Sample viewer

vx.netlux.org/Virus.DOS.Riot.Conjurer.Tng.181

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:20:04.138167995Z 26 PC: 12aa6 | Set disk transfer address
2018-12-17T22:20:04.141796981Z 78 PC: 12abd | Find first file
2018-12-17T22:20:04.149169996Z 61 PC: 12adb | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:20:04.156784611Z 63 PC: 12ae9 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:04.165961777Z 66 PC: 12afc | Move file pointer
2018-12-17T22:20:04.169364456Z 64 PC: 12b0d | Write file or device (Write 181 bytes on handle 5)
2018-12-17T22:20:04.188411335Z 66 PC: 12b18 | Move file pointer
2018-12-17T22:20:04.190230709Z 64 PC: 12b23 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:04.21072916Z 62 PC: 12b2b | Close file
2018-12-17T22:20:04.220260203Z 79 PC: 12abd | Find next file
2018-12-17T22:20:04.223541665Z 61 PC: 12adb | Open file (Filename = 'PRINT.COM')
2018-12-17T22:20:04.231988588Z 63 PC: 12ae9 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:04.239607587Z 66 PC: 12afc | Move file pointer
2018-12-17T22:20:04.241564876Z 64 PC: 12b0d | Write file or device (Write 181 bytes on handle 5)
2018-12-17T22:20:04.245845829Z 66 PC: 12b18 | Move file pointer
2018-12-17T22:20:04.247771964Z 64 PC: 12b23 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:04.250965873Z 62 PC: 12b2b | Close file
2018-12-17T22:20:04.259685752Z 79 PC: 12abd | Find next file
2018-12-17T22:20:04.264036438Z 61 PC: 12adb | Open file (Filename = 'HELLO.COM')
2018-12-17T22:20:04.271382246Z 63 PC: 12ae9 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:04.278643223Z 66 PC: 12afc | Move file pointer
2018-12-17T22:20:04.281976281Z 64 PC: 12b0d | Write file or device (Write 181 bytes on handle 5)
2018-12-17T22:20:04.286268619Z 66 PC: 12b18 | Move file pointer
2018-12-17T22:20:04.289053469Z 64 PC: 12b23 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:04.293307228Z 62 PC: 12b2b | Close file
2018-12-17T22:20:04.30371757Z 79 PC: 12abd | Find next file
2018-12-17T22:20:04.308999761Z 61 PC: 12adb | Open file (Filename = 'PHANG.COM')
2018-12-17T22:20:04.316751305Z 63 PC: 12ae9 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:04.323923264Z 66 PC: 12afc | Move file pointer
2018-12-17T22:20:04.326097586Z 64 PC: 12b0d | Write file or device (Write 181 bytes on handle 5)
2018-12-17T22:20:04.329381868Z 66 PC: 12b18 | Move file pointer
2018-12-17T22:20:04.330924531Z 64 PC: 12b23 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:04.334417361Z 62 PC: 12b2b | Close file
2018-12-17T22:20:04.354171717Z 79 PC: 12abd | Find next file
2018-12-17T22:20:04.35969048Z 61 PC: 12adb | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:20:04.373101766Z 63 PC: 12ae9 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:20:04.391573432Z 66 PC: 12afc | Move file pointer
2018-12-17T22:20:04.393272357Z 64 PC: 12b0d | Write file or device (Write 181 bytes on handle 5)
2018-12-17T22:20:04.397131524Z 66 PC: 12b18 | Move file pointer
2018-12-17T22:20:04.39948249Z 64 PC: 12b23 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:20:04.40265006Z 62 PC: 12b2b | Close file
2018-12-17T22:20:04.412164487Z 26 PC: 12acd | Set disk transfer address
2018-12-17T22:20:04.414725004Z 9 PC: 12a4e | Display string (String= 'This is a dropper of: Conjurer: The Next Generation! ')