Sample viewer

vx.netlux.org/Virus.DOS.Jacov.593

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:07:14.43168566Z 53 PC: 12c63 | Get interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:07:14.433978592Z 37 PC: 12c71 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:07:14.435226461Z 26 PC: 12c98 | Set disk transfer address
2018-12-17T23:07:14.43647051Z 78 PC: 12cb5 | Find first file
2018-12-17T23:07:14.443839123Z 61 PC: 12cc1 | Open file (Filename = 'TEST.EXE')
2018-12-17T23:07:14.45129091Z 63 PC: 12ccd | Read file or device (Read 26 bytes on handle 5)
2018-12-17T23:07:14.454608619Z 62 PC: 12cd1 | Close file
2018-12-17T23:07:14.457249389Z 79 PC: 12cb5 | Find next file
2018-12-17T23:07:14.460440438Z 78 PC: 12cb5 | Find first file
2018-12-17T23:07:14.466873726Z 37 PC: 12df1 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:07:14.468341221Z 26 PC: 12dfb | Set disk transfer address
2018-12-17T23:07:14.470121829Z 9 PC: 12a82 | Display string (String= 'Goat file (EXE). Size=000003E8h/0000001000d bytes. ')
2018-12-17T23:07:14.474940349Z 76 PC: 12a86 | Terminate with return code (Return code = '36')