Sample viewer

vx.netlux.org/Virus.DOS.BlackJec.247.g

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:56:48.240333152Z 78 PC: 12a7c | Find first file
2018-12-17T21:56:48.251335016Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T21:56:48.252403864Z 61 PC: 12aad | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:56:48.258729449Z 63 PC: 12abb | Read file or device (Read 407 bytes on handle 5)
2018-12-17T21:56:48.265387519Z 60 PC: 12ada | Create or truncate file
2018-12-17T21:56:48.28377516Z 64 PC: 12aec | Write file or device (Write 654 bytes on handle 6)
2018-12-17T21:56:48.291804746Z 62 PC: 12af0 | Close file
2018-12-17T21:56:48.300672089Z 79 PC: 12af5 | Find next file
2018-12-17T21:56:48.303361835Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T21:56:48.304445156Z 61 PC: 12aad | Open file (Filename = 'PRINT.COM')
2018-12-17T21:56:48.310907803Z 63 PC: 12abb | Read file or device (Read 27 bytes on handle 6)
2018-12-17T21:56:48.31756023Z 60 PC: 12ada | Create or truncate file
2018-12-17T21:56:48.329724823Z 64 PC: 12aec | Write file or device (Write 274 bytes on handle 7)
2018-12-17T21:56:48.333247719Z 62 PC: 12af0 | Close file
2018-12-17T21:56:48.343342768Z 79 PC: 12af5 | Find next file
2018-12-17T21:56:48.345120265Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T21:56:48.345928603Z 61 PC: 12aad | Open file (Filename = 'HELLO.COM')
2018-12-17T21:56:48.352785324Z 63 PC: 12abb | Read file or device (Read 92 bytes on handle 7)
2018-12-17T21:56:48.359101324Z 60 PC: 12ada | Create or truncate file
2018-12-17T21:56:48.393715986Z 64 PC: 12aec | Write file or device (Write 339 bytes on handle 8)
2018-12-17T21:56:48.398251812Z 62 PC: 12af0 | Close file
2018-12-17T21:56:48.406885823Z 79 PC: 12af5 | Find next file
2018-12-17T21:56:48.409388453Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T21:56:48.411086346Z 61 PC: 12aad | Open file (Filename = 'PHANG.COM')
2018-12-17T21:56:48.41743721Z 63 PC: 12abb | Read file or device (Read 29 bytes on handle 8)
2018-12-17T21:56:48.424046037Z 60 PC: 12ada | Create or truncate file
2018-12-17T21:56:48.436484912Z 64 PC: 12aec | Write file or device (Write 276 bytes on handle 9)
2018-12-17T21:56:48.439817882Z 62 PC: 12af0 | Close file
2018-12-17T21:56:48.44761278Z 79 PC: 12af5 | Find next file
2018-12-17T21:56:48.450720156Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T21:56:48.451983887Z 61 PC: 12aad | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:56:48.458557964Z 63 PC: 12abb | Read file or device (Read 29 bytes on handle 9)
2018-12-17T21:56:48.465436023Z 60 PC: 12ada | Create or truncate file
2018-12-17T21:56:48.476942108Z 64 PC: 12aec | Write file or device (Write 276 bytes on handle 10)
2018-12-17T21:56:48.479373813Z 62 PC: 12af0 | Close file
2018-12-17T21:56:48.488711786Z 79 PC: 12af5 | Find next file
2018-12-17T21:56:48.491754107Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T21:56:48.493064812Z 61 PC: 12aad | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:56:48.500289938Z 63 PC: 12abb | Read file or device (Read 501 bytes on handle 10)
2018-12-17T21:56:48.506699288Z 60 PC: 12ada | Create or truncate file
2018-12-17T21:56:48.518470759Z 64 PC: 12aec | Write file or device (Write 748 bytes on handle 11)
2018-12-17T21:56:48.527261051Z 62 PC: 12af0 | Close file
2018-12-17T21:56:48.535129311Z 79 PC: 12af5 | Find next file
2018-12-17T21:56:48.537548897Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T21:56:48.539063514Z 61 PC: 12aad | Open file (Filename = 'PAH.COM')
2018-12-17T21:56:48.545531912Z 63 PC: 12abb | Read file or device (Read 29 bytes on handle 11)
2018-12-17T21:56:48.552288754Z 60 PC: 12ada | Create or truncate file
2018-12-17T21:56:48.565157007Z 64 PC: 12aec | Write file or device (Write 276 bytes on handle 12)
2018-12-17T21:56:48.568733969Z 62 PC: 12af0 | Close file
2018-12-17T21:56:48.576604432Z 79 PC: 12af5 | Find next file
2018-12-17T21:56:48.579907119Z 47 PC: 12a87 | Get disk transfer address
2018-12-17T21:56:48.58099165Z 61 PC: 12aad | Open file (Filename = 'TEST.COM')
2018-12-17T21:56:48.587538767Z 63 PC: 12abb | Read file or device (Read 252 bytes on handle 12)
2018-12-17T21:56:48.590888939Z 79 PC: 12af5 | Find next file
2018-12-17T21:56:48.593373455Z 76 PC: 12a45 | Terminate with return code (Return code = '0')