Sample viewer

vx.netlux.org/Virus.DOS.Rape.2887

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:10:55.272111526Z 42 PC: 12a53 | Get date 0x12a53: cmp al, 0
0x12a55: jne 0x12a5a
0x12a57: jmp 0x12a5d
0x12a59: nop
0x12a5a: jmp 0x12c26
0x12a5d: mov ah, 1
0x12a5f: mov cx, 0x2020
0x12a62: int 0x10
0x12a64: mov ah, 2
0x12a66: xor dx, dx
0x12a68: int 0x10
0x12a6a: xor ax, ax
0x12a6c: int 0x10
0x12a6e: mov ah, 0xe
0x12a70: mov al, 0x49
0x12a72: int 0x10
0x12a74: mov ah, 0xe
0x12a76: mov al, 0x74
0x12a78: int 0x10
0x12a7a: mov ah, 0xe
2018-12-17T23:10:55.275385244Z 105 PC: 12c2b | Get or set media id
2018-12-17T23:10:55.276952192Z 73 PC: 12ca3 | Release memory
2018-12-17T23:10:55.278354489Z 72 PC: 12caa | Allocate memory
2018-12-17T23:10:55.28119367Z 74 PC: 12cb9 | Reallocate memory
2018-12-17T23:10:55.282755738Z 74 PC: 12cc9 | Reallocate memory
2018-12-17T23:10:55.284603663Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.285916593Z 48 PC: 9e993 | Get DOS version
2018-12-17T23:10:55.288052401Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.290404666Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.292545182Z 42 PC: 9e993 | Get date 0x9e993: ret
0x9e994: push ds
0x9e995: push es
0x9e996: push si
0x9e997: push di
0x9e998: push ax
0x9e999: push bx
0x9e99a: push cx
0x9e99b: push dx
0x9e99c: xor cx, cx
0x9e99e: mov ax, 0x4300
0x9e9a1: call 0xae98d
0x9e9a4: mov bx, cx
0x9e9a6: and cl, 0xfe
0x9e9a9: cmp cl, bl
0x9e9ab: je 0x9e9b4
0x9e9ad: mov ax, 0x4301
0x9e9b0: call 0xae98d
0x9e9b3: stc
0x9e9b4: pushf
2018-12-17T23:10:55.296166583Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.298562169Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.300586277Z 44 PC: 9e993 | Get time 0x9e993: ret
0x9e994: push ds
0x9e995: push es
0x9e996: push si
0x9e997: push di
0x9e998: push ax
0x9e999: push bx
0x9e99a: push cx
0x9e99b: push dx
0x9e99c: xor cx, cx
0x9e99e: mov ax, 0x4300
0x9e9a1: call 0xae98d
0x9e9a4: mov bx, cx
0x9e9a6: and cl, 0xfe
0x9e9a9: cmp cl, bl
0x9e9ab: je 0x9e9b4
0x9e9ad: mov ax, 0x4301
0x9e9b0: call 0xae98d
0x9e9b3: stc
0x9e9b4: pushf
2018-12-17T23:10:55.305306285Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.309328932Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.31061988Z 77 PC: 9e993 | Get program return code
2018-12-17T23:10:55.312860385Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.314237465Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.315405352Z 72 PC: 9e993 | Allocate memory
2018-12-17T23:10:55.31856255Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.319874147Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.320959869Z 72 PC: 9e993 | Allocate memory
2018-12-17T23:10:55.323375624Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.325839218Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.327198444Z 37 PC: 9e993 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T23:10:55.329198396Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.331544239Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.332874461Z 37 PC: 9e993 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T23:10:55.33453281Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.336982628Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.338650445Z 37 PC: 9e993 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T23:10:55.340525322Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.343486602Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.344688723Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.346481926Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.348404853Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.349877793Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.351637744Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.354008875Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.355117891Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.356877079Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.358770621Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.359980787Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.361732682Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.363662032Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.365030997Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.367008196Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.368437044Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.370921867Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.373041594Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.374660921Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.378173448Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.380148012Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.381557984Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.383973277Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.386067115Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.387601822Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.397059893Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.399582457Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.400908922Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.402102337Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.405391104Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.409901518Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.410924171Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.416072495Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.417246985Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.418323981Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.421025201Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.422206263Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.423221633Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.425987195Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.427504278Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.428877602Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.432264022Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.433979308Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.435428904Z 62 PC: 9e993 | Close file
2018-12-17T23:10:55.439670022Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.442216593Z 67 PC: 9e993 | Get or set file attributes
2018-12-17T23:10:55.448227889Z 61 PC: 9e993 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T23:10:55.455352341Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.457423827Z 63 PC: 9e993 | Read file or device (Read 24 bytes on handle 5)
2018-12-17T23:10:55.460694479Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.462857688Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.464973819Z 66 PC: 9e993 | Move file pointer
2018-12-17T23:10:55.467137699Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.469050076Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.471777626Z 87 PC: 9e993 | Get or set file date and time
2018-12-17T23:10:55.474083173Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.475762832Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.477842283Z 66 PC: 9e993 | Move file pointer
2018-12-17T23:10:55.47984981Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.482060969Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.489576135Z 87 PC: 9e993 | Get or set file date and time
2018-12-17T23:10:55.49251868Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.494316171Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.496866869Z 44 PC: 9e993 | Get time 0x9e993: ret
0x9e994: push ds
0x9e995: push es
0x9e996: push si
0x9e997: push di
0x9e998: push ax
0x9e999: push bx
0x9e99a: push cx
0x9e99b: push dx
0x9e99c: xor cx, cx
0x9e99e: mov ax, 0x4300
0x9e9a1: call 0xae98d
0x9e9a4: mov bx, cx
0x9e9a6: and cl, 0xfe
0x9e9a9: cmp cl, bl
0x9e9ab: je 0x9e9b4
0x9e9ad: mov ax, 0x4301
0x9e9b0: call 0xae98d
0x9e9b3: stc
0x9e9b4: pushf
2018-12-17T23:10:55.499676293Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.501267827Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.504262109Z 44 PC: 9e993 | Get time 0x9e993: ret
0x9e994: push ds
0x9e995: push es
0x9e996: push si
0x9e997: push di
0x9e998: push ax
0x9e999: push bx
0x9e99a: push cx
0x9e99b: push dx
0x9e99c: xor cx, cx
0x9e99e: mov ax, 0x4300
0x9e9a1: call 0xae98d
0x9e9a4: mov bx, cx
0x9e9a6: and cl, 0xfe
0x9e9a9: cmp cl, bl
0x9e9ab: je 0x9e9b4
0x9e9ad: mov ax, 0x4301
0x9e9b0: call 0xae98d
0x9e9b3: stc
0x9e9b4: pushf
2018-12-17T23:10:55.507175479Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.509038033Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.511373856Z 44 PC: 9e993 | Get time 0x9e993: ret
0x9e994: push ds
0x9e995: push es
0x9e996: push si
0x9e997: push di
0x9e998: push ax
0x9e999: push bx
0x9e99a: push cx
0x9e99b: push dx
0x9e99c: xor cx, cx
0x9e99e: mov ax, 0x4300
0x9e9a1: call 0xae98d
0x9e9a4: mov bx, cx
0x9e9a6: and cl, 0xfe
0x9e9a9: cmp cl, bl
0x9e9ab: je 0x9e9b4
0x9e9ad: mov ax, 0x4301
0x9e9b0: call 0xae98d
0x9e9b3: stc
0x9e9b4: pushf
2018-12-17T23:10:55.514235689Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.516026127Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.524710342Z 44 PC: 9e993 | Get time 0x9e993: ret
0x9e994: push ds
0x9e995: push es
0x9e996: push si
0x9e997: push di
0x9e998: push ax
0x9e999: push bx
0x9e99a: push cx
0x9e99b: push dx
0x9e99c: xor cx, cx
0x9e99e: mov ax, 0x4300
0x9e9a1: call 0xae98d
0x9e9a4: mov bx, cx
0x9e9a6: and cl, 0xfe
0x9e9a9: cmp cl, bl
0x9e9ab: je 0x9e9b4
0x9e9ad: mov ax, 0x4301
0x9e9b0: call 0xae98d
0x9e9b3: stc
0x9e9b4: pushf
2018-12-17T23:10:55.528025829Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.529510341Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.530508529Z 44 PC: 9e993 | Get time 0x9e993: ret
0x9e994: push ds
0x9e995: push es
0x9e996: push si
0x9e997: push di
0x9e998: push ax
0x9e999: push bx
0x9e99a: push cx
0x9e99b: push dx
0x9e99c: xor cx, cx
0x9e99e: mov ax, 0x4300
0x9e9a1: call 0xae98d
0x9e9a4: mov bx, cx
0x9e9a6: and cl, 0xfe
0x9e9a9: cmp cl, bl
0x9e9ab: je 0x9e9b4
0x9e9ad: mov ax, 0x4301
0x9e9b0: call 0xae98d
0x9e9b3: stc
0x9e9b4: pushf
2018-12-17T23:10:55.533630461Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.535167492Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.536462868Z 44 PC: 9e993 | Get time 0x9e993: ret
0x9e994: push ds
0x9e995: push es
0x9e996: push si
0x9e997: push di
0x9e998: push ax
0x9e999: push bx
0x9e99a: push cx
0x9e99b: push dx
0x9e99c: xor cx, cx
0x9e99e: mov ax, 0x4300
0x9e9a1: call 0xae98d
0x9e9a4: mov bx, cx
0x9e9a6: and cl, 0xfe
0x9e9a9: cmp cl, bl
0x9e9ab: je 0x9e9b4
0x9e9ad: mov ax, 0x4301
0x9e9b0: call 0xae98d
0x9e9b3: stc
0x9e9b4: pushf
2018-12-17T23:10:55.539809844Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.541290559Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:55.542234915Z 64 PC: 9e993 | Write file or device (Write 2887 bytes on handle 5)
2018-12-17T23:10:56.060314518Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.061580439Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.062609505Z 66 PC: 9e993 | Move file pointer
2018-12-17T23:10:56.065125006Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.066470297Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.067683429Z 64 PC: 9e993 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T23:10:56.071621096Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.073198753Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.074332416Z 87 PC: 9e993 | Get or set file date and time
2018-12-17T23:10:56.076314885Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.077579924Z 62 PC: 9e993 | Close file
2018-12-17T23:10:56.085400835Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.086471539Z 61 PC: 9e993 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T23:10:56.094533593Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.096022223Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.097329743Z 66 PC: 9e993 | Move file pointer
2018-12-17T23:10:56.10024653Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.101781637Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.103077675Z 63 PC: 9e993 | Read file or device (Read 44693 bytes on handle 5)
2018-12-17T23:10:56.120471162Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.122207848Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.123545544Z 62 PC: 9e993 | Close file
2018-12-17T23:10:56.126765341Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.12998653Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.131360585Z 99 PC: 9e993 | Get DBCS lead byte table pointer
2018-12-17T23:10:56.13432487Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.136471558Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.138160846Z 56 PC: 9e993 | Get or set country info
2018-12-17T23:10:56.141201776Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.143499458Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.14484022Z 64 PC: 9e993 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T23:10:56.150895349Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.152685646Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.154009987Z 25 PC: 9e993 | Get default drive
2018-12-17T23:10:56.156468222Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.158632403Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.159956062Z 71 PC: 9e993 | Get current directory
2018-12-17T23:10:56.163963931Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.167777824Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.169174972Z 64 PC: 9e993 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T23:10:56.172497362Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.176208132Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.177207983Z 2 PC: 9e993 | Character output (Char = '3e')
2018-12-17T23:10:56.179558143Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.181675416Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.183130393Z 93 PC: 9e993 | File sharing functions
2018-12-17T23:10:56.185435479Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.188242669Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.189661698Z 93 PC: 9e993 | File sharing functions
2018-12-17T23:10:56.191935134Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.194600608Z 98 PC: 9e993 | Get current PSP
2018-12-17T23:10:56.196563059Z 10 PC: 9e993 | Buffered keyboard input

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":17013,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:54:38.375919802Z 42 PC: 12a53 | Get date 0x12a53: cmp al, 0
0x12a55: jne 0x12a5a
0x12a57: jmp 0x12a5d
0x12a59: nop
0x12a5a: jmp 0x12c26
0x12a5d: mov ah, 1
0x12a5f: mov cx, 0x2020
0x12a62: int 0x10
0x12a64: mov ah, 2
0x12a66: xor dx, dx
0x12a68: int 0x10
0x12a6a: xor ax, ax
0x12a6c: int 0x10
0x12a6e: mov ah, 0xe
0x12a70: mov al, 0x49
0x12a72: int 0x10
0x12a74: mov ah, 0xe
0x12a76: mov al, 0x74
0x12a78: int 0x10
0x12a7a: mov ah, 0xe
2018-12-25T12:54:38.378403149Z 105 PC: 12c2b | Get or set media id
2018-12-25T12:54:38.379647055Z 73 PC: 12ca3 | Release memory
2018-12-25T12:54:38.380754996Z 72 PC: 12caa | Allocate memory
2018-12-25T12:54:38.382827536Z 74 PC: 12cb9 | Reallocate memory
2018-12-25T12:54:38.384251209Z 74 PC: 12cc9 | Reallocate memory
2018-12-25T12:54:38.385710443Z 98 PC: 9e993 | Get current PSP
2018-12-25T12:54:38.386880406Z 48 PC: 9e993 | Get DOS version (See above)
2018-12-25T12:54:38.388150014Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.389208333Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.390464443Z 42 PC: 9e993 | Get date (See above)
2018-12-25T12:54:38.392548165Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.395968883Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.397402725Z 77 PC: 9e993 | Get program return code (See above)
2018-12-25T12:54:38.398676298Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.399644553Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.40042897Z 72 PC: 9e993 | Allocate memory (See above)
2018-12-25T12:54:38.402493334Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.403474005Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.404284148Z 72 PC: 9e993 | Allocate memory (See above)
2018-12-25T12:54:38.406731495Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.408630105Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.409395755Z 37 PC: 9e993 | Set interrupt vector (See above)
2018-12-25T12:54:38.411045967Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.412065957Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.412829672Z 37 PC: 9e993 | Set interrupt vector (See above)
2018-12-25T12:54:38.422038335Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.423027795Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.423739651Z 37 PC: 9e993 | Set interrupt vector (See above)
2018-12-25T12:54:38.42526416Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.426317846Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.427117199Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.429024584Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.43022142Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.431324574Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.43351239Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.434753444Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.435837727Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.438400647Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.43929606Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.439969004Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.442141809Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.443796557Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.444622647Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.446825039Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.447825562Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.448621718Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.450182904Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.451427577Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.452197435Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.453752913Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.45669338Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.460233903Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.462154756Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.467364274Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.46849997Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.470433349Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.471719298Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.472522006Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.473885735Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.475181291Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.475856778Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.476867668Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.477985138Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.478730809Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.479795355Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.480889585Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.481537262Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.482597578Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.483677781Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.484369384Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.485287665Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.486262788Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.48696284Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.488068857Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.489968603Z 67 PC: 9e993 | Get or set file attributes (See above)
2018-12-25T12:54:38.493284131Z 61 PC: 9e993 | Open file (See above)
2018-12-25T12:54:38.497094017Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.49842802Z 63 PC: 9e993 | Read file or device (See above)
2018-12-25T12:54:38.500176437Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.501022958Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.507387555Z 66 PC: 9e993 | Move file pointer (See above)
2018-12-25T12:54:38.508399618Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.509176759Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.510224893Z 87 PC: 9e993 | Get or set file date and time (See above)
2018-12-25T12:54:38.511191253Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.512016709Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.512969291Z 66 PC: 9e993 | Move file pointer (See above)
2018-12-25T12:54:38.513942766Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.514695013Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.517999937Z 87 PC: 9e993 | Get or set file date and time (See above)
2018-12-25T12:54:38.518931617Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.519788522Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.520800997Z 44 PC: 9e993 | Get time (See above)
2018-12-25T12:54:38.522144842Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.522857754Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.524224475Z 44 PC: 9e993 | Get time (See above)
2018-12-25T12:54:38.52566091Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.526444798Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.527711799Z 44 PC: 9e993 | Get time (See above)
2018-12-25T12:54:38.529669421Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.53059238Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.532033666Z 44 PC: 9e993 | Get time (See above)
2018-12-25T12:54:38.534024039Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.53501156Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.536537332Z 44 PC: 9e993 | Get time (See above)
2018-12-25T12:54:38.538567794Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.539500482Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.540837582Z 44 PC: 9e993 | Get time (See above)
2018-12-25T12:54:38.542852373Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.544306435Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.545768192Z 64 PC: 9e993 | Write file or device (See above)
2018-12-25T12:54:38.968164872Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.969341799Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.973611808Z 66 PC: 9e993 | Move file pointer (See above)
2018-12-25T12:54:38.975237492Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.976775338Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.978867433Z 64 PC: 9e993 | Write file or device (See above)
2018-12-25T12:54:38.981885129Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.983029316Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.985275359Z 87 PC: 9e993 | Get or set file date and time (See above)
2018-12-25T12:54:38.986753617Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.987757711Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:38.995002036Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:38.995986287Z 61 PC: 9e993 | Open file (See above)
2018-12-25T12:54:39.002127271Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.003953569Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.005102046Z 66 PC: 9e993 | Move file pointer (See above)
2018-12-25T12:54:39.006705445Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.008574198Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.009710648Z 63 PC: 9e993 | Read file or device (See above)
2018-12-25T12:54:39.022341675Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.023848289Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.024632348Z 62 PC: 9e993 | Close file (See above)
2018-12-25T12:54:39.026342851Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.02929107Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.030080113Z 99 PC: 9e993 | Get DBCS lead byte table pointer (See above)
2018-12-25T12:54:39.031222368Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.032553578Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.033849021Z 56 PC: 9e993 | Get or set country info (See above)
2018-12-25T12:54:39.03539581Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.038344224Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.03914423Z 64 PC: 9e993 | Write file or device (See above)
2018-12-25T12:54:39.043747274Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.04531942Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.046456631Z 25 PC: 9e993 | Get default drive (See above)
2018-12-25T12:54:39.047542261Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.049638326Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.050312223Z 71 PC: 9e993 | Get current directory (See above)
2018-12-25T12:54:39.053621758Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.055905782Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.056628695Z 64 PC: 9e993 | Write file or device (See above)
2018-12-25T12:54:39.058980932Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.060887824Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.061623002Z 2 PC: 9e993 | Character output (See above)
2018-12-25T12:54:39.063431006Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.064859386Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.065565277Z 93 PC: 9e993 | File sharing functions (See above)
2018-12-25T12:54:39.066935935Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.068327146Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.068962107Z 93 PC: 9e993 | File sharing functions (See above)
2018-12-25T12:54:39.070657722Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.072317596Z 98 PC: 9e993 | Get current PSP (See above)
2018-12-25T12:54:39.073097229Z 10 PC: 9e993 | Buffered keyboard input (See above)

{"DateBased":true,"Day":6,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":17013,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:54:38.384639918Z 42 PC: 12a53 | Get date 0x12a53: cmp al, 0
0x12a55: jne 0x12a5a
0x12a57: jmp 0x12a5d
0x12a59: nop
0x12a5a: jmp 0x12c26
0x12a5d: mov ah, 1
0x12a5f: mov cx, 0x2020
0x12a62: int 0x10
0x12a64: mov ah, 2
0x12a66: xor dx, dx
0x12a68: int 0x10
0x12a6a: xor ax, ax
0x12a6c: int 0x10
0x12a6e: mov ah, 0xe
0x12a70: mov al, 0x49
0x12a72: int 0x10
0x12a74: mov ah, 0xe
0x12a76: mov al, 0x74
0x12a78: int 0x10
0x12a7a: mov ah, 0xe