Sample viewer

vx.netlux.org/Virus.DOS.HLLO.Big&Fat.6561

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:35:04.057802223Z 48 PC: 12a4c | Get DOS version
2018-12-17T22:35:04.060400247Z 53 PC: 12bab | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:35:04.062342383Z 53 PC: 12bb8 | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:35:04.063610171Z 53 PC: 12bc5 | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:35:04.064708865Z 53 PC: 12bd2 | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:35:04.066837667Z 37 PC: 12be6 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:35:04.068377129Z 74 PC: 12af4 | Reallocate memory
2018-12-17T22:35:04.070912088Z 68 PC: 13c11 | I/O control for devices (Set for = '�y ')
2018-12-17T22:35:04.077983407Z 68 PC: 13c11 | I/O control for devices (Set for = '�y ')
2018-12-17T22:35:04.07987705Z 42 PC: 13367 | Get date 0x13367: mov word ptr [si], cx
0x13369: mov word ptr [si + 2], dx
0x1336c: pop si
0x1336d: pop bp
0x1336e: ret
0x1336f: push bp
0x13370: mov bp, sp
0x13372: push si
0x13373: mov si, word ptr [bp + 4]
0x13376: mov ah, 0x2c
0x13378: int 0x21
0x1337a: mov word ptr [si], cx
0x1337c: mov word ptr [si + 2], dx
0x1337f: pop si
0x13380: pop bp
0x13381: ret
0x13382: push bp
0x13383: mov bp, sp
0x13385: mov ax, word ptr [bp + 4]
0x13388: mov word ptr [0x360], ax
2018-12-17T22:35:04.081585348Z 44 PC: 1337a | Get time 0x1337a: mov word ptr [si], cx
0x1337c: mov word ptr [si + 2], dx
0x1337f: pop si
0x13380: pop bp
0x13381: ret
0x13382: push bp
0x13383: mov bp, sp
0x13385: mov ax, word ptr [bp + 4]
0x13388: mov word ptr [0x360], ax
0x1338b: mov word ptr [0x362], 0
0x13391: pop bp
0x13392: ret
0x13393: mov cx, word ptr [0x362]
0x13397: mov bx, word ptr [0x360]
0x1339b: mov dx, 0x15a
0x1339e: mov ax, 0x4e35
0x133a1: call 0x14613
0x133a4: add ax, 1
0x133a7: adc dx, 0
0x133aa: mov word ptr [0x360], ax
2018-12-17T22:35:04.084203379Z 61 PC: 13e00 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:35:04.089077434Z 68 PC: 13bb5 | I/O control for devices (Set for = 'pyright 1990 Borland Intl.')
2018-12-17T22:35:04.090488198Z 63 PC: 13ee9 | Read file or device (Read 6561 bytes on handle 5)
2018-12-17T22:35:04.095984525Z 62 PC: 13ab1 | Close file
2018-12-17T22:35:04.097506973Z 47 PC: 13acd | Get disk transfer address
2018-12-17T22:35:04.098407608Z 26 PC: 13ad6 | Set disk transfer address
2018-12-17T22:35:04.099297325Z 78 PC: 13ae0 | Find first file
2018-12-17T22:35:04.105117297Z 26 PC: 13ae8 | Set disk transfer address
2018-12-17T22:35:04.106444651Z 61 PC: 13e00 | Open file (Filename = '�6�>�6�6���')
2018-12-17T22:35:04.111942001Z 68 PC: 13bb5 | I/O control for devices (Set for = 'UWW')
2018-12-17T22:35:04.121015954Z 87 PC: 13b8d | Get or set file date and time
2018-12-17T22:35:04.123795058Z 62 PC: 13ab1 | Close file
2018-12-17T22:35:04.127124226Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.130355993Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.132578405Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.136066561Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.13910332Z 47 PC: 13acd | Get disk transfer address
2018-12-17T22:35:04.140526676Z 26 PC: 13ad6 | Set disk transfer address
2018-12-17T22:35:04.141934816Z 78 PC: 13ae0 | Find first file
2018-12-17T22:35:04.156947198Z 26 PC: 13ae8 | Set disk transfer address
2018-12-17T22:35:04.158490612Z 61 PC: 13e00 | Open file (Filename = '�6�>�6�6���')
2018-12-17T22:35:04.165727568Z 68 PC: 13bb5 | I/O control for devices (Set for = 'UWW')
2018-12-17T22:35:04.167421348Z 87 PC: 13b8d | Get or set file date and time
2018-12-17T22:35:04.170176727Z 62 PC: 13ab1 | Close file
2018-12-17T22:35:04.172869249Z 59 PC: 13a6d | Change current directory
2018-12-17T22:35:04.180092128Z 59 PC: 13a6d | Change current directory
2018-12-17T22:35:04.186246034Z 47 PC: 13acd | Get disk transfer address
2018-12-17T22:35:04.202567166Z 26 PC: 13ad6 | Set disk transfer address
2018-12-17T22:35:04.204230361Z 78 PC: 13ae0 | Find first file
2018-12-17T22:35:04.213405624Z 26 PC: 13ae8 | Set disk transfer address
2018-12-17T22:35:04.21466383Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.215846821Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.217530294Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.220902087Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.222699207Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.224532807Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.226192612Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.229274285Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.230827682Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.232957055Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.234601026Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.237702443Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.239687165Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.240918375Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.242402344Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.253425484Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.254987455Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.256202442Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.258560898Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.261794459Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.263055132Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.264716626Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.266317719Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.269437156Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.271387205Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.273518632Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.283688435Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.287549959Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.29102335Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.292584229Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.29383292Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.298306138Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.30006814Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.301767853Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.305235173Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.308662373Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.31053754Z 47 PC: 13acd | Get disk transfer address
2018-12-17T22:35:04.313122551Z 26 PC: 13ad6 | Set disk transfer address
2018-12-17T22:35:04.3226189Z 78 PC: 13ae0 | Find first file
2018-12-17T22:35:04.329717379Z 26 PC: 13ae8 | Set disk transfer address
2018-12-17T22:35:04.331495395Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.334444763Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.33605938Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.339291497Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.342649658Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.349530073Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.36911297Z 65 PC: 1427e | Delete file (Filename = '�6�>�6�6���')
2018-12-17T22:35:04.377528801Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.378947697Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.380302336Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.38414992Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.3865573Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.406807368Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.42005084Z 65 PC: 1427e | Delete file (Filename = '�6�>�6�6���')
2018-12-17T22:35:04.428934782Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.430729276Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.432451322Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.436768554Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.438484278Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.44542926Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.458440347Z 65 PC: 1427e | Delete file (Filename = '�6�>�6�6���')
2018-12-17T22:35:04.466709678Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.46859435Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.4711614Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.47497172Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.476861811Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.484643017Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.498791072Z 65 PC: 1427e | Delete file (Filename = '�6�>�6�6���')
2018-12-17T22:35:04.506026383Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.50790109Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.510009332Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.512995548Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.5143879Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.527496885Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.53864967Z 65 PC: 1427e | Delete file (Filename = '�6�>�6�6���')
2018-12-17T22:35:04.546154573Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.548499544Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.550205607Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.553540864Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.556128362Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.563141992Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.574452787Z 65 PC: 1427e | Delete file (Filename = '�6�>�6�6���')
2018-12-17T22:35:04.588187364Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.590067485Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.591789676Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.59520071Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.597984578Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.604890087Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.616194734Z 65 PC: 1427e | Delete file (Filename = '�6�>�6�6���')
2018-12-17T22:35:04.624680835Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.626394733Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.628091032Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.632451458Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.634236381Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.641031859Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.656499956Z 65 PC: 1427e | Delete file (Filename = '�6�>�6�6���')
2018-12-17T22:35:04.664287945Z 47 PC: 13aff | Get disk transfer address
2018-12-17T22:35:04.666074261Z 26 PC: 13b08 | Set disk transfer address
2018-12-17T22:35:04.668448925Z 79 PC: 13b0c | Find next file
2018-12-17T22:35:04.671627762Z 26 PC: 13b14 | Set disk transfer address
2018-12-17T22:35:04.673455024Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.68078171Z 67 PC: 13a9c | Get or set file attributes
2018-12-17T22:35:04.69196139Z 65 PC: 1427e | Delete file (Filename = '�6�>�6�6���')
2018-12-17T22:35:04.699531033Z 37 PC: 12bf2 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:35:04.701776676Z 37 PC: 12bfd | Set interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:35:04.703459801Z 37 PC: 12c08 | Set interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:35:04.705115305Z 37 PC: 12c13 | Set interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:35:04.707623437Z 76 PC: 12b9c | Terminate with return code (Return code = '6')