Sample viewer

vx.netlux.org/Virus.DOS.HLLO.Julius.41478

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:40:28.061246786Z 48 PC: 18e9c | Get DOS version
2018-12-17T22:40:28.063301428Z 74 PC: 18eec | Reallocate memory
2018-12-17T22:40:28.065079881Z 48 PC: 18f50 | Get DOS version
2018-12-17T22:40:28.066213502Z 53 PC: 18f58 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:40:28.06810226Z 37 PC: 18f6a | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:40:28.074762203Z 53 PC: 1bbb2 | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:40:28.075877315Z 37 PC: 1bbc2 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:40:28.080572861Z 53 PC: 1bbc7 | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:40:28.081731124Z 37 PC: 1bbd7 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:40:28.082793096Z 53 PC: 19906 | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:40:28.084879758Z 53 PC: 19906 | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:40:28.086007903Z 53 PC: 19906 | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:40:28.087463055Z 53 PC: 19906 | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:40:28.089838118Z 53 PC: 19906 | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:40:28.091367622Z 53 PC: 19906 | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:40:28.095367408Z 53 PC: 19906 | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:40:28.099778815Z 53 PC: 19906 | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:40:28.102536642Z 53 PC: 19906 | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:40:28.103915913Z 53 PC: 19906 | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:40:28.105276065Z 53 PC: 19906 | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:40:28.107085789Z 37 PC: 19935 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:40:28.108419975Z 37 PC: 19935 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:40:28.109766616Z 37 PC: 19935 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:40:28.111981063Z 37 PC: 19935 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:40:28.113677962Z 37 PC: 19935 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:40:28.117408994Z 37 PC: 19935 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:40:28.119385413Z 37 PC: 19935 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:40:28.121582617Z 37 PC: 19935 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:40:28.123157217Z 37 PC: 1993c | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:40:28.125129406Z 37 PC: 19941 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:40:28.126906639Z 68 PC: 18ffb | I/O control for devices (Set for = 't�|��|�� �n��0�<u�6t�\+\��� t�P�K��� �H�� �C��� �<���')
2018-12-17T22:40:28.128652401Z 68 PC: 18ffb | I/O control for devices (Set for = '')
2018-12-17T22:40:28.130691392Z 68 PC: 18ffb | I/O control for devices (Set for = ' �t ���ڃ�')
2018-12-17T22:40:28.132536796Z 68 PC: 18ffb | I/O control for devices (Set for = ' �t �e���')
2018-12-17T22:40:28.134172391Z 68 PC: 18ffb | I/O control for devices (Set for = ' �t �e���')
2018-12-17T22:40:28.136937745Z 53 PC: 164fe | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:40:28.138422069Z 53 PC: 1650b | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:40:28.139945708Z 53 PC: 16518 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:40:28.1419783Z 37 PC: 1652d | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:40:28.143232352Z 37 PC: 16535 | Set interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:40:28.144074888Z 37 PC: 1653d | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:40:28.145319498Z 53 PC: 16fbc | Get interrupt vector (Interrupt = '239' AKA 'UNKNOWN!')
2018-12-17T22:40:28.146159192Z 53 PC: 16fc9 | Get interrupt vector (Interrupt = '240' AKA 'UNKNOWN!')
2018-12-17T22:40:28.146939802Z 53 PC: 16fd8 | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:40:28.148362337Z 37 PC: 16fe5 | Set interrupt vector (Interrupt = '239' AKA 'UNKNOWN!')
2018-12-17T22:40:28.149236245Z 53 PC: 16fec | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:40:28.150144189Z 37 PC: 16ff9 | Set interrupt vector (Interrupt = '240' AKA 'UNKNOWN!')
2018-12-17T22:40:28.1515117Z 53 PC: 17005 | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:40:28.154309752Z 48 PC: 170c7 | Get DOS version
2018-12-17T22:40:28.155261505Z 74 PC: 14c21 | Reallocate memory
2018-12-17T22:40:28.157139893Z 74 PC: 14c21 | Reallocate memory
2018-12-17T22:40:28.158773717Z 68 PC: 16474 | I/O control for devices (Set for = 'e>me')
2018-12-17T22:40:28.160459751Z 68 PC: 16474 | I/O control for devices (Set for = '')
2018-12-17T22:40:28.172637741Z 51 PC: 16492 | Get or set Ctrl-Break
2018-12-17T22:40:28.173835786Z 51 PC: 1649e | Get or set Ctrl-Break
2018-12-17T22:40:28.175592095Z 72 PC: 136de | Allocate memory
2018-12-17T22:40:28.178775971Z 74 PC: 14c21 | Reallocate memory
2018-12-17T22:40:28.180539289Z 72 PC: 136de | Allocate memory
2018-12-17T22:40:28.183603111Z 73 PC: 136de | Release memory
2018-12-17T22:40:28.187040457Z 74 PC: 14c21 | Reallocate memory
2018-12-17T22:40:28.188975712Z 51 PC: 164a9 | Get or set Ctrl-Break
2018-12-17T22:40:28.190161955Z 37 PC: 1672b | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:40:28.192981993Z 37 PC: 16735 | Set interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:40:28.194417982Z 37 PC: 1673f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:40:28.195890294Z 53 PC: 1464e | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:40:28.1982341Z 53 PC: 1465b | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:40:28.199395054Z 53 PC: 14668 | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:40:28.200527653Z 37 PC: 14683 | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:40:28.20238739Z 53 PC: 1468b | Get interrupt vector (Interrupt = '239' AKA 'UNKNOWN!')
2018-12-17T22:40:28.203692702Z 37 PC: 14698 | Set interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:40:28.204966113Z 53 PC: 1469f | Get interrupt vector (Interrupt = '240' AKA 'UNKNOWN!')
2018-12-17T22:40:28.207100834Z 37 PC: 146ac | Set interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:40:28.208372146Z 37 PC: 146b6 | Set interrupt vector (Interrupt = '239' AKA 'UNKNOWN!')
2018-12-17T22:40:28.209624198Z 37 PC: 146c1 | Set interrupt vector (Interrupt = '240' AKA 'UNKNOWN!')
2018-12-17T22:40:28.211850073Z 37 PC: 19951 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:40:28.214533904Z 37 PC: 19951 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:40:28.215988255Z 37 PC: 19951 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:40:28.218154666Z 37 PC: 19951 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:40:28.21933701Z 37 PC: 19951 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:40:28.220393571Z 37 PC: 19951 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:40:28.22256858Z 37 PC: 19951 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:40:28.224034547Z 37 PC: 19951 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:40:28.225626889Z 37 PC: 19951 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:40:28.228121708Z 37 PC: 19951 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:40:28.229365584Z 37 PC: 19951 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:40:28.23058987Z 37 PC: 1bbe6 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:40:28.23299234Z 37 PC: 190ac | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:40:28.237022012Z 41 PC: 18c55 | Parse filename
2018-12-17T22:40:28.238448553Z 41 PC: 18c57 | Parse filename
2018-12-17T22:40:28.240551166Z 41 PC: 18c5c | Parse filename
2018-12-17T22:40:28.241916176Z 75 PC: 18c72 | Execute program
2018-12-17T22:40:28.26220098Z 80 PC: 1ec69 | Set current PSP
2018-12-17T22:40:28.263648953Z 48 PC: 1ec6e | Get DOS version
2018-12-17T22:40:28.267402327Z 99 PC: 25450 | Get DBCS lead byte table pointer
2018-12-17T22:40:28.270084459Z 101 PC: 1ecf4 | Get extended country info
2018-12-17T22:40:28.272746674Z 99 PC: 1ecfa | Get DBCS lead byte table pointer
2018-12-17T22:40:28.275379096Z 74 PC: 1ed5c | Reallocate memory
2018-12-17T22:40:28.277164384Z 25 PC: 1ed93 | Get default drive
2018-12-17T22:40:28.280068162Z 37 PC: 1e853 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:40:28.281406431Z 37 PC: 1e85a | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:40:28.282804967Z 37 PC: 1e861 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:40:28.28793896Z 74 PC: 1d9fc | Reallocate memory
2018-12-17T22:40:28.289955205Z 72 PC: 1da3d | Allocate memory
2018-12-17T22:40:28.291749271Z 72 PC: 1da75 | Allocate memory
2018-12-17T22:40:28.294416168Z 72 PC: 1da7d | Allocate memory