Sample viewer

vx.netlux.org/Virus.DOS.HLLP.Bas.36504

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:48:58.438142027Z 48 PC: 1a03c | Get DOS version
2018-12-17T22:48:58.440306612Z 74 PC: 1a08c | Reallocate memory
2018-12-17T22:48:58.442099957Z 48 PC: 1a0f0 | Get DOS version
2018-12-17T22:48:58.443160469Z 53 PC: 1a0f8 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:48:58.444928233Z 37 PC: 1a10a | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:48:58.446449648Z 53 PC: 1cd52 | Get interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:48:58.447618685Z 37 PC: 1cd62 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:48:58.449319175Z 53 PC: 1cd67 | Get interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:48:58.451211686Z 37 PC: 1cd77 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:48:58.453061222Z 53 PC: 1aaa6 | Get interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:48:58.456047944Z 53 PC: 1aaa6 | Get interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:48:58.45741519Z 53 PC: 1aaa6 | Get interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:48:58.458748122Z 53 PC: 1aaa6 | Get interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:48:58.46099319Z 53 PC: 1aaa6 | Get interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:48:58.462560984Z 53 PC: 1aaa6 | Get interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:48:58.463926455Z 53 PC: 1aaa6 | Get interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:48:58.467594823Z 53 PC: 1aaa6 | Get interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:48:58.46947998Z 53 PC: 1aaa6 | Get interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:48:58.471296532Z 53 PC: 1aaa6 | Get interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:48:58.473059394Z 53 PC: 1aaa6 | Get interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:48:58.474833504Z 37 PC: 1aad5 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:48:58.475829875Z 37 PC: 1aad5 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:48:58.477024153Z 37 PC: 1aad5 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:48:58.478637953Z 37 PC: 1aad5 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:48:58.480042396Z 37 PC: 1aad5 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:48:58.481773999Z 37 PC: 1aad5 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:48:58.484073231Z 37 PC: 1aad5 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:48:58.485490563Z 37 PC: 1aad5 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:48:58.486882296Z 37 PC: 1aadc | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:48:58.488787593Z 37 PC: 1aae1 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:48:58.49052239Z 68 PC: 1a19b | I/O control for devices (Set for = '')
2018-12-17T22:48:58.492172529Z 68 PC: 1a19b | I/O control for devices (Set for = '+D��')
2018-12-17T22:48:58.495169981Z 68 PC: 1a19b | I/O control for devices (Set for = '�p= ף�?;�O��n��?,e�X���?#�GG�ŧ�?�il��7��?�Bz�Ք���?��a�w̫�?[�Mľ����?S;uD����?��9E��ϔ?�⼺;1a�z?Y�~�S|�_?/�����D?��9�'��*?��d|F��U>�#Tw����=:zc%C1��<�8�G��')
2018-12-17T22:48:58.496800965Z 68 PC: 1a19b | I/O control for devices (Set for = 'e�X���?#�GG�ŧ�?�il��7��?�Bz�Ք���?��a�w̫�?[�Mľ����?S;uD����?��9E��ϔ?�⼺;1a�z?Y�~�S|�_?/�����D?��9�'��*?��d|F��U>�#Tw����=:zc%C1��<�8�G��')
2018-12-17T22:48:58.498559511Z 68 PC: 1a19b | I/O control for devices (Set for = 'e�X���?#�GG�ŧ�?�il��7��?�Bz�Ք���?��a�w̫�?[�Mľ����?S;uD����?��9E��ϔ?�⼺;1a�z?Y�~�S|�_?/�����D?��9�'��*?��d|F��U>�#Tw����=:zc%C1��<�8�G��')
2018-12-17T22:48:58.510383435Z 53 PC: 17308 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:48:58.517951767Z 53 PC: 17315 | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:48:58.519230007Z 53 PC: 17322 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:48:58.521173586Z 37 PC: 17337 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:48:58.522638653Z 37 PC: 1733f | Set interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:48:58.524179703Z 37 PC: 17347 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:48:58.526157563Z 53 PC: 17dc6 | Get interrupt vector (Interrupt = '239' AKA 'UNKNOWN!')
2018-12-17T22:48:58.527459606Z 53 PC: 17dd3 | Get interrupt vector (Interrupt = '240' AKA 'UNKNOWN!')
2018-12-17T22:48:58.528792542Z 53 PC: 17de2 | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:48:58.530961672Z 37 PC: 17def | Set interrupt vector (Interrupt = '239' AKA 'UNKNOWN!')
2018-12-17T22:48:58.532157495Z 53 PC: 17df6 | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:48:58.533284614Z 37 PC: 17e03 | Set interrupt vector (Interrupt = '240' AKA 'UNKNOWN!')
2018-12-17T22:48:58.53510295Z 53 PC: 17e0f | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:48:58.540259866Z 48 PC: 17ed1 | Get DOS version
2018-12-17T22:48:58.541809293Z 74 PC: 15fd3 | Reallocate memory
2018-12-17T22:48:58.544829487Z 74 PC: 15fd3 | Reallocate memory
2018-12-17T22:48:58.546609657Z 68 PC: 1727e | I/O control for devices (Set for = '`')
2018-12-17T22:48:58.548290814Z 68 PC: 1727e | I/O control for devices (Set for = '')
2018-12-17T22:48:58.550464487Z 51 PC: 1729c | Get or set Ctrl-Break
2018-12-17T22:48:58.551528523Z 51 PC: 172a8 | Get or set Ctrl-Break
2018-12-17T22:48:58.556252305Z 74 PC: 15fd3 | Reallocate memory
2018-12-17T22:48:58.558919299Z 51 PC: 172b3 | Get or set Ctrl-Break
2018-12-17T22:48:58.560149974Z 37 PC: 17535 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:48:58.561558742Z 37 PC: 1753f | Set interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:48:58.563823171Z 37 PC: 17549 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:48:58.565331001Z 53 PC: 15800 | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:48:58.566773375Z 53 PC: 1580d | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:48:58.568653919Z 53 PC: 1581a | Get interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:48:58.570058757Z 37 PC: 15835 | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:48:58.571417615Z 53 PC: 1583d | Get interrupt vector (Interrupt = '239' AKA 'UNKNOWN!')
2018-12-17T22:48:58.57367415Z 37 PC: 1584a | Set interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-17T22:48:58.574886579Z 53 PC: 15851 | Get interrupt vector (Interrupt = '240' AKA 'UNKNOWN!')
2018-12-17T22:48:58.576078384Z 37 PC: 1585e | Set interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:48:58.578105932Z 37 PC: 15868 | Set interrupt vector (Interrupt = '239' AKA 'UNKNOWN!')
2018-12-17T22:48:58.579129081Z 37 PC: 15873 | Set interrupt vector (Interrupt = '240' AKA 'UNKNOWN!')
2018-12-17T22:48:58.580308966Z 37 PC: 1aaf1 | Set interrupt vector (Interrupt = '52' AKA 'Get InDOS flag pointer')
2018-12-17T22:48:58.582765284Z 37 PC: 1aaf1 | Set interrupt vector (Interrupt = '53' AKA 'Get interrupt vector')
2018-12-17T22:48:58.583819316Z 37 PC: 1aaf1 | Set interrupt vector (Interrupt = '54' AKA 'Get free disk space')
2018-12-17T22:48:58.584782777Z 37 PC: 1aaf1 | Set interrupt vector (Interrupt = '55' AKA 'Get or set switch character')
2018-12-17T22:48:58.586342702Z 37 PC: 1aaf1 | Set interrupt vector (Interrupt = '56' AKA 'Get or set country info')
2018-12-17T22:48:58.587334208Z 37 PC: 1aaf1 | Set interrupt vector (Interrupt = '57' AKA 'Create subdirectory')
2018-12-17T22:48:58.588270463Z 37 PC: 1aaf1 | Set interrupt vector (Interrupt = '58' AKA 'Remove subdirectory')
2018-12-17T22:48:58.589906685Z 37 PC: 1aaf1 | Set interrupt vector (Interrupt = '59' AKA 'Change current directory')
2018-12-17T22:48:58.591740919Z 37 PC: 1aaf1 | Set interrupt vector (Interrupt = '60' AKA 'Create or truncate file')
2018-12-17T22:48:58.592856291Z 37 PC: 1aaf1 | Set interrupt vector (Interrupt = '61' AKA 'Open file')
2018-12-17T22:48:58.594569366Z 37 PC: 1aaf1 | Set interrupt vector (Interrupt = '62' AKA 'Close file')
2018-12-17T22:48:58.595659475Z 37 PC: 1cd86 | Set interrupt vector (Interrupt = '2' AKA 'Character output')
2018-12-17T22:48:58.596696871Z 37 PC: 1a24c | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:48:58.601370589Z 41 PC: 19de7 | Parse filename
2018-12-17T22:48:58.602886768Z 41 PC: 19de9 | Parse filename
2018-12-17T22:48:58.604173589Z 41 PC: 19dee | Parse filename
2018-12-17T22:48:58.606026686Z 75 PC: 19e04 | Execute program
2018-12-17T22:48:58.625773967Z 80 PC: 200f9 | Set current PSP
2018-12-17T22:48:58.626984343Z 48 PC: 200fe | Get DOS version
2018-12-17T22:48:58.629049568Z 99 PC: 268e0 | Get DBCS lead byte table pointer
2018-12-17T22:48:58.631567109Z 101 PC: 20184 | Get extended country info
2018-12-17T22:48:58.633015918Z 99 PC: 2018a | Get DBCS lead byte table pointer
2018-12-17T22:48:58.634722216Z 74 PC: 201ec | Reallocate memory
2018-12-17T22:48:58.636271361Z 25 PC: 20223 | Get default drive
2018-12-17T22:48:58.637215296Z 37 PC: 1fce3 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:48:58.638940826Z 37 PC: 1fcea | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:48:58.640649965Z 37 PC: 1fcf1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:48:58.644937923Z 74 PC: 1ee8c | Reallocate memory
2018-12-17T22:48:58.646933562Z 72 PC: 1eecd | Allocate memory
2018-12-17T22:48:58.648356351Z 72 PC: 1ef05 | Allocate memory
2018-12-17T22:48:58.650249883Z 72 PC: 1ef0d | Allocate memory