Sample viewer

vx.netlux.org/Virus.DOS.HLLO.Zero.6880

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:41:32.375705753Z 53 PC: 1344a | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:41:32.377392138Z 53 PC: 1344a | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:41:32.378865822Z 53 PC: 1344a | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:41:32.380330258Z 53 PC: 1344a | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:41:32.382010192Z 53 PC: 1344a | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:41:32.383534593Z 53 PC: 1344a | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:41:32.384855948Z 53 PC: 1344a | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:41:32.386411565Z 53 PC: 1344a | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:41:32.387887973Z 53 PC: 1344a | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:41:32.389069357Z 53 PC: 1344a | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:41:32.390262725Z 53 PC: 1344a | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:41:32.392289663Z 53 PC: 1344a | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:41:32.393403256Z 53 PC: 1344a | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:41:32.394531177Z 53 PC: 1344a | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:41:32.396273348Z 53 PC: 1344a | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:41:32.397519899Z 53 PC: 1344a | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:41:32.398735883Z 53 PC: 1344a | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:41:32.400630224Z 53 PC: 1344a | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:41:32.40180374Z 53 PC: 1344a | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:41:32.402952046Z 37 PC: 1345f | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:41:32.404569668Z 37 PC: 13467 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:41:32.405564796Z 37 PC: 1346f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:41:32.406952867Z 37 PC: 13477 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:41:32.414369992Z 68 PC: 1420f | I/O control for devices (Set for = '�')
2018-12-17T22:41:32.460211241Z 37 PC: 12e71 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:41:32.463488432Z 60 PC: 13d73 | Create or truncate file
2018-12-17T22:41:32.493676078Z 65 PC: 13ebc | Delete file (Filename = '�')
2018-12-17T22:41:32.503884101Z 48 PC: 13f35 | Get DOS version
2018-12-17T22:41:32.505841952Z 67 PC: 12d46 | Get or set file attributes
2018-12-17T22:41:32.842082396Z 61 PC: 13d73 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:41:32.850798227Z 26 PC: 12d77 | Set disk transfer address
2018-12-17T22:41:32.852194273Z 78 PC: 12d83 | Find first file
2018-12-17T22:41:32.859335349Z 67 PC: 12d46 | Get or set file attributes
2018-12-17T22:41:32.870972091Z 61 PC: 13d73 | Open file (Filename = 'TEST.EXE')
2018-12-17T22:41:32.879377793Z 66 PC: 13ea5 | Move file pointer
2018-12-17T22:41:32.881655709Z 66 PC: 13ea5 | Move file pointer
2018-12-17T22:41:32.894397262Z 63 PC: 13e46 | Read file or device (Read 6880 bytes on handle 6)
2018-12-17T22:41:32.903778446Z 64 PC: 13e46 | Write file or device (Write 6880 bytes on handle 7)
2018-12-17T22:41:32.91405663Z 63 PC: 13e46 | Read file or device (Read 6880 bytes on handle 6)
2018-12-17T22:41:32.924118491Z 64 PC: 13e46 | Write file or device (Write 6880 bytes on handle 7)
2018-12-17T22:41:32.933578519Z 63 PC: 13e46 | Read file or device (Read 6880 bytes on handle 6)
2018-12-17T22:41:32.943404924Z 64 PC: 13e46 | Write file or device (Write 2240 bytes on handle 7)
2018-12-17T22:41:32.955430594Z 63 PC: 13e46 | Read file or device (Read 6880 bytes on handle 6)
2018-12-17T22:41:32.957925894Z 64 PC: 13e46 | Write file or device (Write 8 bytes on handle 7)
2018-12-17T22:41:32.961332841Z 64 PC: 13e46 | Write file or device (Write 2 bytes on handle 7)
2018-12-17T22:41:32.965752387Z 64 PC: 13e46 | Write file or device (Write 2 bytes on handle 7)
2018-12-17T22:41:32.969741369Z 64 PC: 13e46 | Write file or device (Write 6 bytes on handle 7)
2018-12-17T22:41:32.973996479Z 64 PC: 13e46 | Write file or device (Write 3 bytes on handle 7)
2018-12-17T22:41:32.977510418Z 64 PC: 13e46 | Write file or device (Write 1 bytes on handle 7)
2018-12-17T22:41:32.981555726Z 64 PC: 13e46 | Write file or device (Write 3 bytes on handle 7)
2018-12-17T22:41:32.98586673Z 64 PC: 13e46 | Write file or device (Write 4 bytes on handle 7)
2018-12-17T22:41:32.99017366Z 64 PC: 13e46 | Write file or device (Write 4 bytes on handle 7)
2018-12-17T22:41:32.994424585Z 64 PC: 13e46 | Write file or device (Write 8 bytes on handle 7)
2018-12-17T22:41:32.99821942Z 64 PC: 13e46 | Write file or device (Write 2 bytes on handle 7)
2018-12-17T22:41:33.001993869Z 64 PC: 13e46 | Write file or device (Write 9 bytes on handle 7)
2018-12-17T22:41:33.006210461Z 64 PC: 13e46 | Write file or device (Write 3 bytes on handle 7)
2018-12-17T22:41:33.009631235Z 64 PC: 13e46 | Write file or device (Write 7 bytes on handle 7)
2018-12-17T22:41:33.013113924Z 64 PC: 13e46 | Write file or device (Write 3 bytes on handle 7)
2018-12-17T22:41:33.016945787Z 64 PC: 13e46 | Write file or device (Write 6 bytes on handle 7)
2018-12-17T22:41:33.021089156Z 64 PC: 13e46 | Write file or device (Write 8 bytes on handle 7)
2018-12-17T22:41:33.025933173Z 64 PC: 13e46 | Write file or device (Write 7 bytes on handle 7)
2018-12-17T22:41:33.030236867Z 64 PC: 13e46 | Write file or device (Write 3 bytes on handle 7)
2018-12-17T22:41:33.034591407Z 64 PC: 13e46 | Write file or device (Write 1 bytes on handle 7)
2018-12-17T22:41:33.037970416Z 64 PC: 13e46 | Write file or device (Write 3 bytes on handle 7)
2018-12-17T22:41:33.04149669Z 64 PC: 13e46 | Write file or device (Write 4 bytes on handle 7)
2018-12-17T22:41:33.045534735Z 64 PC: 13e46 | Write file or device (Write 2 bytes on handle 7)
2018-12-17T22:41:33.049661398Z 64 PC: 13e46 | Write file or device (Write 8 bytes on handle 7)
2018-12-17T22:41:33.053274834Z 64 PC: 13e46 | Write file or device (Write 2 bytes on handle 7)
2018-12-17T22:41:33.057608613Z 64 PC: 13e46 | Write file or device (Write 4 bytes on handle 7)
2018-12-17T22:41:33.061051815Z 64 PC: 13e46 | Write file or device (Write 1 bytes on handle 7)
2018-12-17T22:41:33.065078932Z 64 PC: 13e46 | Write file or device (Write 8 bytes on handle 7)
2018-12-17T22:41:33.069010302Z 64 PC: 13e46 | Write file or device (Write 2 bytes on handle 7)
2018-12-17T22:41:33.072436495Z 64 PC: 13e46 | Write file or device (Write 7 bytes on handle 7)
2018-12-17T22:41:33.07590698Z 64 PC: 13e46 | Write file or device (Write 9 bytes on handle 7)
2018-12-17T22:41:33.080550395Z 64 PC: 13e46 | Write file or device (Write 4 bytes on handle 7)
2018-12-17T22:41:33.083987169Z 64 PC: 13e46 | Write file or device (Write 8 bytes on handle 7)
2018-12-17T22:41:33.087657894Z 64 PC: 13e46 | Write file or device (Write 8 bytes on handle 7)
2018-12-17T22:41:33.09172757Z 64 PC: 13e46 | Write file or device (Write 1 bytes on handle 7)
2018-12-17T22:41:33.095170156Z 64 PC: 13e46 | Write file or device (Write 1 bytes on handle 7)
2018-12-17T22:41:33.099590226Z 64 PC: 13e46 | Write file or device (Write 5 bytes on handle 7)
2018-12-17T22:41:33.104252483Z 62 PC: 13dc3 | Close file
2018-12-17T22:41:33.113941032Z 26 PC: 12d9b | Set disk transfer address
2018-12-17T22:41:33.116339157Z 79 PC: 12da0 | Find next file
2018-12-17T22:41:33.120614829Z 62 PC: 13dc3 | Close file
2018-12-17T22:41:33.124336497Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:41:33.126100589Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:41:33.127831028Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:41:33.13053114Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:41:33.131845129Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:41:33.133480402Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:41:33.135955577Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:41:33.13799977Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:41:33.139706568Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:41:33.142221041Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:41:33.143726307Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:41:33.145107481Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:41:33.14715717Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:41:33.14951818Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:41:33.150792738Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:41:33.15201229Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:41:33.15424461Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:41:33.15570098Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:41:33.157174969Z 37 PC: 135a1 | Set interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:41:33.159215095Z 76 PC: 135e0 | Terminate with return code (Return code = '0')