Sample viewer

vx.netlux.org/Virus.DOS.HLLC.Trans.6000

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:45:32.124368894Z 53 PC: 1332a | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:45:32.125939144Z 53 PC: 1332a | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:45:32.127118249Z 53 PC: 1332a | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:45:32.128263648Z 53 PC: 1332a | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:45:32.129568612Z 53 PC: 1332a | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:45:32.131228924Z 53 PC: 1332a | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:45:32.132326268Z 53 PC: 1332a | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:45:32.133432034Z 53 PC: 1332a | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:45:32.135383767Z 53 PC: 1332a | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:45:32.136401628Z 53 PC: 1332a | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:45:32.137542459Z 53 PC: 1332a | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:45:32.139339705Z 53 PC: 1332a | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:45:32.14054317Z 53 PC: 1332a | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:45:32.141704585Z 53 PC: 1332a | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:45:32.143727645Z 53 PC: 1332a | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:45:32.144875949Z 53 PC: 1332a | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:45:32.146072966Z 53 PC: 1332a | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:45:32.147327089Z 53 PC: 1332a | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:45:32.148653683Z 53 PC: 1332a | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:45:32.150168919Z 37 PC: 1333f | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:45:32.151096366Z 37 PC: 13347 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:45:32.152439897Z 37 PC: 1334f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:45:32.153620489Z 37 PC: 13357 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:45:32.154969039Z 68 PC: 13d9e | I/O control for devices (Set for = '���U')
2018-12-17T22:45:32.158101201Z 41 PC: 1328f | Parse filename
2018-12-17T22:45:32.159792485Z 41 PC: 1329d | Parse filename
2018-12-17T22:45:32.161304176Z 75 PC: 132a8 | Execute program
2018-12-17T22:45:32.193916958Z 80 PC: 186b9 | Set current PSP
2018-12-17T22:45:32.194856914Z 48 PC: 186be | Get DOS version
2018-12-17T22:45:32.196534822Z 99 PC: 1eea0 | Get DBCS lead byte table pointer
2018-12-17T22:45:32.200333823Z 101 PC: 18744 | Get extended country info
2018-12-17T22:45:32.201695923Z 99 PC: 1874a | Get DBCS lead byte table pointer
2018-12-17T22:45:32.205345475Z 74 PC: 187ac | Reallocate memory
2018-12-17T22:45:32.208093793Z 25 PC: 187e3 | Get default drive
2018-12-17T22:45:32.20955618Z 37 PC: 182a3 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:45:32.210947826Z 37 PC: 182aa | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:45:32.213251883Z 37 PC: 182b1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:45:32.217413236Z 74 PC: 1744c | Reallocate memory
2018-12-17T22:45:32.218731848Z 72 PC: 1748d | Allocate memory
2018-12-17T22:45:32.223268255Z 72 PC: 174c5 | Allocate memory
2018-12-17T22:45:32.225350829Z 72 PC: 174cd | Allocate memory