Sample viewer

vx.netlux.org/Virus.DOS.DieHard2.4000.k

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:39:32.051149491Z 51 PC: 1f1e1 | Get or set Ctrl-Break
2018-12-17T22:39:32.053742784Z 43 PC: 1f3db | Set date
2018-12-17T22:39:32.05536133Z 53 PC: 1f3e4 | Get interrupt vector (Interrupt = '47' AKA 'Get disk transfer address')
2018-12-17T22:39:32.059392226Z 47 PC: 1e7b9 | Get disk transfer address
2018-12-17T22:39:32.061169865Z 48 PC: 1e7b9 | Get DOS version
2018-12-17T22:39:32.062485922Z 61 PC: 1e7b9 | Open file (Filename = 'A:\TEST.COM')
2018-12-17T22:39:32.069139132Z 68 PC: 1e7b9 | I/O control for devices (Set for = 'PATH=C:\DOS')
2018-12-17T22:39:32.071261041Z 62 PC: 1e7b9 | Close file
2018-12-17T22:39:32.073321752Z 26 PC: 1e7b9 | Set disk transfer address
2018-12-17T22:39:32.07477458Z 78 PC: 1e7b9 | Find first file
2018-12-17T22:39:32.081934413Z 41 PC: 1e7b9 | Parse filename
2018-12-17T22:39:32.083568644Z 67 PC: 1e7b9 | Get or set file attributes
2018-12-17T22:39:32.100314659Z 61 PC: 1e7b9 | Open file (Filename = '�� ���[S�5���ñ��@��Ћ€�-�v=@')
2018-12-17T22:39:32.107870083Z 63 PC: 1e7b9 | Read file or device (Read 24 bytes on handle 5)
2018-12-17T22:39:32.110605017Z 66 PC: 1e7b9 | Move file pointer
2018-12-17T22:39:32.112037329Z 63 PC: 1e7b9 | Read file or device (Read 54 bytes on handle 5)
2018-12-17T22:39:32.120750851Z 64 PC: 1e7b9 | Write file or device (Write 1 bytes on handle 5)
2018-12-17T22:39:32.123997052Z 87 PC: 1e7b9 | Get or set file date and time
2018-12-17T22:39:32.125726204Z 62 PC: 1e7b9 | Close file
2018-12-17T22:39:32.133719712Z 67 PC: 1e7b9 | Get or set file attributes
2018-12-17T22:39:32.144018219Z 26 PC: 1e7b9 | Set disk transfer address
2018-12-17T22:39:32.146585102Z 80 PC: 13ea9 | Set current PSP
2018-12-17T22:39:32.158400615Z 48 PC: 13ead | Get DOS version
2018-12-17T22:39:32.160692891Z 2 PC: 13d5c | Character output (Char = '49')
2018-12-17T22:39:32.163767189Z 2 PC: 13d5c | Character output (Char = '6e')
2018-12-17T22:39:32.166923682Z 2 PC: 13d5c | Character output (Char = '63')
2018-12-17T22:39:32.177558334Z 2 PC: 13d5c | Character output (Char = '6f')
2018-12-17T22:39:32.179770059Z 2 PC: 13d5c | Character output (Char = '72')
2018-12-17T22:39:32.182748709Z 2 PC: 13d5c | Character output (Char = '72')
2018-12-17T22:39:32.184963466Z 2 PC: 13d5c | Character output (Char = '65')
2018-12-17T22:39:32.18753761Z 2 PC: 13d5c | Character output (Char = '63')
2018-12-17T22:39:32.190529714Z 2 PC: 13d5c | Character output (Char = '74')
2018-12-17T22:39:32.205695155Z 2 PC: 13d5c | Character output (Char = '20')
2018-12-17T22:39:32.208857458Z 2 PC: 13d5c | Character output (Char = '44')
2018-12-17T22:39:32.21386276Z 2 PC: 13d5c | Character output (Char = '4f')
2018-12-17T22:39:32.21822854Z 2 PC: 13d5c | Character output (Char = '53')
2018-12-17T22:39:32.220474807Z 2 PC: 13d5c | Character output (Char = '20')
2018-12-17T22:39:32.222833585Z 2 PC: 13d5c | Character output (Char = '76')
2018-12-17T22:39:32.225483547Z 2 PC: 13d5c | Character output (Char = '65')
2018-12-17T22:39:32.227912358Z 2 PC: 13d5c | Character output (Char = '72')
2018-12-17T22:39:32.231179435Z 2 PC: 13d5c | Character output (Char = '73')
2018-12-17T22:39:32.233932027Z 2 PC: 13d5c | Character output (Char = '69')
2018-12-17T22:39:32.236425898Z 2 PC: 13d5c | Character output (Char = '6f')
2018-12-17T22:39:32.239471089Z 2 PC: 13d5c | Character output (Char = '6e')
2018-12-17T22:39:32.242136788Z 2 PC: 13d5c | Character output (Char = '0d')
2018-12-17T22:39:32.244498302Z 2 PC: 13d5c | Character output (Char = '0a')