Sample viewer

vx.netlux.org/Virus.DOS.Jerusalem.1008

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:07:24.403645492Z 237 PC: 12f0e | UNKNOWN!
2018-12-17T23:07:24.405443081Z 74 PC: 12da0 | Reallocate memory
2018-12-17T23:07:24.411273632Z 53 PC: 12da5 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:07:24.413894789Z 37 PC: 12db9 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:07:24.415777218Z 75 PC: 12de5 | Execute program
2018-12-17T23:07:24.433300288Z 9 PC: 12fb2 | Display string (String= 'Goat file (EXE). Size=000003E8h/0000001000d bytes. ')
2018-12-17T23:07:24.438389394Z 76 PC: 12fb6 | Terminate with return code (Return code = '36')
2018-12-17T23:07:24.442490513Z 73 PC: 12dee | Release memory
2018-12-17T23:07:24.445163949Z 77 PC: 12df2 | Get program return code
2018-12-17T23:07:24.44755789Z 49 PC: 12e00 | Terminate and stay resident (Return code = '36' | Memory size = '79')