Sample viewer

vx.netlux.org/Trojan.DOS.Telefoon

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:43:36.922775316Z 61 PC: 3d3c8 | Open file (Filename = '')
2018-12-17T22:43:36.928602324Z 62 PC: 3d3cf | Close file
2018-12-17T22:43:36.930685239Z 48 PC: 12a4c | Get DOS version
2018-12-17T22:43:36.932498451Z 53 PC: 12bc3 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:43:36.933870319Z 53 PC: 12bd0 | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:43:36.935516726Z 53 PC: 12bdd | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:43:36.937747124Z 53 PC: 12bea | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:43:36.939452197Z 37 PC: 12bfe | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:43:36.94112833Z 74 PC: 12ad9 | Reallocate memory
2018-12-17T22:43:36.943578979Z 68 PC: 13444 | I/O control for devices (Set for = '')
2018-12-17T22:43:36.945576703Z 74 PC: 151c5 | Reallocate memory
2018-12-17T22:43:36.947940601Z 68 PC: 13444 | I/O control for devices (Set for = 'Borland C++ - Copyright 1991 Borland Intl.')
2018-12-17T22:43:36.952322386Z 68 PC: 14c59 | I/O control for devices (Set for = '')
2018-12-17T22:43:36.954067061Z 74 PC: 151c5 | Reallocate memory
2018-12-17T22:43:36.957233806Z 74 PC: 151c5 | Reallocate memory
2018-12-17T22:43:36.960770471Z 37 PC: 1315e | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:43:36.961962576Z 37 PC: 1315e | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:43:36.965373065Z 61 PC: 15f15 | Open file (Filename = 'A:\RAR.CFG')
2018-12-17T22:43:36.974196069Z 25 PC: 12f27 | Get default drive
2018-12-17T22:43:36.975644208Z 71 PC: 1303e | Get current directory
2018-12-17T22:43:36.980093835Z 47 PC: 159a1 | Get disk transfer address
2018-12-17T22:43:36.981156338Z 26 PC: 159aa | Set disk transfer address
2018-12-17T22:43:36.981942867Z 78 PC: 159b4 | Find first file
2018-12-17T22:43:36.987830153Z 26 PC: 159bd | Set disk transfer address
2018-12-17T22:43:36.989074431Z 56 PC: 12d28 | Get or set country info
2018-12-17T22:43:36.990875878Z 47 PC: 159d4 | Get disk transfer address
2018-12-17T22:43:36.992557654Z 26 PC: 159dd | Set disk transfer address
2018-12-17T22:43:36.993361619Z 79 PC: 159e1 | Find next file
2018-12-17T22:43:36.995191834Z 26 PC: 159ea | Set disk transfer address
2018-12-17T22:43:36.998303612Z 47 PC: 159d4 | Get disk transfer address
2018-12-17T22:43:36.999247121Z 26 PC: 159dd | Set disk transfer address
2018-12-17T22:43:37.000290958Z 79 PC: 159e1 | Find next file
2018-12-17T22:43:37.003018389Z 26 PC: 159ea | Set disk transfer address
2018-12-17T22:43:37.006038555Z 47 PC: 159d4 | Get disk transfer address
2018-12-17T22:43:37.007705082Z 26 PC: 159dd | Set disk transfer address
2018-12-17T22:43:37.008716972Z 79 PC: 159e1 | Find next file
2018-12-17T22:43:37.011417646Z 26 PC: 159ea | Set disk transfer address
2018-12-17T22:43:37.015075233Z 47 PC: 159d4 | Get disk transfer address
2018-12-17T22:43:37.016057771Z 26 PC: 159dd | Set disk transfer address
2018-12-17T22:43:37.016975991Z 79 PC: 159e1 | Find next file
2018-12-17T22:43:37.019998671Z 26 PC: 159ea | Set disk transfer address
2018-12-17T22:43:37.023028294Z 47 PC: 159d4 | Get disk transfer address
2018-12-17T22:43:37.023925687Z 26 PC: 159dd | Set disk transfer address
2018-12-17T22:43:37.025662486Z 79 PC: 159e1 | Find next file
2018-12-17T22:43:37.028254997Z 26 PC: 159ea | Set disk transfer address
2018-12-17T22:43:37.031229086Z 47 PC: 159d4 | Get disk transfer address
2018-12-17T22:43:37.032767013Z 26 PC: 159dd | Set disk transfer address
2018-12-17T22:43:37.033700336Z 79 PC: 159e1 | Find next file
2018-12-17T22:43:37.036149001Z 26 PC: 159ea | Set disk transfer address
2018-12-17T22:43:37.040534438Z 47 PC: 159d4 | Get disk transfer address
2018-12-17T22:43:37.041483023Z 26 PC: 159dd | Set disk transfer address
2018-12-17T22:43:37.042509316Z 79 PC: 159e1 | Find next file
2018-12-17T22:43:37.045379601Z 26 PC: 159ea | Set disk transfer address
2018-12-17T22:43:37.048421978Z 47 PC: 159d4 | Get disk transfer address
2018-12-17T22:43:37.04974651Z 26 PC: 159dd | Set disk transfer address
2018-12-17T22:43:37.05137654Z 79 PC: 159e1 | Find next file
2018-12-17T22:43:37.053948263Z 26 PC: 159ea | Set disk transfer address
2018-12-17T22:43:37.058069171Z 47 PC: 159d4 | Get disk transfer address
2018-12-17T22:43:37.059413471Z 26 PC: 159dd | Set disk transfer address
2018-12-17T22:43:37.06065319Z 79 PC: 159e1 | Find next file
2018-12-17T22:43:37.064018323Z 26 PC: 159ea | Set disk transfer address