Sample viewer

vx.netlux.org/Virus.DOS.BlackJec.231.c

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:39:02.078625722Z 78 PC: 12a7c | Find first file
2018-12-17T22:39:02.085809842Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:39:02.087246386Z 61 PC: 12a9d | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:39:02.094407358Z 63 PC: 12aab | Read file or device (Read 407 bytes on handle 5)
2018-12-17T22:39:02.101359636Z 60 PC: 12aca | Create or truncate file
2018-12-17T22:39:02.121243783Z 64 PC: 12adc | Write file or device (Write 638 bytes on handle 6)
2018-12-17T22:39:02.130407851Z 62 PC: 12ae0 | Close file
2018-12-17T22:39:02.139501366Z 79 PC: 12ae5 | Find next file
2018-12-17T22:39:02.143604799Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:39:02.144953209Z 61 PC: 12a9d | Open file (Filename = 'PRINT.COM')
2018-12-17T22:39:02.153163132Z 63 PC: 12aab | Read file or device (Read 27 bytes on handle 6)
2018-12-17T22:39:02.167250298Z 60 PC: 12aca | Create or truncate file
2018-12-17T22:39:02.177205418Z 64 PC: 12adc | Write file or device (Write 258 bytes on handle 7)
2018-12-17T22:39:02.180375525Z 62 PC: 12ae0 | Close file
2018-12-17T22:39:02.186739239Z 79 PC: 12ae5 | Find next file
2018-12-17T22:39:02.188872505Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:39:02.190044795Z 61 PC: 12a9d | Open file (Filename = 'HELLO.COM')
2018-12-17T22:39:02.194965673Z 63 PC: 12aab | Read file or device (Read 92 bytes on handle 7)
2018-12-17T22:39:02.199611631Z 60 PC: 12aca | Create or truncate file
2018-12-17T22:39:02.20854142Z 64 PC: 12adc | Write file or device (Write 323 bytes on handle 8)
2018-12-17T22:39:02.211430552Z 62 PC: 12ae0 | Close file
2018-12-17T22:39:02.217843003Z 79 PC: 12ae5 | Find next file
2018-12-17T22:39:02.21969562Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:39:02.220501871Z 61 PC: 12a9d | Open file (Filename = 'PHANG.COM')
2018-12-17T22:39:02.225066871Z 63 PC: 12aab | Read file or device (Read 29 bytes on handle 8)
2018-12-17T22:39:02.235890578Z 60 PC: 12aca | Create or truncate file
2018-12-17T22:39:02.25120283Z 64 PC: 12adc | Write file or device (Write 260 bytes on handle 9)
2018-12-17T22:39:02.255897228Z 62 PC: 12ae0 | Close file
2018-12-17T22:39:02.265484144Z 79 PC: 12ae5 | Find next file
2018-12-17T22:39:02.268932906Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:39:02.271214191Z 61 PC: 12a9d | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:39:02.279909391Z 63 PC: 12aab | Read file or device (Read 29 bytes on handle 9)
2018-12-17T22:39:02.287832587Z 60 PC: 12aca | Create or truncate file
2018-12-17T22:39:02.302359041Z 64 PC: 12adc | Write file or device (Write 260 bytes on handle 10)
2018-12-17T22:39:02.307280164Z 62 PC: 12ae0 | Close file
2018-12-17T22:39:02.316747895Z 79 PC: 12ae5 | Find next file
2018-12-17T22:39:02.320608667Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:39:02.322385448Z 61 PC: 12a9d | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:39:02.330084873Z 63 PC: 12aab | Read file or device (Read 501 bytes on handle 10)
2018-12-17T22:39:02.338206083Z 60 PC: 12aca | Create or truncate file
2018-12-17T22:39:02.352627144Z 64 PC: 12adc | Write file or device (Write 732 bytes on handle 11)
2018-12-17T22:39:02.362127797Z 62 PC: 12ae0 | Close file
2018-12-17T22:39:02.371864821Z 79 PC: 12ae5 | Find next file
2018-12-17T22:39:02.375682416Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:39:02.377324085Z 61 PC: 12a9d | Open file (Filename = 'PAH.COM')
2018-12-17T22:39:02.384992591Z 63 PC: 12aab | Read file or device (Read 29 bytes on handle 11)
2018-12-17T22:39:02.393510785Z 60 PC: 12aca | Create or truncate file
2018-12-17T22:39:02.407377421Z 64 PC: 12adc | Write file or device (Write 260 bytes on handle 12)
2018-12-17T22:39:02.410112538Z 62 PC: 12ae0 | Close file
2018-12-17T22:39:02.416500653Z 79 PC: 12ae5 | Find next file
2018-12-17T22:39:02.418565411Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T22:39:02.419710394Z 61 PC: 12a9d | Open file (Filename = 'TEST.COM')
2018-12-17T22:39:02.424663413Z 63 PC: 12aab | Read file or device (Read 236 bytes on handle 12)
2018-12-17T22:39:02.426690124Z 79 PC: 12ae5 | Find next file
2018-12-17T22:39:02.428809047Z 76 PC: 12a45 | Terminate with return code (Return code = '0')