Sample viewer

vx.netlux.org/Virus.DOS.Jerusalem.Bupt.1367.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:11:10.798742638Z 11 PC: 167e1 | Get input status
2018-12-17T22:11:10.802711785Z 74 PC: 12b2d | Reallocate memory
2018-12-17T22:11:10.804699832Z 53 PC: 12b33 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:11:10.806142966Z 37 PC: 12b47 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:11:10.808493561Z 75 PC: 12b75 | Execute program
2018-12-17T22:11:10.830418571Z 99 PC: 15b87 | Get DBCS lead byte table pointer
2018-12-17T22:11:10.831642691Z 68 PC: 15ba1 | I/O control for devices (Set for = '')
2018-12-17T22:11:10.832923302Z 68 PC: 15bac | I/O control for devices (Set for = '')
2018-12-17T22:11:10.842206463Z 68 PC: 15bb7 | I/O control for devices (Set for = '')
2018-12-17T22:11:10.843504057Z 68 PC: 15bbf | I/O control for devices (Set for = '��b���g�t�S3����[r�2��W�<t�<u�6�u����>��>W')
2018-12-17T22:11:10.845028297Z 48 PC: 15bc4 | Get DOS version
2018-12-17T22:11:10.847421231Z 64 PC: 15cf9 | Write file or device (Write 23 bytes on handle 2)
2018-12-17T22:11:10.851792311Z 76 PC: 134cb | Terminate with return code (Return code = '0')
2018-12-17T22:11:10.854861918Z 73 PC: 12b7e | Release memory
2018-12-17T22:11:10.857238684Z 77 PC: 12b82 | Get program return code
2018-12-17T22:11:10.858533079Z 49 PC: 12b8a | Terminate and stay resident (Return code = '0' | Memory size = '144')