Sample viewer

vx.netlux.org/Virus.DOS.PS-MPC.646.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:43:50.819330141Z 26 PC: 12abe | Set disk transfer address
2018-12-17T22:43:50.820936695Z 78 PC: 12ad7 | Find first file
2018-12-17T22:43:50.831896611Z 61 PC: 12ce0 | Open file (Filename = 'TEST.EXE')
2018-12-17T22:43:50.839519964Z 63 PC: 12afa | Read file or device (Read 26 bytes on handle 5)
2018-12-17T22:43:50.842913585Z 62 PC: 12b05 | Close file
2018-12-17T22:43:50.846133104Z 79 PC: 12ad7 | Find next file
2018-12-17T22:43:50.848976195Z 26 PC: 12b23 | Set disk transfer address
2018-12-17T22:43:56.656791756Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T22:43:56.658984396Z 2 PC: 1268d | Character output (Char = 'c0')
2018-12-17T22:43:56.660333553Z 2 PC: 1268d | Character output (Char = '75')
2018-12-17T22:43:56.661727417Z 2 PC: 1268d | Character output (Char = 'fa')
2018-12-17T22:43:56.663568621Z 2 PC: 1268d | Character output (Char = '26')
2018-12-17T22:43:56.664939489Z 2 PC: 1268d | Character output (Char = '89')
2018-12-17T22:43:56.66626823Z 2 PC: 1268d | Character output (Char = '3e')
2018-12-17T22:43:56.667998049Z 2 PC: 1268d | Character output (Char = '5c')
2018-12-17T22:43:56.669446536Z 2 PC: 1268d | Character output (Char = '03')
2018-12-17T22:43:56.670528017Z 2 PC: 1268d | Character output (Char = '26')
2018-12-17T22:43:56.679382019Z 2 PC: 1268d | Character output (Char = 'ff')
2018-12-17T22:43:56.681342943Z 2 PC: 1268d | Character output (Char = '0e')
2018-12-17T22:43:56.683856154Z 2 PC: 1268d | Character output (Char = '5c')
2018-12-17T22:43:56.685925798Z 2 PC: 1268d | Character output (Char = '03')
2018-12-17T22:43:56.691010775Z 2 PC: 1268d | Character output (Char = '26')
2018-12-17T22:43:56.693316229Z 2 PC: 1268d | Character output (Char = '8a')
2018-12-17T22:43:56.695382849Z 2 PC: 1268d | Character output (Char = '26')
2018-12-17T22:43:56.702993646Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T22:43:56.704830176Z 2 PC: 1268d | Character output (Char = '03')
2018-12-17T22:43:56.706509258Z 2 PC: 1268d | Character output (Char = '80')
2018-12-17T22:43:56.709536746Z 2 PC: 1268d | Character output (Char = 'c4')
2018-12-17T22:43:56.711558209Z 2 PC: 1268d | Character output (Char = '40')
2018-12-17T22:43:56.713625931Z 2 PC: 1268d | Character output (Char = '26')
2018-12-17T22:43:56.716838272Z 2 PC: 1268d | Character output (Char = '88')
2018-12-17T22:43:56.718515842Z 2 PC: 1268d | Character output (Char = '26')
2018-12-17T22:43:56.719945963Z 2 PC: 1268d | Character output (Char = '00')
2018-12-17T22:43:56.722009553Z 2 PC: 1268d | Character output (Char = '03')
2018-12-17T22:43:56.723656127Z 2 PC: 1268d | Character output (Char = 'e8')
2018-12-17T22:43:56.725244955Z 2 PC: 1268d | Character output (Char = '8b')
2018-12-17T22:43:56.727185077Z 2 PC: 1268d | Character output (Char = '02')
2018-12-17T22:43:56.730551273Z 2 PC: 1268d | Character output (Char = 'e8')
2018-12-17T22:43:56.732182308Z 2 PC: 1268d | Character output (Char = '31')
2018-12-17T22:43:56.734335104Z 2 PC: 1268d | Character output (Char = '03')
2018-12-17T22:43:56.736242235Z 2 PC: 1268d | Character output (Char = '0e')
2018-12-17T22:43:56.737754522Z 2 PC: 1268d | Character output (Char = '1f')
2018-12-17T22:43:56.739222515Z 2 PC: 1268d | Character output (Char = 'be')
2018-12-17T22:43:56.741009371Z 2 PC: 1268d | Character output (Char = 'e0')
2018-12-17T22:43:56.742572331Z 2 PC: 1268d | Character output (Char = '26')
2018-12-17T22:43:56.744262724Z 2 PC: 1268d | Character output (Char = '81')
2018-12-17T22:43:56.750913396Z 2 PC: 1268d | Character output (Char = 'c6')
2018-12-17T22:43:56.752539967Z 2 PC: 1268d | Character output (Char = '00')
2018-12-17T22:43:56.754077469Z 2 PC: 1268d | Character output (Char = '01')
2018-12-17T22:43:56.756094002Z 2 PC: 1268d | Character output (Char = 'b9')
2018-12-17T22:43:56.757470797Z 2 PC: 1268d | Character output (Char = '53')
2018-12-17T22:43:56.758836051Z 2 PC: 1268d | Character output (Char = '9d')
2018-12-17T22:43:56.760624521Z 2 PC: 1268d | Character output (Char = 'fc')
2018-12-17T22:43:56.762630351Z 2 PC: 1268d | Character output (Char = 'd1')
2018-12-17T22:43:56.764478076Z 2 PC: 1268d | Character output (Char = 'e9')
2018-12-17T22:43:56.766343223Z 2 PC: 1268d | Character output (Char = '33')
2018-12-17T22:43:56.768116354Z 2 PC: 1268d | Character output (Char = 'd2')
2018-12-17T22:43:56.769549026Z 2 PC: 1268d | Character output (Char = 'ad')
2018-12-17T22:43:56.771193198Z 2 PC: 1268d | Character output (Char = '03')
2018-12-17T22:43:56.772956996Z 2 PC: 1268d | Character output (Char = 'd0')
2018-12-17T22:43:56.773975111Z 2 PC: 1268d | Character output (Char = '83')
2018-12-17T22:43:56.775022816Z 2 PC: 1268d | Character output (Char = 'd2')
2018-12-17T22:43:56.778950545Z 2 PC: 1268d | Character output (Char = '00')
2018-12-17T22:43:56.780225129Z 2 PC: 1268d | Character output (Char = 'e2')
2018-12-17T22:43:56.782191375Z 2 PC: 1268d | Character output (Char = 'f8')
2018-12-17T22:43:56.78509057Z 2 PC: 1268d | Character output (Char = '89')
2018-12-17T22:43:56.786952844Z 2 PC: 1268d | Character output (Char = '16')
2018-12-17T22:43:56.788795407Z 2 PC: 1268d | Character output (Char = '68')
2018-12-17T22:43:56.791073217Z 2 PC: 1268d | Character output (Char = '03')
2018-12-17T22:43:56.792620765Z 2 PC: 1268d | Character output (Char = '80')
2018-12-17T22:43:56.794255709Z 2 PC: 1268d | Character output (Char = '3e')
2018-12-17T22:43:56.796393637Z 2 PC: 1268d | Character output (Char = '3f')
2018-12-17T22:43:56.797941983Z 2 PC: 1268d | Character output (Char = '21')
2018-12-17T22:43:56.799435479Z 2 PC: 1268d | Character output (Char = '00')
2018-12-17T22:43:56.802434326Z 2 PC: 1268d | Character output (Char = '75')
2018-12-17T22:43:56.804359895Z 2 PC: 1268d | Character output (Char = '0c')
2018-12-17T22:43:56.806069473Z 2 PC: 1268d | Character output (Char = 'bb')
2018-12-17T22:43:56.80874407Z 2 PC: 1268d | Character output (Char = '04')
2018-12-17T22:43:56.810098697Z 2 PC: 1268d | Character output (Char = '00')
2018-12-17T22:43:56.811312539Z 2 PC: 1268d | Character output (Char = 'b4')
2018-12-17T22:43:56.813931839Z 2 PC: 1268d | Character output (Char = '48')
2018-12-17T22:43:56.81582609Z 2 PC: 1268d | Character output (Char = 'cd')
2018-12-17T22:43:56.817538352Z 2 PC: 1268d | Character output (Char = '21')
2018-12-17T22:43:56.819084093Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T22:43:56.82302805Z 2 PC: 1268d | Character output (Char = '03')
2018-12-17T22:43:56.824643466Z 2 PC: 1268d | Character output (Char = 'a3')
2018-12-17T22:43:56.826120678Z 2 PC: 1268d | Character output (Char = '1a')
2018-12-17T22:43:56.82805093Z 2 PC: 1268d | Character output (Char = '03')
2018-12-17T22:43:56.829993533Z 2 PC: 1268d | Character output (Char = '8b')
2018-12-17T22:43:56.832133864Z 2 PC: 1268d | Character output (Char = '1e')
2018-12-17T22:43:56.834900375Z 2 PC: 1268d | Character output (Char = '0f')
2018-12-17T22:43:56.836901232Z 2 PC: 1268d | Character output (Char = '05')
2018-12-17T22:43:56.839099461Z 2 PC: 1268d | Character output (Char = '89')
2018-12-17T22:43:56.84196442Z 2 PC: 1268d | Character output (Char = '1e')
2018-12-17T22:43:56.843918542Z 2 PC: 1268d | Character output (Char = '91')
2018-12-17T22:43:56.845774732Z 2 PC: 1268d | Character output (Char = '21')
2018-12-17T22:43:56.848685917Z 2 PC: 1268d | Character output (Char = 'c7')
2018-12-17T22:43:56.850317122Z 2 PC: 1268d | Character output (Char = '06')
2018-12-17T22:43:56.851761494Z 2 PC: 1268d | Character output (Char = '93')
2018-12-17T22:43:56.853650193Z 2 PC: 1268d | Character output (Char = '21')
2018-12-17T22:43:56.855252826Z 2 PC: 1268d | Character output (Char = '00')
2018-12-17T22:43:56.856812701Z 2 PC: 1268d | Character output (Char = '00')
2018-12-17T22:43:56.858581045Z 2 PC: 1268d | Character output (Char = '8e')
2018-12-17T22:43:56.860530803Z 2 PC: 1268d | Character output (Char = 'db')
2018-12-17T22:43:56.861780225Z 2 PC: 1268d | Character output (Char = '33')
2018-12-17T22:43:56.863080992Z 2 PC: 1268d | Character output (Char = 'f6')
2018-12-17T22:43:56.86495859Z 2 PC: 1268d | Character output (Char = '8b')
2018-12-17T22:43:56.86640065Z 2 PC: 1268d | Character output (Char = 'fe')
2018-12-17T22:43:56.867765183Z 2 PC: 1268d | Character output (Char = 'bb')
2018-12-17T22:43:56.869451377Z 2 PC: 1268d | Character output (Char = 'ff')
2018-12-17T22:43:56.870836253Z 2 PC: 1268d | Character output (Char = '0f')
2018-12-17T22:43:56.872174155Z 2 PC: 1268d | Character output (Char = '36')
2018-12-17T22:43:56.874508968Z 2 PC: 1268d | Character output (Char = '89')
2018-12-17T22:43:56.877222293Z 2 PC: 1268d | Character output (Char = '1e')
2018-12-17T22:43:56.878671285Z 2 PC: 1268d | Character output (Char = '8f')
2018-12-17T22:43:56.88057477Z 2 PC: 1268d | Character output (Char = '21')
2018-12-17T22:43:56.882266156Z 2 PC: 1268d | Character output (Char = 'd1')
2018-12-17T22:43:56.884060753Z 2 PC: 1268d | Character output (Char = 'e3')
2018-12-17T22:43:56.886569342Z 2 PC: 1268d | Character output (Char = 'd1')
2018-12-17T22:43:56.888437883Z 2 PC: 1268d | Character output (Char = 'e3')
2018-12-17T22:43:56.890414115Z 2 PC: 1268d | Character output (Char = 'd1')
2018-12-17T22:43:56.892889728Z 2 PC: 1268d | Character output (Char = 'e3')
2018-12-17T22:43:56.894879172Z 2 PC: 1268d | Character output (Char = 'd1')
2018-12-17T22:43:56.897318513Z 2 PC: 1268d | Character output (Char = 'e3')
2018-12-17T22:43:56.899682459Z 2 PC: 1268d | Character output (Char = '36')
2018-12-17T22:43:56.901579885Z 2 PC: 1268d | Character output (Char = '89')
2018-12-17T22:43:56.903465113Z 2 PC: 1268d | Character output (Char = '1e')
2018-12-17T22:43:56.906546707Z 2 PC: 1268d | Character output (Char = '8f')
2018-12-17T22:43:56.909217754Z 2 PC: 1268d | Character output (Char = '21')
2018-12-17T22:43:56.910617404Z 2 PC: 1268d | Character output (Char = '4b')
2018-12-17T22:43:56.91349987Z 2 PC: 1268d | Character output (Char = '33')
2018-12-17T22:43:56.915311788Z 2 PC: 1268d | Character output (Char = 'd2')
2018-12-17T22:43:56.917076013Z 2 PC: 1268d | Character output (Char = 'e8')
2018-12-17T22:43:56.919828688Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T22:43:56.92124323Z 2 PC: 1268d | Character output (Char = '01')
2018-12-17T22:43:56.922916226Z 2 PC: 1268d | Character output (Char = '1e')
2018-12-17T22:43:56.925461119Z 2 PC: 1268d | Character output (Char = '0e')
2018-12-17T22:43:56.927548088Z 2 PC: 1268d | Character output (Char = '1f')
2018-12-17T22:43:56.930378584Z 2 PC: 1268d | Character output (Char = '01')
2018-12-17T22:43:56.934125256Z 2 PC: 1268d | Character output (Char = '0e')
2018-12-17T22:43:56.936128431Z 2 PC: 1268d | Character output (Char = '93')
2018-12-17T22:43:56.937615289Z 2 PC: 1268d | Character output (Char = '21')
2018-12-17T22:43:56.94503521Z 2 PC: 1268d | Character output (Char = '1f')
2018-12-17T22:43:56.947095019Z 2 PC: 1268d | Character output (Char = '83')
2018-12-17T22:43:56.948794386Z 2 PC: 1268d | Character output (Char = 'f9')
2018-12-17T22:43:56.950410735Z 2 PC: 1268d | Character output (Char = '01')
2018-12-17T22:43:56.952063171Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:43:56.953524693Z 2 PC: 1268d | Character output (Char = '09')
2018-12-17T22:43:56.955631265Z 2 PC: 1268d | Character output (Char = '2b')
2018-12-17T22:43:56.957373961Z 2 PC: 1268d | Character output (Char = 'd9')
2018-12-17T22:43:56.95854701Z 2 PC: 1268d | Character output (Char = '73')
2018-12-17T22:43:56.960047669Z 2 PC: 1268d | Character output (Char = '03')
2018-12-17T22:43:56.962347773Z 2 PC: 1268d | Character output (Char = '42')
2018-12-17T22:43:56.963688114Z 2 PC: 1268d | Character output (Char = 'eb')
2018-12-17T22:43:56.965630652Z 2 PC: 1268d | Character output (Char = '02')
2018-12-17T22:43:56.967261802Z 2 PC: 1268d | Character output (Char = 'eb')
2018-12-17T22:43:56.96884892Z 2 PC: 1268d | Character output (Char = 'e7')
2018-12-17T22:43:56.970244006Z 2 PC: 1268d | Character output (Char = '0e')
2018-12-17T22:43:56.972859674Z 2 PC: 1268d | Character output (Char = '1f')
2018-12-17T22:43:56.975441984Z 2 PC: 1268d | Character output (Char = '0b')
2018-12-17T22:43:56.978077668Z 2 PC: 1268d | Character output (Char = 'd2')
2018-12-17T22:43:56.979415243Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T22:43:56.980428847Z 2 PC: 1268d | Character output (Char = '06')
2018-12-17T22:43:56.981662132Z 2 PC: 1268d | Character output (Char = 'ba')
2018-12-17T22:43:56.983216823Z 2 PC: 1268d | Character output (Char = '6b')
2018-12-17T22:43:56.984558912Z 2 PC: 1268d | Character output (Char = '22')
2018-12-17T22:43:56.986478154Z 2 PC: 1268d | Character output (Char = 'e8')
2018-12-17T22:43:56.987985905Z 2 PC: 1268d | Character output (Char = '12')
2018-12-17T22:43:56.989494008Z 2 PC: 1268d | Character output (Char = 'f9')
2018-12-17T22:43:56.991075923Z 2 PC: 1268d | Character output (Char = 'a1')
2018-12-17T22:43:56.992852468Z 2 PC: 1268d | Character output (Char = '8d')
2018-12-17T22:43:56.994212007Z 2 PC: 1268d | Character output (Char = '21')
2018-12-17T22:43:56.99555418Z 2 PC: 1268d | Character output (Char = 'b1')
2018-12-17T22:43:56.99719859Z 2 PC: 1268d | Character output (Char = '04')
2018-12-17T22:43:56.998558915Z 2 PC: 1268d | Character output (Char = 'd3')
2018-12-17T22:43:56.999915362Z 2 PC: 1268d | Character output (Char = 'e0')
2018-12-17T22:43:57.001261914Z 2 PC: 1268d | Character output (Char = '3b')
2018-12-17T22:43:57.002683618Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:43:57.003861339Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:43:57.005313114Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:43:57.006444228Z 62 PC: 122ab | Close file
2018-12-17T22:43:57.00804455Z 62 PC: 122ab | Close file
2018-12-17T22:43:57.010093102Z 62 PC: 122ab | Close file
2018-12-17T22:43:57.016750949Z 26 PC: 15a0 | Set disk transfer address
2018-12-17T22:43:57.018079918Z 78 PC: 15b9 | Find first file
2018-12-17T22:43:57.020262035Z 26 PC: 1605 | Set disk transfer address