Sample viewer

vx.netlux.org/Virus.DOS.Riot.Conjurer.270

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:59:23.774053434Z 26 PC: 12a71 | Set disk transfer address
2018-12-17T22:59:23.775974311Z 37 PC: 12a7e | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:59:23.777272013Z 37 PC: 12a82 | Set interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T22:59:23.778336259Z 44 PC: 12a86 | Get time 0x12a86: cmp dl, 0xd
0x12a89: jg 0x12a8f
0x12a8b: mov al, 0x82
0x12a8d: out 0x21, al
0x12a8f: mov ah, 0x2c
0x12a91: int 0x21
0x12a93: cmp dl, 0x32
0x12a96: jl 0x12ab8
0x12a98: mov ah, 9
0x12a9a: lea dx, word ptr [bp + 0x167]
0x12a9e: int 0x21
0x12aa0: mov ah, 0
0x12aa2: int 0x16
0x12aa4: jmp 0x12ab8
0x12aa6: nop
0x12aa7: inc bx
0x12aa8: outsw dx, word ptr [si]
0x12aa9: dec si
0x12aaa: dec dx
0x12aab: jne 0x12aff
2018-12-17T22:59:23.78100276Z 44 PC: 12a93 | Get time 0x12a93: cmp dl, 0x32
0x12a96: jl 0x12ab8
0x12a98: mov ah, 9
0x12a9a: lea dx, word ptr [bp + 0x167]
0x12a9e: int 0x21
0x12aa0: mov ah, 0
0x12aa2: int 0x16
0x12aa4: jmp 0x12ab8
0x12aa6: nop
0x12aa7: inc bx
0x12aa8: outsw dx, word ptr [si]
0x12aa9: dec si
0x12aaa: dec dx
0x12aab: jne 0x12aff
0x12aad: push dx
0x12aaf: inc dx
0x12ab1: push bx
0x12ab2: inc bx
0x12ab3: and word ptr [bx], ax
0x12ab5: or cl, byte ptr [di]
2018-12-17T22:59:23.783269976Z 9 PC: 12aa0 | Display string (Could not find end pointer)