Sample viewer

vx.netlux.org/Virus.DOS.HLLP.Harmless.6480

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:43:39.925273757Z 53 PC: 1353a | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:43:39.930361629Z 53 PC: 1353a | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:43:39.93190574Z 53 PC: 1353a | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:43:39.933155429Z 53 PC: 1353a | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:43:39.934387403Z 53 PC: 1353a | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:43:39.936071185Z 53 PC: 1353a | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:43:39.937433053Z 53 PC: 1353a | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:43:39.938848673Z 53 PC: 1353a | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:43:39.940867266Z 53 PC: 1353a | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:43:39.942610529Z 53 PC: 1353a | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:43:39.944339699Z 53 PC: 1353a | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:43:39.947037085Z 53 PC: 1353a | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:43:39.948806032Z 53 PC: 1353a | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:43:39.95054233Z 53 PC: 1353a | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:43:39.952358384Z 53 PC: 1353a | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:43:39.954120098Z 53 PC: 1353a | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:43:39.955783845Z 53 PC: 1353a | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:43:39.958103605Z 53 PC: 1353a | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:43:39.959761425Z 53 PC: 1353a | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:43:39.961240872Z 37 PC: 1354f | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:43:39.963001829Z 37 PC: 13557 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:43:39.964092074Z 37 PC: 1355f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:43:39.96501656Z 37 PC: 13567 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:43:39.966371122Z 68 PC: 13fae | I/O control for devices (Set for = '')
2018-12-17T22:43:39.967724786Z 44 PC: 140e5 | Get time 0x140e5: mov word ptr [0x40], cx
0x140e9: mov word ptr [0x42], dx
0x140ed: retf
0x140ee: call 0x14135
0x140f1: jb 0x14102
0x140f3: mov cx, word ptr es:[di + 4]
0x140f7: cmp cx, 1
0x140fa: je 0x14102
0x140fc: xor bx, bx
0x140fe: push cs
0x140ff: call 0x23c71
0x14102: retf 4
0x14105: call 0x14135
0x14108: jb 0x1411d
0x1410a: mov ax, cx
0x1410c: mov dx, bx
0x1410e: mov cx, word ptr es:[di + 4]
0x14112: cmp cx, 1
0x14115: je 0x1411d
0x14117: xor bx, bx
2018-12-17T22:43:39.969830184Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:39.970687044Z 78 PC: 13379 | Find first file
2018-12-17T22:43:39.974790758Z 60 PC: 139fd | Create or truncate file
2018-12-17T22:43:40.31650676Z 62 PC: 13a4d | Close file
2018-12-17T22:43:40.318709551Z 65 PC: 13b46 | Delete file (Filename = 'C:\#')
2018-12-17T22:43:40.326554682Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.327948781Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.329915831Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.33196056Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.333681211Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.334864222Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.337020888Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.337936208Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.339593735Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.341263588Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.342830187Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.343724686Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.345740462Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.347112298Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.348764038Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.350115062Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.353236927Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.354244502Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.356456966Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.367029278Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.370130014Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.371875286Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.375041867Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.376507503Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.378778198Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.380740058Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.383407619Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.38466741Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.387714355Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.389322388Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.392567018Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.395454718Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.398187911Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.399699978Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.403026401Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.404639187Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.407372932Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.409051647Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.412472181Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.413950658Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.416642857Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.418840284Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.420614472Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.421656416Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.423830212Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.424684616Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.42645928Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.428253306Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.431903131Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.432735416Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.435416449Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.436497124Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.438931089Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.440299119Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.443355536Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.444423168Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.447588975Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.44941002Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.452132615Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.453107882Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.456345718Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.458140055Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.461712242Z 26 PC: 1336d | Set disk transfer address
2018-12-17T22:43:40.463916956Z 78 PC: 13379 | Find first file
2018-12-17T22:43:40.475224344Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.477167468Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.482107819Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.483570734Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.487687006Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.489756717Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.493456245Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.49458315Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.498867814Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.500040281Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.507143275Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.508577491Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.513112879Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.51447993Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.518372753Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.520448599Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.524660528Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.526350242Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.530706569Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.532011276Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.535734548Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.538143841Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.541885297Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.542860678Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.547815499Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.54931395Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.553771227Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.555667963Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.559263442Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.560743265Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.567731976Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.569057286Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.572186255Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.574020889Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.577421553Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.578621805Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.582993481Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.584419418Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.5877759Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.589604125Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.592900356Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.594246149Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.598119047Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.599462415Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.604326643Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.606784402Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.613859106Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.615070201Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.619161719Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.620848272Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.624849425Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.626554388Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.632302287Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.633861897Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.638039952Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.63953568Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.642181903Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.643338043Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.648149227Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.648965974Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.653333277Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.654424813Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.658580907Z 26 PC: 13391 | Set disk transfer address
2018-12-17T22:43:40.659779263Z 79 PC: 13396 | Find next file
2018-12-17T22:43:40.664612308Z 48 PC: 13bbf | Get DOS version
2018-12-17T22:43:40.666276334Z 67 PC: 132cf | Get or set file attributes
2018-12-17T22:43:40.673097364Z 67 PC: 132f6 | Get or set file attributes
2018-12-17T22:43:40.693278519Z 61 PC: 139fd | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:43:40.700723702Z 87 PC: 13310 | Get or set file date and time
2018-12-17T22:43:40.703708569Z 66 PC: 13b2f | Move file pointer
2018-12-17T22:43:40.705381048Z 63 PC: 13ad0 | Read file or device (Read 6480 bytes on handle 5)
2018-12-17T22:43:40.714705551Z 66 PC: 1414f | Move file pointer
2018-12-17T22:43:40.716130695Z 66 PC: 1415d | Move file pointer
2018-12-17T22:43:40.718425026Z 66 PC: 1416b | Move file pointer
2018-12-17T22:43:40.720816627Z 66 PC: 13b2f | Move file pointer
2018-12-17T22:43:40.722792695Z 63 PC: 13ad0 | Read file or device (Read 6480 bytes on handle 5)
2018-12-17T22:43:40.739441569Z 66 PC: 13b2f | Move file pointer
2018-12-17T22:43:40.741083188Z 64 PC: 13ad0 | Write file or device (Write 5120 bytes on handle 5)
2018-12-17T22:43:40.749547458Z 66 PC: 13b2f | Move file pointer
2018-12-17T22:43:40.751744155Z 64 PC: 13a2e | Write file or device (Write 0 bytes on handle 5)
2018-12-17T22:43:40.757658028Z 87 PC: 1333d | Get or set file date and time
2018-12-17T22:43:40.758870901Z 62 PC: 13a4d | Close file
2018-12-17T22:43:40.764391953Z 67 PC: 132f6 | Get or set file attributes
2018-12-17T22:43:40.771056106Z 41 PC: 134a1 | Parse filename
2018-12-17T22:43:40.772389543Z 41 PC: 134af | Parse filename
2018-12-17T22:43:40.774295218Z 75 PC: 134ba | Execute program
2018-12-17T22:43:40.784707779Z 9 PC: 17b1c | Display string (Could not find end pointer)
2018-12-17T22:43:40.788413299Z 76 PC: 17b21 | Terminate with return code (Return code = '0')
2018-12-17T22:43:40.791559784Z 67 PC: 132cf | Get or set file attributes
2018-12-17T22:43:40.795433464Z 67 PC: 132f6 | Get or set file attributes
2018-12-17T22:43:40.801776745Z 61 PC: 139fd | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:43:40.809819086Z 87 PC: 13310 | Get or set file date and time
2018-12-17T22:43:40.811855308Z 66 PC: 13b2f | Move file pointer
2018-12-17T22:43:40.813867604Z 63 PC: 13ad0 | Read file or device (Read 6480 bytes on handle 5)
2018-12-17T22:43:40.822352123Z 66 PC: 13b2f | Move file pointer
2018-12-17T22:43:40.824028926Z 64 PC: 13ad0 | Write file or device (Write 6480 bytes on handle 5)
2018-12-17T22:43:40.833908295Z 66 PC: 1414f | Move file pointer
2018-12-17T22:43:40.837133954Z 66 PC: 1415d | Move file pointer
2018-12-17T22:43:40.839136168Z 66 PC: 1416b | Move file pointer
2018-12-17T22:43:40.840787013Z 66 PC: 13b2f | Move file pointer
2018-12-17T22:43:40.843051566Z 64 PC: 13ad0 | Write file or device (Write 5120 bytes on handle 5)
2018-12-17T22:43:40.853227901Z 87 PC: 1333d | Get or set file date and time
2018-12-17T22:43:40.854905655Z 62 PC: 13a4d | Close file
2018-12-17T22:43:40.864201031Z 67 PC: 132f6 | Get or set file attributes
2018-12-17T22:43:40.876419449Z 67 PC: 132cf | Get or set file attributes
2018-12-17T22:43:40.883281818Z 67 PC: 132f6 | Get or set file attributes
2018-12-17T22:43:40.894557919Z 61 PC: 139fd | Open file (Filename = 'C:\WINDOWS\SETUP.EXE')
2018-12-17T22:43:40.902396217Z 87 PC: 13310 | Get or set file date and time
2018-12-17T22:43:40.90409201Z 66 PC: 13b2f | Move file pointer
2018-12-17T22:43:40.90663384Z 63 PC: 13ad0 | Read file or device (Read 6480 bytes on handle 5)
2018-12-17T22:43:40.915810946Z 66 PC: 13b2f | Move file pointer
2018-12-17T22:43:40.917472618Z 64 PC: 13ad0 | Write file or device (Write 6480 bytes on handle 5)
2018-12-17T22:43:40.926818481Z 66 PC: 1414f | Move file pointer
2018-12-17T22:43:40.928844135Z 66 PC: 1415d | Move file pointer
2018-12-17T22:43:40.930860459Z 66 PC: 1416b | Move file pointer
2018-12-17T22:43:40.933803641Z 66 PC: 13b2f | Move file pointer
2018-12-17T22:43:40.935431847Z 64 PC: 13ad0 | Write file or device (Write 6480 bytes on handle 5)
2018-12-17T22:43:40.948134896Z 87 PC: 1333d | Get or set file date and time
2018-12-17T22:43:40.951174802Z 62 PC: 13a4d | Close file
2018-12-17T22:43:40.959247889Z 67 PC: 132f6 | Get or set file attributes
2018-12-17T22:43:40.969748218Z 77 PC: 134d8 | Get program return code
2018-12-17T22:43:40.971913669Z 64 PC: 13958 | Write file or device (Write 0 bytes on handle 1)
2018-12-17T22:43:40.974209675Z 37 PC: 13691 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:43:40.975987038Z 37 PC: 13691 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:43:40.978175397Z 37 PC: 13691 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:43:40.979864817Z 37 PC: 13691 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:43:40.981554283Z 37 PC: 13691 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:43:40.983876494Z 37 PC: 13691 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:43:40.985490487Z 37 PC: 13691 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:43:40.987088584Z 37 PC: 13691 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:43:40.990468769Z 37 PC: 13691 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:43:40.993092751Z 37 PC: 13691 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:43:40.995007227Z 37 PC: 13691 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:43:40.997399282Z 37 PC: 13691 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:43:40.99933853Z 37 PC: 13691 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:43:41.001195746Z 37 PC: 13691 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:43:41.004434855Z 37 PC: 13691 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:43:41.006650159Z 37 PC: 13691 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:43:41.008351224Z 37 PC: 13691 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:43:41.010716129Z 37 PC: 13691 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:43:41.011677681Z 37 PC: 13691 | Set interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:43:41.018072229Z 76 PC: 136d0 | Terminate with return code (Return code = '0')