Sample viewer

vx.netlux.org/Virus.DOS.BlackJec.252

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:06:35.489110452Z 78 PC: 12a7f | Find first file
2018-12-17T23:06:35.493390183Z 47 PC: 12a8a | Get disk transfer address
2018-12-17T23:06:35.49479729Z 61 PC: 12ab0 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:06:35.502001751Z 63 PC: 12abe | Read file or device (Read 407 bytes on handle 5)
2018-12-17T23:06:35.509278643Z 60 PC: 12add | Create or truncate file
2018-12-17T23:06:35.529048184Z 64 PC: 12aef | Write file or device (Write 659 bytes on handle 6)
2018-12-17T23:06:35.538109645Z 62 PC: 12af3 | Close file
2018-12-17T23:06:35.5476699Z 79 PC: 12af8 | Find next file
2018-12-17T23:06:35.559601762Z 47 PC: 12a8a | Get disk transfer address
2018-12-17T23:06:35.560851567Z 61 PC: 12ab0 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:06:35.567810518Z 63 PC: 12abe | Read file or device (Read 27 bytes on handle 6)
2018-12-17T23:06:35.576123897Z 60 PC: 12add | Create or truncate file
2018-12-17T23:06:35.590727013Z 64 PC: 12aef | Write file or device (Write 279 bytes on handle 7)
2018-12-17T23:06:35.595363301Z 62 PC: 12af3 | Close file
2018-12-17T23:06:35.606840596Z 79 PC: 12af8 | Find next file
2018-12-17T23:06:35.609969614Z 47 PC: 12a8a | Get disk transfer address
2018-12-17T23:06:35.61125966Z 61 PC: 12ab0 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:06:35.620127972Z 63 PC: 12abe | Read file or device (Read 92 bytes on handle 7)
2018-12-17T23:06:35.628335704Z 60 PC: 12add | Create or truncate file
2018-12-17T23:06:35.643840247Z 64 PC: 12aef | Write file or device (Write 344 bytes on handle 8)
2018-12-17T23:06:35.64847316Z 62 PC: 12af3 | Close file
2018-12-17T23:06:35.659447971Z 79 PC: 12af8 | Find next file
2018-12-17T23:06:35.662955559Z 47 PC: 12a8a | Get disk transfer address
2018-12-17T23:06:35.664621366Z 61 PC: 12ab0 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:06:35.673276298Z 63 PC: 12abe | Read file or device (Read 29 bytes on handle 8)
2018-12-17T23:06:35.680964119Z 60 PC: 12add | Create or truncate file
2018-12-17T23:06:35.695436128Z 64 PC: 12aef | Write file or device (Write 281 bytes on handle 9)
2018-12-17T23:06:35.700284376Z 62 PC: 12af3 | Close file
2018-12-17T23:06:35.710013687Z 79 PC: 12af8 | Find next file
2018-12-17T23:06:35.713388962Z 47 PC: 12a8a | Get disk transfer address
2018-12-17T23:06:35.716088051Z 61 PC: 12ab0 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:06:35.7238418Z 63 PC: 12abe | Read file or device (Read 29 bytes on handle 9)
2018-12-17T23:06:35.731793604Z 60 PC: 12add | Create or truncate file
2018-12-17T23:06:35.750477346Z 64 PC: 12aef | Write file or device (Write 281 bytes on handle 10)
2018-12-17T23:06:35.755497339Z 62 PC: 12af3 | Close file
2018-12-17T23:06:35.764999051Z 79 PC: 12af8 | Find next file
2018-12-17T23:06:35.769209691Z 47 PC: 12a8a | Get disk transfer address
2018-12-17T23:06:35.770515431Z 61 PC: 12ab0 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:06:35.778535001Z 63 PC: 12abe | Read file or device (Read 501 bytes on handle 10)
2018-12-17T23:06:35.785901612Z 60 PC: 12add | Create or truncate file
2018-12-17T23:06:35.799456475Z 64 PC: 12aef | Write file or device (Write 753 bytes on handle 11)
2018-12-17T23:06:35.809680647Z 62 PC: 12af3 | Close file
2018-12-17T23:06:35.819182956Z 79 PC: 12af8 | Find next file
2018-12-17T23:06:35.823230145Z 47 PC: 12a8a | Get disk transfer address
2018-12-17T23:06:35.824739388Z 61 PC: 12ab0 | Open file (Filename = 'PAH.COM')
2018-12-17T23:06:35.832004827Z 63 PC: 12abe | Read file or device (Read 29 bytes on handle 11)
2018-12-17T23:06:35.840785548Z 60 PC: 12add | Create or truncate file
2018-12-17T23:06:35.854539411Z 64 PC: 12aef | Write file or device (Write 281 bytes on handle 12)
2018-12-17T23:06:35.858871401Z 62 PC: 12af3 | Close file
2018-12-17T23:06:35.871961714Z 79 PC: 12af8 | Find next file
2018-12-17T23:06:35.875280785Z 47 PC: 12a8a | Get disk transfer address
2018-12-17T23:06:35.877118511Z 61 PC: 12ab0 | Open file (Filename = 'TEST.COM')
2018-12-17T23:06:35.885918898Z 63 PC: 12abe | Read file or device (Read 257 bytes on handle 12)
2018-12-17T23:06:35.889828476Z 79 PC: 12af8 | Find next file
2018-12-17T23:06:35.893349338Z 76 PC: 12a45 | Terminate with return code (Return code = '0')