Sample viewer

vx.netlux.org/Virus.DOS.Jerkin.362

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:07:56.228977881Z 26 PC: 12aa8 | Set disk transfer address
2018-12-17T23:07:56.230611482Z 9 PC: 12ab0 | Display string (String= 'I am the Catch.Me Virus written Jerk1N of DIFFUSION I am infecting files - ')
2018-12-17T23:07:56.241257734Z 78 PC: 12b00 | Find first file
2018-12-17T23:07:56.248532006Z 67 PC: 12b1d | Get or set file attributes
2018-12-17T23:07:56.26995227Z 61 PC: 12ba5 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:07:56.278231352Z 66 PC: 12b2b | Move file pointer
2018-12-17T23:07:56.279733606Z 66 PC: 12b3b | Move file pointer
2018-12-17T23:07:56.281574025Z 63 PC: 12b46 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:07:56.289369739Z 66 PC: 12b5d | Move file pointer
2018-12-17T23:07:56.291658281Z 64 PC: 12b68 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:07:56.29554708Z 66 PC: 12b71 | Move file pointer
2018-12-17T23:07:56.297932704Z 64 PC: 12b7c | Write file or device (Write 362 bytes on handle 5)
2018-12-17T23:07:56.306475963Z 62 PC: 12bab | Close file
2018-12-17T23:07:56.315750457Z 9 PC: 12b87 | Display string (String= 'SLEEP.COM')
2018-12-17T23:07:56.319514652Z 9 PC: 12b8d | Display string (String= ' ')
2018-12-17T23:07:56.322972541Z 79 PC: 12b0c | Find next file
2018-12-17T23:07:56.325172026Z 67 PC: 12b1d | Get or set file attributes
2018-12-17T23:07:56.33463854Z 61 PC: 12ba5 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:07:56.343225211Z 66 PC: 12b2b | Move file pointer
2018-12-17T23:07:56.34532632Z 66 PC: 12b3b | Move file pointer
2018-12-17T23:07:56.347211313Z 63 PC: 12b46 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:07:56.354957443Z 66 PC: 12b5d | Move file pointer
2018-12-17T23:07:56.356714606Z 64 PC: 12b68 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:07:56.360015882Z 66 PC: 12b71 | Move file pointer
2018-12-17T23:07:56.363523465Z 64 PC: 12b7c | Write file or device (Write 362 bytes on handle 5)
2018-12-17T23:07:56.366870537Z 62 PC: 12bab | Close file
2018-12-17T23:07:56.375516939Z 9 PC: 12b87 | Display string (String= 'PRINT.COM')
2018-12-17T23:07:56.378905819Z 9 PC: 12b8d | Display string (String= ' ')