Sample viewer

vx.netlux.org/Virus.DOS.HXH.1585

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:32:12.303874123Z 254 PC: 1753a | UNKNOWN!
2018-12-17T22:32:12.305898332Z 53 PC: 175c9 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:32:12.307296455Z 37 PC: 175da | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:32:12.308673394Z 99 PC: 13726 | Get DBCS lead byte table pointer
2018-12-17T22:32:12.310486464Z 68 PC: 13740 | I/O control for devices (Set for = '')
2018-12-17T22:32:12.31209999Z 68 PC: 1374b | I/O control for devices (Set for = '')
2018-12-17T22:32:12.313758185Z 68 PC: 13756 | I/O control for devices (Set for = '')
2018-12-17T22:32:12.317469981Z 68 PC: 1375e | I/O control for devices (Set for = '��b���g�t�S3����[r�2��W�<t�<u�6�u����>��>W')
2018-12-17T22:32:12.319196817Z 48 PC: 13763 | Get DOS version
2018-12-17T22:32:12.32057198Z 37 PC: 1666f | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:32:12.325052953Z 53 PC: 16678 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:12.326768163Z 37 PC: 1668f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:32:12.327821581Z 25 PC: 165ed | Get default drive
2018-12-17T22:32:12.329189288Z 71 PC: 165f7 | Get current directory
2018-12-17T22:32:12.333906799Z 64 PC: 139e5 | Write file or device (Write 30 bytes on handle 2)
2018-12-17T22:32:12.337411966Z 64 PC: 139e5 | Write file or device (Write 9 bytes on handle 1)
2018-12-17T22:32:12.339838441Z 64 PC: 139e5 | Write file or device (Write 17 bytes on handle 1)
2018-12-17T22:32:12.34669501Z 76 PC: 147f8 | Terminate with return code (Return code = '4')