Sample viewer

vx.netlux.org/Virus.DOS.Zorm.1872

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:49:44.518826063Z 61 PC: 12a9c | Open file (Filename = 'Í ÀŸ')
2018-12-17T22:49:44.524373984Z 105 PC: 12ac9 | Get or set media id
2018-12-17T22:49:44.525950767Z 37 PC: 12b47 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:49:44.529154253Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.531424822Z 77 PC: 11fe0 | Get program return code
2018-12-17T22:49:44.532627955Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.533886964Z 72 PC: 12174 | Allocate memory
2018-12-17T22:49:44.536327414Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.538126098Z 72 PC: 1218d | Allocate memory
2018-12-17T22:49:44.540536005Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.54201101Z 37 PC: 123c4 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:49:44.543862635Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.5453917Z 37 PC: 123cb | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:49:44.546837209Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.549311747Z 37 PC: 123d2 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.550524768Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.551785503Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.554616464Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.556121394Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 5)
2018-12-17T22:49:44.55764341Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.559691844Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.561220465Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.56246183Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.564830203Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.566285013Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 6)
2018-12-17T22:49:44.567939606Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.570110465Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.571625269Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.572866598Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.575005442Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.576545316Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 7)
2018-12-17T22:49:44.578030492Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.579921603Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.581466512Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.58265711Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.584624601Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.595483592Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 8)
2018-12-17T22:49:44.596905881Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.598755963Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.60004266Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.601181609Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.6026811Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.606375741Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 9)
2018-12-17T22:49:44.607614012Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.608954901Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.610463508Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.611442038Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.612520946Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.614193197Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 10)
2018-12-17T22:49:44.615291183Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.616473897Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.623111789Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.624120822Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.625242647Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.626803356Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 11)
2018-12-17T22:49:44.627819098Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.628812178Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.630364281Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.631503276Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.632710577Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.634558192Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 12)
2018-12-17T22:49:44.635927988Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.637303421Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.639163734Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.640331157Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.642740575Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.64490469Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 13)
2018-12-17T22:49:44.646926737Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.648342075Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.650072308Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.6512787Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.652597428Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.654416013Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 14)
2018-12-17T22:49:44.656187722Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.657546148Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.659226317Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.660414084Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.661754826Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.663726511Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 15)
2018-12-17T22:49:44.665074461Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.666422196Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.668355822Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.66948503Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.670679943Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.672284734Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 16)
2018-12-17T22:49:44.673672081Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.67500562Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.67682882Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.677955119Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.679179935Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.680849661Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 17)
2018-12-17T22:49:44.682428061Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.684067786Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.691887116Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.693328599Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.695164309Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.697473391Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 18)
2018-12-17T22:49:44.699113818Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.700577016Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.702920663Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.704645462Z 66 PC: 9efbb | Move file pointer
2018-12-17T22:49:44.706089009Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.707696356Z 63 PC: 9efbb | Read file or device (Read 28 bytes on handle 19)
2018-12-17T22:49:44.709482684Z 87 PC: 9efbb | Get or set file date and time
2018-12-17T22:49:44.711234444Z 62 PC: 122ab | Close file
2018-12-17T22:49:44.714516176Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.716079719Z 99 PC: 99647 | Get DBCS lead byte table pointer
2018-12-17T22:49:44.717635737Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.719315368Z 56 PC: 93e69 | Get or set country info
2018-12-17T22:49:44.721907129Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.723194994Z 64 PC: 998b8 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:49:44.727634007Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.729474371Z 25 PC: 93ed2 | Get default drive
2018-12-17T22:49:44.730758669Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.731747736Z 71 PC: 9614d | Get current directory
2018-12-17T22:49:44.744419654Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.745924784Z 64 PC: 998b8 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:49:44.749221297Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.751533099Z 2 PC: 96122 | Character output (Char = '3e')
2018-12-17T22:49:44.753941488Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.755375183Z 93 PC: 93f90 | File sharing functions
2018-12-17T22:49:44.757869627Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.75924807Z 93 PC: 93f97 | File sharing functions
2018-12-17T22:49:44.76115556Z 37 PC: 9efbb | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:49:44.763119494Z 10 PC: 93fa9 | Buffered keyboard input