Sample viewer

vx.netlux.org/Virus.DOS.GWorld.314

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:38:40.649111095Z 61 PC: 12ab4 | Open file (Filename = '!P´@º')
2018-12-17T22:38:40.695934183Z 44 PC: 12ac0 | Get time 0x12ac0: mov ax, 0x30f
0x12ac3: mov cl, 1
0x12ac5: shr dl, 1
0x12ac7: shr dl, 1
0x12ac9: shr dl, 1
0x12acb: mov ch, dl
0x12acd: mov dx, 0x80
0x12ad0: int 0x13
0x12ad2: mov ax, 0x3575
0x12ad5: int 0x21
0x12ad7: cmp ax, 0x4444
0x12ada: je 0x12b0b
0x12adc: xor ax, ax
0x12ade: mov es, ax
0x12ae0: mov di, 0x200
0x12ae3: mov si, 0x100
0x12ae6: add si, bp
0x12ae8: mov cx, 0x159
0x12aeb: repne movsb byte ptr es:[di], byte ptr [si]
0x12aed: push es
2018-12-17T22:38:41.332863452Z 53 PC: 12ad7 | Get interrupt vector (Interrupt = '117' AKA 'UNKNOWN!')
2018-12-17T22:38:41.334757313Z 53 PC: 12af7 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:38:41.336534479Z 37 PC: 12b0b | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:38:41.354058691Z 9 PC: 12aa2 | Display string (Could not find end pointer)