Sample viewer

vx.netlux.org/Virus.DOS.Acapulco.1971

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:55:14.946440238Z 224 PC: 15476 | UNKNOWN!
2018-12-17T22:55:14.948115259Z 74 PC: 12d7f | Reallocate memory
2018-12-17T22:55:14.950141941Z 53 PC: 9f7cd | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:55:14.951811671Z 37 PC: 9f7db | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:55:14.954317004Z 42 PC: 9f899 | Get date 0x9f899: sub cx, 0x7c0
0x9f89d: mov al, 0x1e
0x9f89f: dec dh
0x9f8a1: mul dh
0x9f8a3: mov dh, 0
0x9f8a5: add ax, dx
0x9f8a7: push ax
0x9f8a8: mov ax, 0x16d
0x9f8ab: mul cx
0x9f8ad: pop dx
0x9f8ae: add ax, dx
0x9f8b0: ret
0x9f8b1: mov word ptr [0x61], ax
0x9f8b4: xor ax, ax
0x9f8b6: mov word ptr [0x65], ax
0x9f8b9: mov word ptr [0x63], ax
0x9f8bc: ret
0x9f8bd: push ax
0x9f8be: in al, 0x61
0x9f8c0: and al, 0xfc
2018-12-17T22:55:14.957063239Z 53 PC: 9f7ee | Get interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:55:14.958697733Z 37 PC: 9f7fc | Set interrupt vector (Interrupt = '8' AKA 'Console input without echo')
2018-12-17T22:55:14.966763193Z 75 PC: 9f822 | Execute program
2018-12-17T22:55:14.983633665Z 9 PC: 133a2 | Display string (String= 'Goat file (EXE). Size=00002968h/0000010600d bytes. ')
2018-12-17T22:55:14.98818226Z 76 PC: 133a6 | Terminate with return code (Return code = '36')
2018-12-17T22:55:14.991375507Z 77 PC: 9f83d | Get program return code
2018-12-17T22:55:14.993489844Z 76 PC: 9f841 | Terminate with return code (Return code = '36')