Sample viewer

vx.netlux.org/Virus.DOS.HLLP.Toadie.7800.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:41:54.239148047Z 25 PC: 12a58 | Get default drive
2018-12-17T22:41:54.241863696Z 98 PC: 1bab6 | Get current PSP
2018-12-17T22:41:54.243105415Z 44 PC: 12b23 | Get time 0x12b23: xchg dx, cx
0x12b25: mov al, dh
0x12b27: mov ah, 0
0x12b29: mov bl, 0xa
0x12b2b: jmp 0x12b41
0x12b2d: div bl
0x12b2f: add al, 0x30
0x12b31: mov byte ptr [di], al
0x12b33: inc di
0x12b34: xchg al, ah
0x12b36: add al, 0x30
0x12b38: mov byte ptr [di], al
0x12b3a: inc di
0x12b3b: mov al, 0x3a
0x12b3d: mov byte ptr [di], al
0x12b3f: inc di
0x12b40: ret
0x12b41: call 0x22b2d
0x12b44: mov al, dl
0x12b46: mov ah, 0
2018-12-17T22:41:54.245286722Z 71 PC: 12de2 | Get current directory
2018-12-17T22:41:54.247878162Z 67 PC: 13ff4 | Get or set file attributes
2018-12-17T22:41:54.254192213Z 65 PC: 138d7 | Delete file (Filename = 'anti-vir.dat')
2018-12-17T22:41:54.259687289Z 67 PC: 13ff4 | Get or set file attributes
2018-12-17T22:41:54.264809914Z 65 PC: 138d7 | Delete file (Filename = 'chklist.ms')
2018-12-17T22:41:54.269764994Z 67 PC: 13ff4 | Get or set file attributes
2018-12-17T22:41:54.274284496Z 65 PC: 138d7 | Delete file (Filename = 'chklist.cps')
2018-12-17T22:41:54.278591343Z 67 PC: 13ff4 | Get or set file attributes
2018-12-17T22:41:54.283197202Z 65 PC: 138d7 | Delete file (Filename = 'vs.vsn')
2018-12-17T22:41:54.28991609Z 67 PC: 13ff4 | Get or set file attributes
2018-12-17T22:41:54.296156971Z 65 PC: 138d7 | Delete file (Filename = 'ivb.ntz')
2018-12-17T22:41:54.303828878Z 26 PC: 12ea3 | Set disk transfer address
2018-12-17T22:41:54.305281765Z 78 PC: 12eb5 | Find first file
2018-12-17T22:41:54.312071675Z 67 PC: 13fbd | Get or set file attributes
2018-12-17T22:41:54.319234234Z 67 PC: 13ff4 | Get or set file attributes
2018-12-17T22:41:54.345068257Z 61 PC: 14139 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:41:54.352695526Z 63 PC: 141db | Read file or device (Read 7800 bytes on handle 5)
2018-12-17T22:41:54.362700183Z 62 PC: 14221 | Close file
2018-12-17T22:41:54.365322621Z 67 PC: 13ff4 | Get or set file attributes
2018-12-17T22:41:54.379020108Z 47 PC: 1b8f5 | Get disk transfer address
2018-12-17T22:41:54.380607986Z 26 PC: 1b900 | Set disk transfer address
2018-12-17T22:41:54.383167553Z 78 PC: 1b90c | Find first file
2018-12-17T22:41:54.390171127Z 26 PC: 1b91e | Set disk transfer address
2018-12-17T22:41:54.393845031Z 26 PC: 13788 | Set disk transfer address
2018-12-17T22:41:54.395781117Z 78 PC: 1379a | Find first file
2018-12-17T22:41:54.402902064Z 67 PC: 13fbd | Get or set file attributes
2018-12-17T22:41:54.409527262Z 67 PC: 13ff4 | Get or set file attributes
2018-12-17T22:41:54.421280964Z 61 PC: 14139 | Open file (Filename = 'TEST.EXE')
2018-12-17T22:41:54.43134015Z 66 PC: 1bbdb | Move file pointer
2018-12-17T22:41:54.433863735Z 63 PC: 141db | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:41:54.443323201Z 62 PC: 14221 | Close file
2018-12-17T22:41:54.445970612Z 67 PC: 13ff4 | Get or set file attributes
2018-12-17T22:41:54.458672075Z 47 PC: 1b932 | Get disk transfer address
2018-12-17T22:41:54.460634677Z 26 PC: 1b93d | Set disk transfer address
2018-12-17T22:41:54.462201847Z 79 PC: 1b941 | Find next file
2018-12-17T22:41:54.465129468Z 26 PC: 1b951 | Set disk transfer address
2018-12-17T22:41:54.474534499Z 76 PC: 12f63 | Terminate with return code (Return code = '0')