Sample viewer

vx.netlux.org/Virus.DOS.Jerusalem.Sunday.e

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:49:58.305115039Z 239 PC: 12ada | UNKNOWN!
2018-12-17T22:49:58.307544293Z 239 PC: 12b2d | UNKNOWN!
2018-12-17T22:49:58.309083194Z 74 PC: 12bae | Reallocate memory
2018-12-17T22:49:58.315847173Z 53 PC: 12bb3 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:49:58.317405891Z 37 PC: 12bc7 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:49:58.320301341Z 53 PC: 12bf8 | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:49:58.322216489Z 37 PC: 12c18 | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:49:58.324023274Z 75 PC: 12c24 | Execute program
2018-12-17T22:49:58.341719139Z 9 PC: 13377 | Display string (String= ' DUMMY v1f - Program Pemancing Virus Author: xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx Hati-Hati Virus Telah Aktif!! ')
2018-12-17T22:49:58.355793681Z 73 PC: 12c2a | Release memory
2018-12-17T22:49:58.35737903Z 77 PC: 12c2e | Get program return code
2018-12-17T22:49:58.359901569Z 49 PC: 12c3c | Terminate and stay resident (Return code = '0' | Memory size = '117')