Sample viewer

vx.netlux.org/Virus.DOS.HLLP.Krile.5744

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:38:42.282444808Z 74 PC: 13bba | Reallocate memory
2018-12-17T22:38:42.307124362Z 74 PC: 18c59 | Reallocate memory
2018-12-17T22:38:42.310344169Z 98 PC: 18156 | Get current PSP
2018-12-17T22:38:42.312700859Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.320275837Z 65 PC: 13a43 | Delete file (Filename = 'anti-vir.dat')
2018-12-17T22:38:42.327375571Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.333903538Z 65 PC: 13a43 | Delete file (Filename = 'chklist.ms')
2018-12-17T22:38:42.34046009Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.348932768Z 65 PC: 13a43 | Delete file (Filename = 'chklist.cps')
2018-12-17T22:38:42.355344781Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.361570176Z 65 PC: 13a43 | Delete file (Filename = 'vs.vsn')
2018-12-17T22:38:42.369365107Z 26 PC: 12bf4 | Set disk transfer address
2018-12-17T22:38:42.37077999Z 78 PC: 12c06 | Find first file
2018-12-17T22:38:42.377437172Z 67 PC: 13265 | Get or set file attributes
2018-12-17T22:38:42.384307795Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.401858166Z 61 PC: 133b3 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:38:42.409522395Z 63 PC: 13455 | Read file or device (Read 5744 bytes on handle 5)
2018-12-17T22:38:42.419091683Z 62 PC: 1349b | Close file
2018-12-17T22:38:42.421438552Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.436223961Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.443257053Z 65 PC: 13a43 | Delete file (Filename = 'anti-vir.dat')
2018-12-17T22:38:42.449560021Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.455862031Z 65 PC: 13a43 | Delete file (Filename = 'chklist.ms')
2018-12-17T22:38:42.468035483Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.480664136Z 65 PC: 13a43 | Delete file (Filename = 'chklist.cps')
2018-12-17T22:38:42.487361528Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.494193578Z 65 PC: 13a43 | Delete file (Filename = 'vs.vsn')
2018-12-17T22:38:42.502892207Z 47 PC: 17f95 | Get disk transfer address
2018-12-17T22:38:42.504512502Z 26 PC: 17fa0 | Set disk transfer address
2018-12-17T22:38:42.506105259Z 78 PC: 17fac | Find first file
2018-12-17T22:38:42.514050577Z 26 PC: 17fbe | Set disk transfer address
2018-12-17T22:38:42.518950699Z 26 PC: 13919 | Set disk transfer address
2018-12-17T22:38:42.520492529Z 78 PC: 1392b | Find first file
2018-12-17T22:38:42.533119049Z 67 PC: 13265 | Get or set file attributes
2018-12-17T22:38:42.545728199Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.556800429Z 61 PC: 133b3 | Open file (Filename = 'TEST.EXE')
2018-12-17T22:38:42.565373559Z 66 PC: 1827b | Move file pointer
2018-12-17T22:38:42.567827429Z 63 PC: 13455 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:38:42.57459858Z 62 PC: 1349b | Close file
2018-12-17T22:38:42.578380943Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.590081086Z 47 PC: 17fd2 | Get disk transfer address
2018-12-17T22:38:42.591821376Z 26 PC: 17fdd | Set disk transfer address
2018-12-17T22:38:42.594444364Z 79 PC: 17fe1 | Find next file
2018-12-17T22:38:42.59792364Z 26 PC: 17ff1 | Set disk transfer address
2018-12-17T22:38:42.600341859Z 47 PC: 17f95 | Get disk transfer address
2018-12-17T22:38:42.602792577Z 26 PC: 17fa0 | Set disk transfer address
2018-12-17T22:38:42.604874367Z 78 PC: 17fac | Find first file
2018-12-17T22:38:42.611860846Z 26 PC: 17fbe | Set disk transfer address
2018-12-17T22:38:42.617684193Z 26 PC: 13919 | Set disk transfer address
2018-12-17T22:38:42.620563814Z 78 PC: 1392b | Find first file
2018-12-17T22:38:42.627519719Z 47 PC: 17fd2 | Get disk transfer address
2018-12-17T22:38:42.629077927Z 26 PC: 17fdd | Set disk transfer address
2018-12-17T22:38:42.631994714Z 79 PC: 17fe1 | Find next file
2018-12-17T22:38:42.635173679Z 26 PC: 17ff1 | Set disk transfer address
2018-12-17T22:38:42.640118917Z 26 PC: 13919 | Set disk transfer address
2018-12-17T22:38:42.642921723Z 78 PC: 1392b | Find first file
2018-12-17T22:38:42.649856258Z 47 PC: 17fd2 | Get disk transfer address
2018-12-17T22:38:42.651173984Z 26 PC: 17fdd | Set disk transfer address
2018-12-17T22:38:42.653175749Z 79 PC: 17fe1 | Find next file
2018-12-17T22:38:42.65629546Z 26 PC: 17ff1 | Set disk transfer address
2018-12-17T22:38:42.660892985Z 26 PC: 13919 | Set disk transfer address
2018-12-17T22:38:42.663662352Z 78 PC: 1392b | Find first file
2018-12-17T22:38:42.670440263Z 47 PC: 17fd2 | Get disk transfer address
2018-12-17T22:38:42.671900725Z 26 PC: 17fdd | Set disk transfer address
2018-12-17T22:38:42.674411189Z 79 PC: 17fe1 | Find next file
2018-12-17T22:38:42.677919772Z 26 PC: 17ff1 | Set disk transfer address
2018-12-17T22:38:42.682550352Z 26 PC: 13919 | Set disk transfer address
2018-12-17T22:38:42.684946988Z 78 PC: 1392b | Find first file
2018-12-17T22:38:42.692407763Z 47 PC: 17fd2 | Get disk transfer address
2018-12-17T22:38:42.693829795Z 26 PC: 17fdd | Set disk transfer address
2018-12-17T22:38:42.69568517Z 79 PC: 17fe1 | Find next file
2018-12-17T22:38:42.698519409Z 26 PC: 17ff1 | Set disk transfer address
2018-12-17T22:38:42.703545379Z 26 PC: 13919 | Set disk transfer address
2018-12-17T22:38:42.705542612Z 78 PC: 1392b | Find first file
2018-12-17T22:38:42.711802871Z 47 PC: 17fd2 | Get disk transfer address
2018-12-17T22:38:42.713206513Z 26 PC: 17fdd | Set disk transfer address
2018-12-17T22:38:42.715313885Z 79 PC: 17fe1 | Find next file
2018-12-17T22:38:42.718113546Z 26 PC: 17ff1 | Set disk transfer address
2018-12-17T22:38:42.722525794Z 47 PC: 17fd2 | Get disk transfer address
2018-12-17T22:38:42.724272407Z 26 PC: 17fdd | Set disk transfer address
2018-12-17T22:38:42.725626315Z 79 PC: 17fe1 | Find next file
2018-12-17T22:38:42.728347867Z 26 PC: 17ff1 | Set disk transfer address
2018-12-17T22:38:42.733192345Z 26 PC: 13919 | Set disk transfer address
2018-12-17T22:38:42.734603145Z 78 PC: 1392b | Find first file
2018-12-17T22:38:42.740857614Z 47 PC: 17fd2 | Get disk transfer address
2018-12-17T22:38:42.743162073Z 26 PC: 17fdd | Set disk transfer address
2018-12-17T22:38:42.744919251Z 79 PC: 17fe1 | Find next file
2018-12-17T22:38:42.747665043Z 26 PC: 17ff1 | Set disk transfer address
2018-12-17T22:38:42.750381309Z 98 PC: 1818d | Get current PSP
2018-12-17T22:38:42.752625289Z 98 PC: 1818d | Get current PSP
2018-12-17T22:38:42.754731654Z 98 PC: 1818d | Get current PSP
2018-12-17T22:38:42.75720905Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.768273694Z 65 PC: 13a43 | Delete file (Filename = 'C:\DOS\anti-vir.dat')
2018-12-17T22:38:42.774953998Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.781396227Z 65 PC: 13a43 | Delete file (Filename = 'C:\DOS\chklist.ms')
2018-12-17T22:38:42.788548499Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.794908935Z 65 PC: 13a43 | Delete file (Filename = 'C:\DOS\chklist.cps')
2018-12-17T22:38:42.801618055Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:42.80937583Z 65 PC: 13a43 | Delete file (Filename = 'C:\DOS\vs.vsn')
2018-12-17T22:38:42.816303588Z 47 PC: 17f95 | Get disk transfer address
2018-12-17T22:38:42.817723043Z 26 PC: 17fa0 | Set disk transfer address
2018-12-17T22:38:42.820204953Z 78 PC: 17fac | Find first file
2018-12-17T22:38:42.826818081Z 26 PC: 17fbe | Set disk transfer address
2018-12-17T22:38:42.831267619Z 26 PC: 13919 | Set disk transfer address
2018-12-17T22:38:42.833978866Z 78 PC: 1392b | Find first file
2018-12-17T22:38:42.840579183Z 67 PC: 13265 | Get or set file attributes
2018-12-17T22:38:42.84672376Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:43.191971585Z 61 PC: 133b3 | Open file (Filename = 'C:\DOS\ATTRIB.EXE')
2018-12-17T22:38:43.202512441Z 66 PC: 1827b | Move file pointer
2018-12-17T22:38:43.205464266Z 63 PC: 13455 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:38:43.216119031Z 62 PC: 1349b | Close file
2018-12-17T22:38:43.218831342Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:43.231239425Z 86 PC: 13d8d | Rename file
2018-12-17T22:38:43.244656004Z 26 PC: 1314d | Set disk transfer address
2018-12-17T22:38:43.24701486Z 78 PC: 1315f | Find first file
2018-12-17T22:38:43.253661359Z 67 PC: 13265 | Get or set file attributes
2018-12-17T22:38:43.260797697Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:43.271066426Z 61 PC: 133b3 | Open file (Filename = 'C:\DOS\ATTRIB.���')
2018-12-17T22:38:43.278497734Z 87 PC: 13320 | Get or set file date and time
2018-12-17T22:38:43.280927806Z 63 PC: 13455 | Read file or device (Read 5744 bytes on handle 5)
2018-12-17T22:38:43.288705738Z 66 PC: 1827b | Move file pointer
2018-12-17T22:38:43.290960354Z 64 PC: 133ff | Write file or device (Write 5744 bytes on handle 5)
2018-12-17T22:38:43.3004786Z 66 PC: 1827b | Move file pointer
2018-12-17T22:38:43.306023879Z 64 PC: 133ff | Write file or device (Write 5744 bytes on handle 5)
2018-12-17T22:38:43.316990351Z 87 PC: 13382 | Get or set file date and time
2018-12-17T22:38:43.318975433Z 62 PC: 1349b | Close file
2018-12-17T22:38:43.327586599Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:43.337507125Z 86 PC: 13da6 | Rename file
2018-12-17T22:38:43.348716521Z 47 PC: 17fd2 | Get disk transfer address
2018-12-17T22:38:43.351306165Z 26 PC: 17fdd | Set disk transfer address
2018-12-17T22:38:43.352736603Z 79 PC: 17fe1 | Find next file
2018-12-17T22:38:43.356061408Z 26 PC: 17ff1 | Set disk transfer address
2018-12-17T22:38:43.359322311Z 47 PC: 17f95 | Get disk transfer address
2018-12-17T22:38:43.360776683Z 26 PC: 17fa0 | Set disk transfer address
2018-12-17T22:38:43.362206467Z 78 PC: 17fac | Find first file
2018-12-17T22:38:43.374750191Z 26 PC: 17fbe | Set disk transfer address
2018-12-17T22:38:43.378375829Z 26 PC: 13919 | Set disk transfer address
2018-12-17T22:38:43.379802364Z 78 PC: 1392b | Find first file
2018-12-17T22:38:43.387239927Z 47 PC: 17fd2 | Get disk transfer address
2018-12-17T22:38:43.389059532Z 26 PC: 17fdd | Set disk transfer address
2018-12-17T22:38:43.390470977Z 79 PC: 17fe1 | Find next file
2018-12-17T22:38:43.39460052Z 26 PC: 17ff1 | Set disk transfer address
2018-12-17T22:38:43.397248263Z 86 PC: 13d8d | Rename file
2018-12-17T22:38:43.408895876Z 26 PC: 12d1b | Set disk transfer address
2018-12-17T22:38:43.411150781Z 78 PC: 12d2d | Find first file
2018-12-17T22:38:43.417808804Z 67 PC: 13265 | Get or set file attributes
2018-12-17T22:38:43.423738725Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:43.436059921Z 61 PC: 133b3 | Open file (Filename = 'A:\TEST.���')
2018-12-17T22:38:43.444546287Z 87 PC: 13320 | Get or set file date and time
2018-12-17T22:38:43.446472267Z 66 PC: 1827b | Move file pointer
2018-12-17T22:38:43.44884014Z 63 PC: 13455 | Read file or device (Read 5744 bytes on handle 5)
2018-12-17T22:38:43.457744034Z 66 PC: 1827b | Move file pointer
2018-12-17T22:38:43.462195812Z 64 PC: 133ff | Write file or device (Write 5744 bytes on handle 5)
2018-12-17T22:38:43.470905261Z 87 PC: 13382 | Get or set file date and time
2018-12-17T22:38:43.476552488Z 62 PC: 1349b | Close file
2018-12-17T22:38:43.484058533Z 61 PC: 133b3 | Open file (Filename = 'A:\TEST.���')
2018-12-17T22:38:43.491050145Z 66 PC: 1827b | Move file pointer
2018-12-17T22:38:43.494558088Z 64 PC: 133ff | Write file or device (Write 0 bytes on handle 5)
2018-12-17T22:38:43.502636536Z 87 PC: 13382 | Get or set file date and time
2018-12-17T22:38:43.504541556Z 62 PC: 1349b | Close file
2018-12-17T22:38:43.512645273Z 67 PC: 1329c | Get or set file attributes
2018-12-17T22:38:43.522678847Z 86 PC: 13da6 | Rename file
2018-12-17T22:38:43.534487179Z 75 PC: 12fc5 | Execute program
2018-12-17T22:38:43.555006005Z 80 PC: 1b6c9 | Set current PSP
2018-12-17T22:38:43.556196145Z 48 PC: 1b6ce | Get DOS version
2018-12-17T22:38:43.558044695Z 99 PC: 21eb0 | Get DBCS lead byte table pointer
2018-12-17T22:38:43.562484708Z 101 PC: 1b754 | Get extended country info
2018-12-17T22:38:43.564081598Z 99 PC: 1b75a | Get DBCS lead byte table pointer
2018-12-17T22:38:43.565660534Z 74 PC: 1b7bc | Reallocate memory
2018-12-17T22:38:43.568046056Z 25 PC: 1b7f3 | Get default drive
2018-12-17T22:38:43.569499549Z 37 PC: 1b2b3 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:38:43.570952039Z 37 PC: 1b2ba | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:38:43.572990698Z 37 PC: 1b2c1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:38:43.577884899Z 74 PC: 1a45c | Reallocate memory
2018-12-17T22:38:43.579631564Z 72 PC: 1a49d | Allocate memory
2018-12-17T22:38:43.582357762Z 72 PC: 1a4d5 | Allocate memory
2018-12-17T22:38:43.584350505Z 72 PC: 1a4dd | Allocate memory