Sample viewer

vx.netlux.org/Virus.DOS.BlackJec.231.e

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:02:40.010123112Z 78 PC: 12a7c | Find first file
2018-12-17T23:02:40.01818034Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T23:02:40.020856198Z 61 PC: 12a9d | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:02:40.028869013Z 63 PC: 12aab | Read file or device (Read 407 bytes on handle 5)
2018-12-17T23:02:40.036102604Z 60 PC: 12aca | Create or truncate file
2018-12-17T23:02:40.058295733Z 64 PC: 12adc | Write file or device (Write 638 bytes on handle 6)
2018-12-17T23:02:40.068089865Z 62 PC: 12ae0 | Close file
2018-12-17T23:02:40.078989734Z 79 PC: 12ae5 | Find next file
2018-12-17T23:02:40.083132879Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T23:02:40.084415028Z 61 PC: 12a9d | Open file (Filename = 'PRINT.COM')
2018-12-17T23:02:40.091863493Z 63 PC: 12aab | Read file or device (Read 27 bytes on handle 6)
2018-12-17T23:02:40.099461338Z 60 PC: 12aca | Create or truncate file
2018-12-17T23:02:40.114227983Z 64 PC: 12adc | Write file or device (Write 258 bytes on handle 7)
2018-12-17T23:02:40.119816113Z 62 PC: 12ae0 | Close file
2018-12-17T23:02:40.129444433Z 79 PC: 12ae5 | Find next file
2018-12-17T23:02:40.133698817Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T23:02:40.13619129Z 61 PC: 12a9d | Open file (Filename = 'HELLO.COM')
2018-12-17T23:02:40.143559284Z 63 PC: 12aab | Read file or device (Read 92 bytes on handle 7)
2018-12-17T23:02:40.151305318Z 60 PC: 12aca | Create or truncate file
2018-12-17T23:02:40.164660822Z 64 PC: 12adc | Write file or device (Write 323 bytes on handle 8)
2018-12-17T23:02:40.168681416Z 62 PC: 12ae0 | Close file
2018-12-17T23:02:40.182280517Z 79 PC: 12ae5 | Find next file
2018-12-17T23:02:40.18573113Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T23:02:40.18735454Z 61 PC: 12a9d | Open file (Filename = 'PHANG.COM')
2018-12-17T23:02:40.196387893Z 63 PC: 12aab | Read file or device (Read 29 bytes on handle 8)
2018-12-17T23:02:40.206260512Z 60 PC: 12aca | Create or truncate file
2018-12-17T23:02:40.220951736Z 64 PC: 12adc | Write file or device (Write 260 bytes on handle 9)
2018-12-17T23:02:40.226075253Z 62 PC: 12ae0 | Close file
2018-12-17T23:02:40.235324701Z 79 PC: 12ae5 | Find next file
2018-12-17T23:02:40.238609583Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T23:02:40.240937347Z 61 PC: 12a9d | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:02:40.24880518Z 63 PC: 12aab | Read file or device (Read 29 bytes on handle 9)
2018-12-17T23:02:40.256132968Z 60 PC: 12aca | Create or truncate file
2018-12-17T23:02:40.269884385Z 64 PC: 12adc | Write file or device (Write 260 bytes on handle 10)
2018-12-17T23:02:40.274582673Z 62 PC: 12ae0 | Close file
2018-12-17T23:02:40.283470653Z 79 PC: 12ae5 | Find next file
2018-12-17T23:02:40.286362977Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T23:02:40.289086334Z 61 PC: 12a9d | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:02:40.295670334Z 63 PC: 12aab | Read file or device (Read 501 bytes on handle 10)
2018-12-17T23:02:40.300709182Z 60 PC: 12aca | Create or truncate file
2018-12-17T23:02:40.311234177Z 64 PC: 12adc | Write file or device (Write 732 bytes on handle 11)
2018-12-17T23:02:40.318193513Z 62 PC: 12ae0 | Close file
2018-12-17T23:02:40.3247968Z 79 PC: 12ae5 | Find next file
2018-12-17T23:02:40.332000314Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T23:02:40.333279398Z 61 PC: 12a9d | Open file (Filename = 'PAH.COM')
2018-12-17T23:02:40.340878105Z 63 PC: 12aab | Read file or device (Read 29 bytes on handle 11)
2018-12-17T23:02:40.347846147Z 60 PC: 12aca | Create or truncate file
2018-12-17T23:02:40.362481936Z 64 PC: 12adc | Write file or device (Write 260 bytes on handle 12)
2018-12-17T23:02:40.36699736Z 62 PC: 12ae0 | Close file
2018-12-17T23:02:40.376022437Z 79 PC: 12ae5 | Find next file
2018-12-17T23:02:40.379969694Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T23:02:40.38161227Z 61 PC: 12a9d | Open file (Filename = 'TEST.COM')
2018-12-17T23:02:40.388856872Z 63 PC: 12aab | Read file or device (Read 236 bytes on handle 12)
2018-12-17T23:02:40.392890951Z 79 PC: 12ae5 | Find next file
2018-12-17T23:02:40.396079523Z 76 PC: 12a45 | Terminate with return code (Return code = '0')