Sample viewer

vx.netlux.org/Virus.DOS.Jerkin.370.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:59:35.653914917Z 26 PC: 12b63 | Set disk transfer address
2018-12-17T22:59:35.655977319Z 9 PC: 12b6b | Display string (String= 'I am the Catch.Me Virus written Jerk1N of DIFFUSION I am infecting files - ')
2018-12-17T22:59:35.662685803Z 78 PC: 12bc2 | Find first file
2018-12-17T22:59:35.668396879Z 67 PC: 12bdd | Get or set file attributes
2018-12-17T22:59:35.685277459Z 61 PC: 12c65 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:59:35.696843726Z 66 PC: 12beb | Move file pointer
2018-12-17T22:59:35.698317005Z 66 PC: 12bfb | Move file pointer
2018-12-17T22:59:35.699605375Z 63 PC: 12c06 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:59:35.706029341Z 66 PC: 12c1d | Move file pointer
2018-12-17T22:59:35.707300716Z 64 PC: 12c28 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:59:35.709750547Z 66 PC: 12c31 | Move file pointer
2018-12-17T22:59:35.71210979Z 64 PC: 12c3c | Write file or device (Write 370 bytes on handle 5)
2018-12-17T22:59:35.720053758Z 62 PC: 12c6b | Close file
2018-12-17T22:59:35.727831745Z 9 PC: 12c47 | Display string (String= 'SLEEP.COM')
2018-12-17T22:59:35.732093857Z 9 PC: 12c4d | Display string (String= ' ')
2018-12-17T22:59:35.73845685Z 79 PC: 12bcd | Find next file
2018-12-17T22:59:35.741019307Z 67 PC: 12bdd | Get or set file attributes
2018-12-17T22:59:35.750971117Z 61 PC: 12c65 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:59:35.758013327Z 66 PC: 12beb | Move file pointer
2018-12-17T22:59:35.759370151Z 66 PC: 12bfb | Move file pointer
2018-12-17T22:59:35.760874387Z 63 PC: 12c06 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:59:35.770179952Z 66 PC: 12c1d | Move file pointer
2018-12-17T22:59:35.771443706Z 64 PC: 12c28 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:59:35.773885325Z 66 PC: 12c31 | Move file pointer
2018-12-17T22:59:35.775864254Z 64 PC: 12c3c | Write file or device (Write 370 bytes on handle 5)
2018-12-17T22:59:35.77848811Z 62 PC: 12c6b | Close file
2018-12-17T22:59:35.790913518Z 9 PC: 12c47 | Display string (String= 'PRINT.COM')
2018-12-17T22:59:35.793623513Z 9 PC: 12c4d | Display string (String= ' ')
2018-12-17T22:59:35.796433626Z 76 PC: 12a5b | Terminate with return code (Return code = '1')