Sample viewer

vx.netlux.org/Virus.DOS.I13.Kraken.1263

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:28:55.156674856Z 48 PC: 12e35 | Get DOS version
2018-12-17T22:28:55.158015025Z 53 PC: 12e42 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:28:55.159787877Z 74 PC: 12ea1 | Reallocate memory
2018-12-17T22:28:55.161482364Z 72 PC: 12ea8 | Allocate memory
2018-12-17T22:28:55.163465859Z 37 PC: 12ecd | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:28:55.170366821Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=000003E8h/0000001000d bytes. ')
2018-12-17T22:28:55.175109396Z 76 PC: 12a86 | Terminate with return code (Return code = '36')
2018-12-17T22:28:55.180334374Z 77 PC: 11fe0 | Get program return code
2018-12-17T22:28:55.183157651Z 72 PC: 12174 | Allocate memory
2018-12-17T22:28:55.185038175Z 72 PC: 1218d | Allocate memory
2018-12-17T22:28:55.187445223Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:28:55.189482213Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:28:55.190864012Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.19277187Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.194377174Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.196339367Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.197844619Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.200008916Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.201182925Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.202498525Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.204050591Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.205354921Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.206388436Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.209542587Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.210952383Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.212522493Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.214381403Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.216451462Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.217865968Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.219742446Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.22512872Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.227160305Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.228422785Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.230462822Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.23171115Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.233258902Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.23583626Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.2375884Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.239005791Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.241615987Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.242894853Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.24453935Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.246417663Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.248372345Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.249851645Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.252299702Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.253779654Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.255611012Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.257497147Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.259401569Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.260955852Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.263537389Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.265204271Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.267016967Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.268901194Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.270458208Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.271537909Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.273698758Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.275769383Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.278330465Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.280519314Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.28241109Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.283972594Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.28652673Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.287701306Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.289288227Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.291212167Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.292819153Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.293939795Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.296224639Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.297540028Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.299198757Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:28:55.301251569Z 62 PC: 122ab | Close file
2018-12-17T22:28:55.305258029Z 99 PC: 9a0d7 | Get DBCS lead byte table pointer
2018-12-17T22:28:55.306857118Z 56 PC: 948f9 | Get or set country info
2018-12-17T22:28:55.311686082Z 64 PC: 9a348 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:28:55.316288663Z 25 PC: 94962 | Get default drive
2018-12-17T22:28:55.317986312Z 71 PC: 96bdd | Get current directory
2018-12-17T22:28:55.322815684Z 64 PC: 9a348 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:28:55.327248778Z 2 PC: 96bb2 | Character output (Char = '3e')
2018-12-17T22:28:55.329511387Z 93 PC: 94a20 | File sharing functions
2018-12-17T22:28:55.33187394Z 93 PC: 94a27 | File sharing functions
2018-12-17T22:28:55.33379104Z 10 PC: 94a39 | Buffered keyboard input
2018-12-17T22:29:10.150365748Z 0 PC: 0 | Program terminate
2018-12-17T22:29:11.504409929Z 0 PC: 0 | Program terminate
2018-12-17T22:29:11.607046589Z 64 PC: 9a348 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:29:11.613220376Z 41 PC: 94aae | Parse filename
2018-12-17T22:29:11.614988983Z 41 PC: 94b2f | Parse filename
2018-12-17T22:29:11.616475501Z 41 PC: 94b4c | Parse filename
2018-12-17T22:29:11.620665537Z 26 PC: 97ff7 | Set disk transfer address
2018-12-17T22:29:11.622299054Z 71 PC: 981f3 | Get current directory
2018-12-17T22:29:11.630305505Z 78 PC: 9f89d | Find first file
2018-12-17T22:29:11.639701277Z 47 PC: 9f8a8 | Get disk transfer address
2018-12-17T22:29:11.641128204Z 71 PC: 9806c | Get current directory
2018-12-17T22:29:11.644129217Z 73 PC: 97709 | Release memory
2018-12-17T22:29:11.646153756Z 53 PC: 9fa82 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.647278708Z 37 PC: 9fa96 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.64830101Z 61 PC: 9fac9 | Open file (Filename = 'A:\PRINT.COM')
2018-12-17T22:29:11.660965933Z 87 PC: 9fad5 | Get or set file date and time
2018-12-17T22:29:11.662847124Z 63 PC: 9faf9 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:29:11.670258578Z 66 PC: 9fbf0 | Move file pointer
2018-12-17T22:29:11.673013715Z 62 PC: 9fb51 | Close file
2018-12-17T22:29:11.6750863Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.676487875Z 75 PC: 11821 | Execute program
2018-12-17T22:29:11.687892913Z 9 PC: 12a47 | Display string (String= 'Hello, World! ')
2018-12-17T22:29:11.69240242Z 76 PC: 12a4b | Terminate with return code (Return code = '36')
2018-12-17T22:29:11.695858171Z 77 PC: 11fe0 | Get program return code
2018-12-17T22:29:11.698173263Z 72 PC: 12174 | Allocate memory
2018-12-17T22:29:11.700643579Z 72 PC: 1218d | Allocate memory
2018-12-17T22:29:11.709697493Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:29:11.711801514Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:29:11.713081184Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.714413725Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.716499856Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.718432758Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.719582044Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.721429391Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.723460747Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.725775293Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.726914881Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.729141655Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.730416051Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.732230582Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.734184969Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.73617869Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.737415223Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.739949398Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.748653966Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.750714671Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.754093895Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.757601516Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.759044055Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.761838314Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.763762416Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.76567013Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.767874711Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.77991525Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.781232121Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.784029245Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.787309326Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.78937895Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.79324706Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.795901556Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.797482994Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.80044709Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.802937808Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.804853606Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.806318562Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.809563759Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.811119174Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.813045353Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.815453986Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.817305518Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.818843489Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.821790683Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.823158869Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.825012612Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.827583841Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.829491283Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.831246354Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.833968412Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.835820106Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.837688153Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.839888806Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.842095938Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.843607413Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.846284562Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.848005278Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.849989758Z 53 PC: 9fb7c | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.852281617Z 37 PC: 9fb90 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.854510024Z 37 PC: 9fb5c | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:29:11.855909782Z 62 PC: 122ab | Close file
2018-12-17T22:29:11.859322113Z 99 PC: 9a0d7 | Get DBCS lead byte table pointer
2018-12-17T22:29:11.861828554Z 56 PC: 948f9 | Get or set country info
2018-12-17T22:29:11.864067135Z 64 PC: 9a348 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:29:11.868842269Z 25 PC: 94962 | Get default drive
2018-12-17T22:29:11.871482795Z 71 PC: 96bdd | Get current directory
2018-12-17T22:29:11.875737501Z 64 PC: 9a348 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:29:11.879205512Z 2 PC: 96bb2 | Character output (Char = '3e')
2018-12-17T22:29:11.882698422Z 93 PC: 94a20 | File sharing functions
2018-12-17T22:29:11.885201422Z 93 PC: 94a27 | File sharing functions
2018-12-17T22:29:11.88728572Z 10 PC: 94a39 | Buffered keyboard input