480308Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.859789606Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.862093818Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.864495874Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.866783243Z 66 PC: 1455b | Move file pointer
2018-12-17T22:23:18.868081358Z 66 PC: 14569 | Move file pointer
2018-12-17T22:23:18.870131727Z 66 PC: 14577 | Move file pointer
2018-12-17T22:23:18.871410895Z 62 PC: 13f00 | Close file
2018-12-17T22:23:18.873004242Z 26 PC: 135c8 | Set disk transfer address
2018-12-17T22:23:18.874468686Z 79 PC: 135cd | Find next file
2018-12-17T22:23:18.877246283Z 67 PC: 13568 | Get or set file attributes
2018-12-17T22:23:18.883430261Z 61 PC: 13eb0 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:23:18.890885913Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.897135236Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.899550828Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.903069768Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.906072009Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.908618523Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.911686592Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.914513618Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.917148472Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.920351517Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.922830065Z 66 PC: 1455b | Move file pointer
2018-12-17T22:23:18.924113599Z 66 PC: 14569 | Move file pointer
2018-12-17T22:23:18.925849017Z 66 PC: 14577 | Move file pointer
2018-12-17T22:23:18.927163875Z 62 PC: 13f00 | Close file
2018-12-17T22:23:18.928785242Z 26 PC: 135c8 | Set disk transfer address
2018-12-17T22:23:18.930089998Z 79 PC: 135cd | Find next file
2018-12-17T22:23:18.933177511Z 67 PC: 13568 | Get or set file attributes
2018-12-17T22:23:18.939115285Z 61 PC: 13eb0 | Open file (Filename = 'PAH.COM')
2018-12-17T22:23:18.945814295Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.952765288Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.955822903Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.95819661Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.960392233Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.963208568Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.965708091Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.968179309Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.972046855Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.974721439Z 63 PC: 13f42 | Read file or device (Read 1 bytes on handle 5)
2018-12-17T22:23:18.977521989Z 66 PC: 1455b | Move file pointer
2018-12-17T22:23:18.979598851Z 66 PC: 14569 | Move file pointer
2018-12-17T22:23:18.981057631Z 66 PC: 14577 | Move file pointer
2018-12-17T22:23:18.982630315Z 62 PC: 13f00 | Close file
2018-12-17T22:23:18.985342019Z 26 PC: 135c8 | Set disk transfer address
2018-12-17T22:23:18.986522187Z 79 PC: 135cd | Find next file
2018-12-17T22:23:18.989145561Z 42 PC: 12d54 | Get date 0x12d54: mov byte ptr [0xa91], dl
0x12d58: cmp byte ptr [0xa91], 0xd
0x12d5d: je 0x12d69
0x12d5f: cmp byte ptr [0xa91], 0x17
0x12d64: je 0x12d69
0x12d66: jmp 0x12e38
0x12d69: mov di, 0x1ce
0x12d6c: push cs
0x12d6d: push di
0x12d6e: mov di, 0x789
0x12d71: push ds
0x12d72: push di
0x12d73: mov ax, 0xff
0x12d76: push ax
0x12d77: lcall 0x1379:0xa86
0x12d7c: call 0x22b6d
0x12d7f: mov di, 0x989
0x12d82: push ds
0x12d83: push di
0x12d84: mov di, 0x689
2018-12-17T22:23:18.99219572Z 60 PC: 13eb0 | Create or truncate file
2018-12-17T22:23:19.009403024Z 63 PC: 13f83 | Read file or device (Read 5113 bytes on handle 0)