Sample viewer

vx.netlux.org/Virus.DOS.Khizhnjak.419.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:44:17.445815188Z 78 PC: 20009 | Find first file
2018-12-17T22:44:17.453400685Z 67 PC: 20061 | Get or set file attributes
2018-12-17T22:44:17.470374343Z 61 PC: 2006e | Open file (Filename = ' cox')
2018-12-17T22:44:17.477953438Z 63 PC: 20081 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:17.485912437Z 66 PC: 20093 | Move file pointer
2018-12-17T22:44:17.487507061Z 66 PC: 200cd | Move file pointer
2018-12-17T22:44:17.488906239Z 64 PC: 200de | Write file or device (Write 419 bytes on handle 5)
2018-12-17T22:44:17.498356298Z 66 PC: 200ed | Move file pointer
2018-12-17T22:44:17.499902271Z 64 PC: 200fc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:44:17.506915013Z 87 PC: 20121 | Get or set file date and time
2018-12-17T22:44:17.509135854Z 62 PC: 20129 | Close file
2018-12-17T22:44:17.51779113Z 67 PC: 20137 | Get or set file attributes
2018-12-17T22:44:17.52836569Z 79 PC: 20009 | Find next file
2018-12-17T22:44:17.532640419Z 67 PC: 20061 | Get or set file attributes
2018-12-17T22:44:17.544196523Z 61 PC: 2006e | Open file (Filename = ' cox')
2018-12-17T22:44:17.551664229Z 63 PC: 20081 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:17.558960863Z 66 PC: 20093 | Move file pointer
2018-12-17T22:44:17.560811068Z 66 PC: 200cd | Move file pointer
2018-12-17T22:44:17.562389563Z 64 PC: 200de | Write file or device (Write 419 bytes on handle 5)
2018-12-17T22:44:17.565181366Z 66 PC: 200ed | Move file pointer
2018-12-17T22:44:17.567011203Z 64 PC: 200fc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:44:17.569698891Z 87 PC: 20121 | Get or set file date and time
2018-12-17T22:44:17.571331307Z 62 PC: 20129 | Close file
2018-12-17T22:44:17.587778617Z 67 PC: 20137 | Get or set file attributes
2018-12-17T22:44:17.597806481Z 79 PC: 20009 | Find next file
2018-12-17T22:44:17.600871137Z 67 PC: 20061 | Get or set file attributes
2018-12-17T22:44:17.611945827Z 61 PC: 2006e | Open file (Filename = ' cox')
2018-12-17T22:44:17.618960191Z 63 PC: 20081 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:17.632680049Z 66 PC: 20093 | Move file pointer
2018-12-17T22:44:17.635293397Z 66 PC: 200cd | Move file pointer
2018-12-17T22:44:17.63706286Z 64 PC: 200de | Write file or device (Write 419 bytes on handle 5)
2018-12-17T22:44:17.645747993Z 66 PC: 200ed | Move file pointer
2018-12-17T22:44:17.647817901Z 64 PC: 200fc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:44:17.655420419Z 87 PC: 20121 | Get or set file date and time
2018-12-17T22:44:17.65705015Z 62 PC: 20129 | Close file
2018-12-17T22:44:17.666129382Z 67 PC: 20137 | Get or set file attributes
2018-12-17T22:44:17.676522432Z 79 PC: 20009 | Find next file
2018-12-17T22:44:17.679471691Z 67 PC: 20061 | Get or set file attributes
2018-12-17T22:44:17.690359871Z 61 PC: 2006e | Open file (Filename = ' cox')
2018-12-17T22:44:17.698065964Z 63 PC: 20081 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:17.704759937Z 66 PC: 20093 | Move file pointer
2018-12-17T22:44:17.706319566Z 66 PC: 200cd | Move file pointer
2018-12-17T22:44:17.708401856Z 64 PC: 200de | Write file or device (Write 419 bytes on handle 5)
2018-12-17T22:44:17.71117225Z 66 PC: 200ed | Move file pointer
2018-12-17T22:44:17.712693888Z 64 PC: 200fc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:44:17.716102981Z 87 PC: 20121 | Get or set file date and time
2018-12-17T22:44:17.717812992Z 62 PC: 20129 | Close file
2018-12-17T22:44:17.726229219Z 67 PC: 20137 | Get or set file attributes
2018-12-17T22:44:17.73811884Z 79 PC: 20009 | Find next file
2018-12-17T22:44:17.741394422Z 67 PC: 20061 | Get or set file attributes
2018-12-17T22:44:17.75192471Z 61 PC: 2006e | Open file (Filename = ' cox')
2018-12-17T22:44:17.760705421Z 63 PC: 20081 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:17.768347624Z 66 PC: 20093 | Move file pointer
2018-12-17T22:44:17.770242784Z 66 PC: 200cd | Move file pointer
2018-12-17T22:44:17.7730837Z 64 PC: 200de | Write file or device (Write 419 bytes on handle 5)
2018-12-17T22:44:17.776375181Z 66 PC: 200ed | Move file pointer
2018-12-17T22:44:17.777895096Z 64 PC: 200fc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:44:17.781403184Z 87 PC: 20121 | Get or set file date and time
2018-12-17T22:44:17.783044126Z 62 PC: 20129 | Close file
2018-12-17T22:44:17.790782811Z 67 PC: 20137 | Get or set file attributes
2018-12-17T22:44:17.802024444Z 79 PC: 20009 | Find next file
2018-12-17T22:44:17.804978283Z 67 PC: 20061 | Get or set file attributes
2018-12-17T22:44:17.815217514Z 61 PC: 2006e | Open file (Filename = ' cox')
2018-12-17T22:44:17.824450515Z 63 PC: 20081 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:17.829933492Z 66 PC: 20093 | Move file pointer
2018-12-17T22:44:17.831864839Z 66 PC: 200cd | Move file pointer
2018-12-17T22:44:17.834669046Z 64 PC: 200de | Write file or device (Write 419 bytes on handle 5)
2018-12-17T22:44:17.837752277Z 66 PC: 200ed | Move file pointer
2018-12-17T22:44:17.839560072Z 64 PC: 200fc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:44:17.843739031Z 87 PC: 20121 | Get or set file date and time
2018-12-17T22:44:17.845696007Z 62 PC: 20129 | Close file
2018-12-17T22:44:17.854173048Z 67 PC: 20137 | Get or set file attributes
2018-12-17T22:44:17.865212522Z 79 PC: 20009 | Find next file
2018-12-17T22:44:17.868630782Z 67 PC: 20061 | Get or set file attributes
2018-12-17T22:44:17.878931168Z 61 PC: 2006e | Open file (Filename = ' cox')
2018-12-17T22:44:17.888396214Z 63 PC: 20081 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:17.895750186Z 66 PC: 20093 | Move file pointer
2018-12-17T22:44:17.897513298Z 66 PC: 200cd | Move file pointer
2018-12-17T22:44:17.899141897Z 64 PC: 200de | Write file or device (Write 419 bytes on handle 5)
2018-12-17T22:44:17.902426686Z 66 PC: 200ed | Move file pointer
2018-12-17T22:44:17.903966127Z 64 PC: 200fc | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:44:17.906778008Z 87 PC: 20121 | Get or set file date and time
2018-12-17T22:44:17.90877022Z 62 PC: 20129 | Close file
2018-12-17T22:44:17.91647464Z 67 PC: 20137 | Get or set file attributes
2018-12-17T22:44:17.92675621Z 79 PC: 20009 | Find next file
2018-12-17T22:44:17.930216039Z 80 PC: 13fb9 | Set current PSP
2018-12-17T22:44:17.931556466Z 48 PC: 13fbe | Get DOS version
2018-12-17T22:44:17.934069626Z 101 PC: 14044 | Get extended country info
2018-12-17T22:44:17.936509359Z 99 PC: 1404a | Get DBCS lead byte table pointer
2018-12-17T22:44:17.938192851Z 74 PC: 140ac | Reallocate memory
2018-12-17T22:44:17.939679553Z 25 PC: 140e3 | Get default drive
2018-12-17T22:44:17.941869335Z 37 PC: 13ba3 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:44:17.943063919Z 37 PC: 13baa | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:44:17.944280925Z 37 PC: 13bb1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:44:17.948535065Z 2 PC: 13e6c | Character output (Char = '0d')
2018-12-17T22:44:17.951022206Z 2 PC: 13e6c | Character output (Char = '0a')
2018-12-17T22:44:17.955067644Z 2 PC: 13e6c | Character output (Char = '0d')
2018-12-17T22:44:17.962197735Z 2 PC: 13e6c | Character output (Char = '0a')
2018-12-17T22:44:17.966255015Z 2 PC: 13e6c | Character output (Char = '4d')
2018-12-17T22:44:17.968772745Z 2 PC: 13e6c | Character output (Char = '69')
2018-12-17T22:44:17.972448568Z 2 PC: 13e6c | Character output (Char = '63')
2018-12-17T22:44:17.975833916Z 2 PC: 13e6c | Character output (Char = '72')
2018-12-17T22:44:17.978424101Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:44:17.982339625Z 2 PC: 13e6c | Character output (Char = '73')
2018-12-17T22:44:17.985127591Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:44:17.987703519Z 2 PC: 13e6c | Character output (Char = '66')
2018-12-17T22:44:17.991174098Z 2 PC: 13e6c | Character output (Char = '74')
2018-12-17T22:44:17.993421088Z 2 PC: 13e6c | Character output (Char = '28')
2018-12-17T22:44:17.995503709Z 2 PC: 13e6c | Character output (Char = '52')
2018-12-17T22:44:17.997973518Z 2 PC: 13e6c | Character output (Char = '29')
2018-12-17T22:44:18.000639455Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.00338392Z 2 PC: 13e6c | Character output (Char = '4d')
2018-12-17T22:44:18.006208905Z 2 PC: 13e6c | Character output (Char = '53')
2018-12-17T22:44:18.008495089Z 2 PC: 13e6c | Character output (Char = '2d')
2018-12-17T22:44:18.010762878Z 2 PC: 13e6c | Character output (Char = '44')
2018-12-17T22:44:18.013742605Z 2 PC: 13e6c | Character output (Char = '4f')
2018-12-17T22:44:18.016286022Z 2 PC: 13e6c | Character output (Char = '53')
2018-12-17T22:44:18.01855337Z 2 PC: 13e6c | Character output (Char = '28')
2018-12-17T22:44:18.022210419Z 2 PC: 13e6c | Character output (Char = '52')
2018-12-17T22:44:18.026472563Z 2 PC: 13e6c | Character output (Char = '29')
2018-12-17T22:44:18.029084278Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.032069956Z 2 PC: 13e6c | Character output (Char = '56')
2018-12-17T22:44:18.034565143Z 2 PC: 13e6c | Character output (Char = '65')
2018-12-17T22:44:18.036804288Z 2 PC: 13e6c | Character output (Char = '72')
2018-12-17T22:44:18.039892849Z 2 PC: 13e6c | Character output (Char = '73')
2018-12-17T22:44:18.042191276Z 2 PC: 13e6c | Character output (Char = '69')
2018-12-17T22:44:18.044408851Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:44:18.046827533Z 2 PC: 13e6c | Character output (Char = '6e')
2018-12-17T22:44:18.049445981Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.051659469Z 2 PC: 13e6c | Character output (Char = '36')
2018-12-17T22:44:18.053873407Z 2 PC: 13e6c | Character output (Char = '2e')
2018-12-17T22:44:18.056642608Z 2 PC: 13e6c | Character output (Char = '32')
2018-12-17T22:44:18.058876664Z 2 PC: 13e6c | Character output (Char = '32')
2018-12-17T22:44:18.061836804Z 2 PC: 13e6c | Character output (Char = '0d')
2018-12-17T22:44:18.064867836Z 2 PC: 13e6c | Character output (Char = '0a')
2018-12-17T22:44:18.068571592Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.070780892Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.073845758Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.076569704Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.079298008Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.083254619Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.086173862Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.088597885Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.09109757Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.093339921Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.095768773Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.099685529Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.101972885Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.104383453Z 2 PC: 13e6c | Character output (Char = '28')
2018-12-17T22:44:18.11066467Z 2 PC: 13e6c | Character output (Char = '43')
2018-12-17T22:44:18.113396421Z 2 PC: 13e6c | Character output (Char = '29')
2018-12-17T22:44:18.117369773Z 2 PC: 13e6c | Character output (Char = '43')
2018-12-17T22:44:18.120365259Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:44:18.122650831Z 2 PC: 13e6c | Character output (Char = '70')
2018-12-17T22:44:18.124964678Z 2 PC: 13e6c | Character output (Char = '79')
2018-12-17T22:44:18.127469201Z 2 PC: 13e6c | Character output (Char = '72')
2018-12-17T22:44:18.129738143Z 2 PC: 13e6c | Character output (Char = '69')
2018-12-17T22:44:18.131966467Z 2 PC: 13e6c | Character output (Char = '67')
2018-12-17T22:44:18.135137924Z 2 PC: 13e6c | Character output (Char = '68')
2018-12-17T22:44:18.137427404Z 2 PC: 13e6c | Character output (Char = '74')
2018-12-17T22:44:18.139670647Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.143345169Z 2 PC: 13e6c | Character output (Char = '4d')
2018-12-17T22:44:18.145671118Z 2 PC: 13e6c | Character output (Char = '69')
2018-12-17T22:44:18.147919821Z 2 PC: 13e6c | Character output (Char = '63')
2018-12-17T22:44:18.15139648Z 2 PC: 13e6c | Character output (Char = '72')
2018-12-17T22:44:18.15419166Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:44:18.156759603Z 2 PC: 13e6c | Character output (Char = '73')
2018-12-17T22:44:18.160544662Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:44:18.163037805Z 2 PC: 13e6c | Character output (Char = '66')
2018-12-17T22:44:18.165475824Z 2 PC: 13e6c | Character output (Char = '74')
2018-12-17T22:44:18.169046179Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.171992072Z 2 PC: 13e6c | Character output (Char = '43')
2018-12-17T22:44:18.174364368Z 2 PC: 13e6c | Character output (Char = '6f')
2018-12-17T22:44:18.177388367Z 2 PC: 13e6c | Character output (Char = '72')
2018-12-17T22:44:18.179883824Z 2 PC: 13e6c | Character output (Char = '70')
2018-12-17T22:44:18.182455604Z 2 PC: 13e6c | Character output (Char = '20')
2018-12-17T22:44:18.186091182Z 2 PC: 13e6c | Character output (Char = '31')
2018-12-17T22:44:18.188752561Z 2 PC: 13e6c | Character output (Char = '39')
2018-12-17T22:44:18.191042582Z 2 PC: 13e6c | Character output (Char = '38')
2018-12-17T22:44:18.194426297Z 2 PC: 13e6c | Character output (Char = '31')
2018-12-17T22:44:18.196688085Z 2 PC: 13e6c | Character output (Char = '2d')
2018-12-17T22:44:18.198970252Z 2 PC: 13e6c | Character output (Char = '31')
2018-12-17T22:44:18.20214296Z 2 PC: 13e6c | Character output (Char = '39')
2018-12-17T22:44:18.204520666Z 2 PC: 13e6c | Character output (Char = '39')
2018-12-17T22:44:18.206704267Z 2 PC: 13e6c | Character output (Char = '34')
2018-12-17T22:44:18.210080298Z 2 PC: 13e6c | Character output (Char = '2e')
2018-12-17T22:44:18.212938015Z 2 PC: 13e6c | Character output (Char = '0d')
2018-12-17T22:44:18.215526567Z 2 PC: 13e6c | Character output (Char = '0a')
2018-12-17T22:44:18.221093573Z 74 PC: 12d4c | Reallocate memory
2018-12-17T22:44:18.222904864Z 72 PC: 12d8d | Allocate memory
2018-12-17T22:44:18.224662666Z 72 PC: 12dc5 | Allocate memory
2018-12-17T22:44:18.226795662Z 72 PC: 12dcd | Allocate memory