Sample viewer

vx.netlux.org/Trojan.DOS.THCK.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:44:07.08894421Z 48 PC: 12a4c | Get DOS version
2018-12-17T22:44:07.092128391Z 53 PC: 12bab | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:44:07.093646201Z 53 PC: 12bb8 | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:44:07.095143854Z 53 PC: 12bc5 | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:44:07.096429569Z 53 PC: 12bd2 | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:44:07.098536727Z 37 PC: 12be6 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:44:07.099982983Z 74 PC: 12af4 | Reallocate memory
2018-12-17T22:44:07.102284836Z 68 PC: 142c8 | I/O control for devices (Set for = '�2')
2018-12-17T22:44:07.105349302Z 68 PC: 142c8 | I/O control for devices (Set for = '�2')
2018-12-17T22:44:07.109044572Z 64 PC: 14c07 | Write file or device (Write 58 bytes on handle 1)
2018-12-17T22:44:07.116804437Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.121258151Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.126390611Z 64 PC: 14c07 | Write file or device (Write 53 bytes on handle 1)
2018-12-17T22:44:07.129910652Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.133525741Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.146216217Z 64 PC: 14c07 | Write file or device (Write 57 bytes on handle 1)
2018-12-17T22:44:07.153759113Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.157060825Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.162494359Z 64 PC: 14c07 | Write file or device (Write 82 bytes on handle 1)
2018-12-17T22:44:07.171763027Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.174715813Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.180492783Z 64 PC: 14c07 | Write file or device (Write 25 bytes on handle 1)
2018-12-17T22:44:07.184035447Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.186954299Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.193257577Z 64 PC: 14c07 | Write file or device (Write 72 bytes on handle 1)
2018-12-17T22:44:07.198249764Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.201174246Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.211503596Z 64 PC: 14c07 | Write file or device (Write 68 bytes on handle 1)
2018-12-17T22:44:07.216565834Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.219794819Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.225961971Z 64 PC: 14c07 | Write file or device (Write 35 bytes on handle 1)
2018-12-17T22:44:07.229548778Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.234020787Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.242336486Z 64 PC: 14c07 | Write file or device (Write 48 bytes on handle 1)
2018-12-17T22:44:07.2470987Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.250058529Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.25592119Z 64 PC: 14c07 | Write file or device (Write 48 bytes on handle 1)
2018-12-17T22:44:07.260894731Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.263975186Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.270686191Z 64 PC: 14c07 | Write file or device (Write 48 bytes on handle 1)
2018-12-17T22:44:07.273820407Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.276139483Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.27982763Z 64 PC: 14c07 | Write file or device (Write 33 bytes on handle 1)
2018-12-17T22:44:07.284554638Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.286944286Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.292030669Z 64 PC: 14c07 | Write file or device (Write 53 bytes on handle 1)
2018-12-17T22:44:07.301493923Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.304779864Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.310747723Z 64 PC: 14c07 | Write file or device (Write 81 bytes on handle 1)
2018-12-17T22:44:07.322197046Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.325194125Z 64 PC: 14c07 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:44:07.331872559Z 37 PC: 12bf2 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:44:07.334078732Z 37 PC: 12bfd | Set interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:44:07.335864496Z 37 PC: 12c08 | Set interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:44:07.337694243Z 37 PC: 12c13 | Set interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:44:07.340007858Z 76 PC: 12b9c | Terminate with return code (Return code = '0')