Sample viewer

vx.netlux.org/Virus.DOS.HLLC.VsW.5936

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:47:24.209831084Z 53 PC: 133ea | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:47:24.211688437Z 53 PC: 133ea | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:47:24.2128865Z 53 PC: 133ea | Get interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:47:24.214067512Z 53 PC: 133ea | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:47:24.21588436Z 53 PC: 133ea | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:47:24.217210128Z 53 PC: 133ea | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:47:24.219017078Z 53 PC: 133ea | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:47:24.220982027Z 53 PC: 133ea | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:47:24.222263669Z 53 PC: 133ea | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:47:24.223492507Z 53 PC: 133ea | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:47:24.224723055Z 53 PC: 133ea | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:47:24.226667044Z 53 PC: 133ea | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:47:24.22793973Z 53 PC: 133ea | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:47:24.229212311Z 53 PC: 133ea | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:47:24.230815621Z 53 PC: 133ea | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:47:24.232150856Z 53 PC: 133ea | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:47:24.233495561Z 53 PC: 133ea | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:47:24.238044133Z 53 PC: 133ea | Get interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:47:24.239123864Z 53 PC: 133ea | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:47:24.240632252Z 37 PC: 133ff | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:47:24.242675597Z 37 PC: 13407 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:47:24.244348197Z 37 PC: 1340f | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:47:24.245666997Z 37 PC: 13417 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:47:24.247676228Z 68 PC: 13ed8 | I/O control for devices (Set for = '')
2018-12-17T22:47:24.24977125Z 26 PC: 13142 | Set disk transfer address
2018-12-17T22:47:24.251105774Z 78 PC: 13117 | Find first file
2018-12-17T22:47:24.269241298Z 48 PC: 13bfe | Get DOS version
2018-12-17T22:47:24.27418704Z 26 PC: 13164 | Set disk transfer address
2018-12-17T22:47:24.275578833Z 79 PC: 13169 | Find next file
2018-12-17T22:47:24.279310965Z 48 PC: 13bfe | Get DOS version
2018-12-17T22:47:24.281970271Z 67 PC: 131ac | Get or set file attributes
2018-12-17T22:47:24.287928006Z 64 PC: 13808 | Write file or device (Write 0 bytes on handle 1)
2018-12-17T22:47:24.290121051Z 37 PC: 13541 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:47:24.291233302Z 37 PC: 13541 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:47:24.292387058Z 37 PC: 13541 | Set interrupt vector (Interrupt = '27' AKA 'Get allocation info for default drive')
2018-12-17T22:47:24.29432403Z 37 PC: 13541 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:47:24.295742869Z 37 PC: 13541 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:47:24.297133857Z 37 PC: 13541 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:47:24.298789949Z 37 PC: 13541 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:47:24.300848269Z 37 PC: 13541 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:47:24.302422853Z 37 PC: 13541 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:47:24.3039849Z 37 PC: 13541 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:47:24.305941152Z 37 PC: 13541 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:47:24.307368733Z 37 PC: 13541 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:47:24.309558705Z 37 PC: 13541 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:47:24.311618453Z 37 PC: 13541 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:47:24.312827371Z 37 PC: 13541 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:47:24.314074736Z 37 PC: 13541 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:47:24.315819661Z 37 PC: 13541 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:47:24.31698221Z 37 PC: 13541 | Set interrupt vector (Interrupt = '63' AKA 'Read file or device')
2018-12-17T22:47:24.318116748Z 37 PC: 13541 | Set interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:47:24.320344304Z 76 PC: 13580 | Terminate with return code (Return code = '0')