Sample viewer

vx.netlux.org/Virus.DOS.LG.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:15:30.577004619Z 53 PC: 12e37 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:15:30.578050455Z 37 PC: 12e41 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:15:30.579212129Z 53 PC: 12e37 | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:15:30.580113794Z 37 PC: 12e41 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:15:30.581085089Z 37 PC: 12b99 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:15:30.582405742Z 9 PC: 12a4f | Display string (String= 'FRODO LIVES!')
2018-12-17T23:15:30.584429015Z 76 PC: 12a54 | Terminate with return code (Return code = '0')
2018-12-17T23:15:30.58661294Z 77 PC: 11fe0 | Get program return code
2018-12-17T23:15:30.58819294Z 72 PC: 12174 | Allocate memory
2018-12-17T23:15:30.589434483Z 72 PC: 1218d | Allocate memory
2018-12-17T23:15:30.590826229Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T23:15:30.592460441Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:15:30.593286714Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.594209699Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.595469597Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.596564605Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.597613527Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.598836215Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.599914331Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.600932195Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.601913509Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.60323853Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.604272654Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.605080192Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.606365067Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.607427564Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.608241894Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.609813679Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.610962378Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.611862269Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.613604975Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.614700194Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.615556604Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.617148376Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.618256318Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.61906092Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.62059324Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.62167839Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.622474677Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.624028177Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.625087107Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.625885238Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.627406948Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.628536832Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.629319032Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.630760772Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.631969644Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.63282947Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.633923036Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.635491264Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.636329239Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.637432763Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.638951808Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.639759527Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.640822294Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.642358492Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.643161892Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:30.644208208Z 62 PC: 122ab | Close file
2018-12-17T23:15:30.646424063Z 99 PC: 995d7 | Get DBCS lead byte table pointer
2018-12-17T23:15:30.647371484Z 56 PC: 93df9 | Get or set country info
2018-12-17T23:15:30.648650869Z 64 PC: 99848 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T23:15:30.651840415Z 25 PC: 93e62 | Get default drive
2018-12-17T23:15:30.652952325Z 71 PC: 960dd | Get current directory
2018-12-17T23:15:30.655479204Z 64 PC: 99848 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T23:15:30.65810549Z 2 PC: 960b2 | Character output (Char = '3e')
2018-12-17T23:15:30.659592616Z 93 PC: 93f20 | File sharing functions
2018-12-17T23:15:30.660711228Z 93 PC: 93f27 | File sharing functions
2018-12-17T23:15:30.662817337Z 10 PC: 93f39 | Buffered keyboard input
2018-12-17T23:15:45.587697023Z 0 PC: 0 | Program terminate
2018-12-17T23:15:46.942348424Z 0 PC: 0 | Program terminate
2018-12-17T23:15:47.04560634Z 64 PC: 99848 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T23:15:47.051801025Z 41 PC: 93fae | Parse filename
2018-12-17T23:15:47.054571613Z 41 PC: 9402f | Parse filename
2018-12-17T23:15:47.056195986Z 41 PC: 9404c | Parse filename
2018-12-17T23:15:47.062331107Z 26 PC: 974f7 | Set disk transfer address
2018-12-17T23:15:47.065450039Z 71 PC: 976f3 | Get current directory
2018-12-17T23:15:47.074396044Z 78 PC: 976fe | Find first file
2018-12-17T23:15:47.096715828Z 71 PC: 9756c | Get current directory
2018-12-17T23:15:47.10085111Z 73 PC: 96c09 | Release memory
2018-12-17T23:15:47.102704233Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.104880574Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.106514145Z 75 PC: 11821 | Execute program
2018-12-17T23:15:47.126406235Z 9 PC: 12a47 | Display string (String= 'Hello, World! ')
2018-12-17T23:15:47.131034554Z 76 PC: 12a4b | Terminate with return code (Return code = '36')
2018-12-17T23:15:47.134849835Z 77 PC: 11fe0 | Get program return code
2018-12-17T23:15:47.137708289Z 72 PC: 12174 | Allocate memory
2018-12-17T23:15:47.139840997Z 72 PC: 1218d | Allocate memory
2018-12-17T23:15:47.141490006Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T23:15:47.143768008Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:15:47.145123687Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.146529228Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.14897782Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.150698625Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.152815103Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.15448379Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.156307548Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.157931971Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.160451807Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.16250152Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.164461885Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.16622563Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.16873683Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.170452245Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.171846165Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.17465788Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.176867493Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.178441401Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.181446049Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.183295405Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.184775356Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.187248715Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.194945303Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.196817892Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.200132112Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.202178077Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.203776151Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.206855018Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.20895737Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.210753285Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.214585829Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.216290283Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.217657603Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.220057384Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.222455932Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.224059105Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.226763869Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.229267656Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.23084986Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.233193845Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.236334128Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.237918837Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.240095448Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.2427886Z 53 PC: 9efd6 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.244138417Z 37 PC: 9efe0 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:15:47.245881063Z 62 PC: 122ab | Close file
2018-12-17T23:15:47.250331137Z 99 PC: 995d7 | Get DBCS lead byte table pointer
2018-12-17T23:15:47.251808073Z 56 PC: 93df9 | Get or set country info
2018-12-17T23:15:47.253864398Z 64 PC: 99848 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T23:15:47.259183646Z 25 PC: 93e62 | Get default drive
2018-12-17T23:15:47.261490392Z 71 PC: 960dd | Get current directory
2018-12-17T23:15:47.26604833Z 64 PC: 99848 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T23:15:47.270992763Z 2 PC: 960b2 | Character output (Char = '3e')
2018-12-17T23:15:47.273797345Z 93 PC: 93f20 | File sharing functions
2018-12-17T23:15:47.275873427Z 93 PC: 93f27 | File sharing functions
2018-12-17T23:15:47.27857778Z 10 PC: 93f39 | Buffered keyboard input