Sample viewer

vx.netlux.org/Virus.DOS.HLLO.13112.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:47:14.144447435Z 48 PC: 12a4b | Get DOS version
2018-12-17T22:47:14.146252777Z 53 PC: 12bca | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:47:14.14813341Z 53 PC: 12bd7 | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:47:14.149598943Z 53 PC: 12be4 | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:47:14.150990778Z 53 PC: 12bf1 | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:47:14.153199759Z 37 PC: 12c05 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:47:14.154749821Z 74 PC: 12af6 | Reallocate memory
2018-12-17T22:47:14.157168866Z 68 PC: 12f31 | I/O control for devices (Set for = 'WW')
2018-12-17T22:47:14.160347017Z 68 PC: 12f31 | I/O control for devices (Set for = '� ��')
2018-12-17T22:47:14.163230434Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.169968934Z 61 PC: 13fca | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:47:14.17789224Z 68 PC: 13214 | I/O control for devices (Set for = '')
2018-12-17T22:47:14.179934407Z 68 PC: 12f31 | I/O control for devices
2018-12-17T22:47:14.182630562Z 63 PC: 130b0 | Read file or device (Read 12800 bytes on handle 5)
2018-12-17T22:47:14.192331989Z 63 PC: 130b0 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:47:14.196620886Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.198728205Z 47 PC: 12dfa | Get disk transfer address
2018-12-17T22:47:14.200317081Z 26 PC: 12e03 | Set disk transfer address
2018-12-17T22:47:14.202450849Z 78 PC: 12e0d | Find first file
2018-12-17T22:47:14.209454518Z 26 PC: 12e16 | Set disk transfer address
2018-12-17T22:47:14.211110569Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.21860506Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.236528564Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.243118825Z 61 PC: 13fca | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:47:14.25655058Z 68 PC: 13214 | I/O control for devices (Set for = 'MZX')
2018-12-17T22:47:14.258633213Z 68 PC: 12f31 | I/O control for devices
2018-12-17T22:47:14.261208561Z 64 PC: 14629 | Write file or device (Write 13112 bytes on handle 5)
2018-12-17T22:47:14.273279069Z 47 PC: 12e2d | Get disk transfer address
2018-12-17T22:47:14.275610359Z 26 PC: 12e36 | Set disk transfer address
2018-12-17T22:47:14.277514186Z 79 PC: 12e3a | Find next file
2018-12-17T22:47:14.282130309Z 26 PC: 12e43 | Set disk transfer address
2018-12-17T22:47:14.283602625Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.290230186Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.302685927Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.309312818Z 61 PC: 13fca | Open file (Filename = 'PRINT.COM')
2018-12-17T22:47:14.316607763Z 68 PC: 13214 | I/O control for devices (Set for = 'MZX')
2018-12-17T22:47:14.318432371Z 68 PC: 12f31 | I/O control for devices
2018-12-17T22:47:14.321206293Z 64 PC: 14629 | Write file or device (Write 13112 bytes on handle 6)
2018-12-17T22:47:14.331361833Z 47 PC: 12e2d | Get disk transfer address
2018-12-17T22:47:14.332747576Z 26 PC: 12e36 | Set disk transfer address
2018-12-17T22:47:14.334927492Z 79 PC: 12e3a | Find next file
2018-12-17T22:47:14.338901107Z 26 PC: 12e43 | Set disk transfer address
2018-12-17T22:47:14.34052612Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.347693245Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.360116395Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.366720022Z 61 PC: 13fca | Open file (Filename = 'HELLO.COM')
2018-12-17T22:47:14.374821623Z 68 PC: 13214 | I/O control for devices (Set for = 'MZX')
2018-12-17T22:47:14.3767625Z 68 PC: 12f31 | I/O control for devices
2018-12-17T22:47:14.379379486Z 64 PC: 14629 | Write file or device (Write 13112 bytes on handle 7)
2018-12-17T22:47:14.389985252Z 47 PC: 12e2d | Get disk transfer address
2018-12-17T22:47:14.391304801Z 26 PC: 12e36 | Set disk transfer address
2018-12-17T22:47:14.392516708Z 79 PC: 12e3a | Find next file
2018-12-17T22:47:14.39659485Z 26 PC: 12e43 | Set disk transfer address
2018-12-17T22:47:14.398037711Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.404506874Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.416977634Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.424117137Z 61 PC: 13fca | Open file (Filename = 'PHANG.COM')
2018-12-17T22:47:14.431893998Z 68 PC: 13214 | I/O control for devices (Set for = 'MZX')
2018-12-17T22:47:14.433675445Z 68 PC: 12f31 | I/O control for devices
2018-12-17T22:47:14.436840642Z 64 PC: 14629 | Write file or device (Write 13112 bytes on handle 8)
2018-12-17T22:47:14.447239619Z 47 PC: 12e2d | Get disk transfer address
2018-12-17T22:47:14.448609383Z 26 PC: 12e36 | Set disk transfer address
2018-12-17T22:47:14.450467283Z 79 PC: 12e3a | Find next file
2018-12-17T22:47:14.453346632Z 26 PC: 12e43 | Set disk transfer address
2018-12-17T22:47:14.454701808Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.461770689Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.473632355Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.479833145Z 61 PC: 13fca | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:47:14.48751144Z 68 PC: 13214 | I/O control for devices (Set for = 'MZX')
2018-12-17T22:47:14.489380221Z 68 PC: 12f31 | I/O control for devices
2018-12-17T22:47:14.49215235Z 64 PC: 14629 | Write file or device (Write 13112 bytes on handle 9)
2018-12-17T22:47:14.502061086Z 47 PC: 12e2d | Get disk transfer address
2018-12-17T22:47:14.504838694Z 26 PC: 12e36 | Set disk transfer address
2018-12-17T22:47:14.506309507Z 79 PC: 12e3a | Find next file
2018-12-17T22:47:14.509655553Z 26 PC: 12e43 | Set disk transfer address
2018-12-17T22:47:14.512667602Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.519196198Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.531024631Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.538330177Z 61 PC: 13fca | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:47:14.546504344Z 68 PC: 13214 | I/O control for devices (Set for = 'MZX')
2018-12-17T22:47:14.548170204Z 68 PC: 12f31 | I/O control for devices
2018-12-17T22:47:14.551633921Z 64 PC: 14629 | Write file or device (Write 13112 bytes on handle 10)
2018-12-17T22:47:14.561293679Z 47 PC: 12e2d | Get disk transfer address
2018-12-17T22:47:14.562544489Z 26 PC: 12e36 | Set disk transfer address
2018-12-17T22:47:14.564825474Z 79 PC: 12e3a | Find next file
2018-12-17T22:47:14.567643709Z 26 PC: 12e43 | Set disk transfer address
2018-12-17T22:47:14.568913745Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.574906765Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.586775724Z 67 PC: 13606 | Get or set file attributes
2018-12-17T22:47:14.59274552Z 61 PC: 13fca | Open file (Filename = 'PAH.COM')
2018-12-17T22:47:14.599716286Z 68 PC: 13214 | I/O control for devices (Set for = 'MZX')
2018-12-17T22:47:14.601924766Z 68 PC: 12f31 | I/O control for devices
2018-12-17T22:47:14.604213245Z 64 PC: 14629 | Write file or device (Write 13112 bytes on handle 11)
2018-12-17T22:47:14.61410032Z 47 PC: 12e2d | Get disk transfer address
2018-12-17T22:47:14.615881386Z 26 PC: 12e36 | Set disk transfer address
2018-12-17T22:47:14.617080078Z 79 PC: 12e3a | Find next file
2018-12-17T22:47:14.619770493Z 26 PC: 12e43 | Set disk transfer address
2018-12-17T22:47:14.622518005Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.632504908Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.640601309Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.649817004Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.658086529Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.66909402Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.680842012Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.689641374Z 64 PC: 14629 | Write file or device (Write 24 bytes on handle 1)
2018-12-17T22:47:14.692847287Z 64 PC: 14629 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:47:14.695618193Z 64 PC: 14629 | Write file or device (Write 1 bytes on handle 1)
2018-12-17T22:47:14.701501637Z 37 PC: 12c11 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:47:14.702958925Z 37 PC: 12c1c | Set interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:47:14.704770498Z 37 PC: 12c27 | Set interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:47:14.706371376Z 37 PC: 12c32 | Set interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:47:14.707656129Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.70943979Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.711820142Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.713733246Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.71559792Z 62 PC: 13641 | Close file
2018-12-17T22:47:14.718008919Z 76 PC: 12bbb | Terminate with return code (Return code = '10')