Sample viewer

vx.netlux.org/Virus.DOS.BlackJec.267.d

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:04:11.862076244Z 78 PC: 12a7c | Find first file
2018-12-17T22:04:11.869175774Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:04:11.870355275Z 61 PC: 12aad | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:04:11.876640493Z 63 PC: 12abb | Read file or device (Read 407 bytes on handle 5)
2018-12-17T22:04:11.883342173Z 60 PC: 12aed | Create or truncate file
2018-12-17T22:04:11.903238702Z 64 PC: 12aff | Write file or device (Write 674 bytes on handle 6)
2018-12-17T22:04:11.911046717Z 62 PC: 12b03 | Close file
2018-12-17T22:04:11.919027876Z 79 PC: 12b08 | Find next file
2018-12-17T22:04:11.921610044Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:04:11.922564586Z 61 PC: 12aad | Open file (Filename = 'PRINT.COM')
2018-12-17T22:04:11.928795925Z 63 PC: 12abb | Read file or device (Read 27 bytes on handle 6)
2018-12-17T22:04:11.935023782Z 60 PC: 12aed | Create or truncate file
2018-12-17T22:04:11.950151573Z 64 PC: 12aff | Write file or device (Write 294 bytes on handle 7)
2018-12-17T22:04:11.953902238Z 62 PC: 12b03 | Close file
2018-12-17T22:04:11.961882232Z 79 PC: 12b08 | Find next file
2018-12-17T22:04:11.965382151Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:04:11.9668582Z 61 PC: 12aad | Open file (Filename = 'HELLO.COM')
2018-12-17T22:04:11.975464422Z 63 PC: 12abb | Read file or device (Read 92 bytes on handle 7)
2018-12-17T22:04:11.981991955Z 60 PC: 12aed | Create or truncate file
2018-12-17T22:04:12.001241353Z 64 PC: 12aff | Write file or device (Write 359 bytes on handle 8)
2018-12-17T22:04:12.005637534Z 62 PC: 12b03 | Close file
2018-12-17T22:04:12.013472597Z 79 PC: 12b08 | Find next file
2018-12-17T22:04:12.015933245Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:04:12.01800171Z 61 PC: 12aad | Open file (Filename = 'PHANG.COM')
2018-12-17T22:04:12.024533972Z 63 PC: 12abb | Read file or device (Read 29 bytes on handle 8)
2018-12-17T22:04:12.031121806Z 60 PC: 12aed | Create or truncate file
2018-12-17T22:04:12.043919699Z 64 PC: 12aff | Write file or device (Write 296 bytes on handle 9)
2018-12-17T22:04:12.047331957Z 62 PC: 12b03 | Close file
2018-12-17T22:04:12.151412504Z 79 PC: 12b08 | Find next file
2018-12-17T22:04:12.154677904Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:04:12.155933968Z 61 PC: 12aad | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:04:12.162638307Z 63 PC: 12abb | Read file or device (Read 29 bytes on handle 9)
2018-12-17T22:04:12.16970335Z 60 PC: 12aed | Create or truncate file
2018-12-17T22:04:12.403197108Z 64 PC: 12aff | Write file or device (Write 296 bytes on handle 10)
2018-12-17T22:04:12.406813926Z 62 PC: 12b03 | Close file
2018-12-17T22:04:13.178532372Z 79 PC: 12b08 | Find next file
2018-12-17T22:04:13.181594828Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:04:13.182680794Z 61 PC: 12aad | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:04:13.190166613Z 63 PC: 12abb | Read file or device (Read 501 bytes on handle 10)
2018-12-17T22:04:13.19636525Z 60 PC: 12aed | Create or truncate file
2018-12-17T22:04:13.299927166Z 64 PC: 12aff | Write file or device (Write 768 bytes on handle 11)
2018-12-17T22:04:13.385926863Z 62 PC: 12b03 | Close file
2018-12-17T22:04:13.395921814Z 79 PC: 12b08 | Find next file
2018-12-17T22:04:13.398869208Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:04:13.400345348Z 61 PC: 12aad | Open file (Filename = 'PAH.COM')
2018-12-17T22:04:13.40894532Z 63 PC: 12abb | Read file or device (Read 29 bytes on handle 11)
2018-12-17T22:04:13.417166522Z 60 PC: 12aed | Create or truncate file
2018-12-17T22:04:13.428329113Z 64 PC: 12aff | Write file or device (Write 296 bytes on handle 12)
2018-12-17T22:04:13.43275804Z 62 PC: 12b03 | Close file
2018-12-17T22:04:13.441412942Z 79 PC: 12b08 | Find next file
2018-12-17T22:04:13.444131667Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:04:13.446257852Z 61 PC: 12aad | Open file (Filename = 'TEST.COM')
2018-12-17T22:04:13.452582873Z 63 PC: 12abb | Read file or device (Read 272 bytes on handle 12)
2018-12-17T22:04:13.459247316Z 79 PC: 12b08 | Find next file
2018-12-17T22:04:13.462819302Z 76 PC: 12a45 | Terminate with return code (Return code = '0')