Sample viewer

vx.netlux.org/Virus.DOS.Rape.2877.a

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:44:41.062417297Z 42 PC: 1360b | Get date 0x1360b: cmp al, 0
0x1360d: jne 0x13612
0x1360f: jmp 0x13615
0x13611: nop
0x13612: jmp 0x137de
0x13615: mov ah, 1
0x13617: mov cx, 0x2020
0x1361a: int 0x10
0x1361c: mov ah, 2
0x1361e: xor dx, dx
0x13620: int 0x10
0x13622: xor ax, ax
0x13624: int 0x10
0x13626: mov ah, 0xe
0x13628: mov al, 0x49
0x1362a: int 0x10
0x1362c: mov ah, 0xe
0x1362e: mov al, 0x74
0x13630: int 0x10
0x13632: mov ah, 0xe
2018-12-17T22:44:41.065404527Z 105 PC: 137e3 | Get or set media id
2018-12-17T22:44:41.068753697Z 73 PC: 1385b | Release memory
2018-12-17T22:44:41.07152371Z 72 PC: 13862 | Allocate memory
2018-12-17T22:44:41.074567326Z 74 PC: 13871 | Reallocate memory
2018-12-17T22:44:41.079256393Z 74 PC: 13881 | Reallocate memory
2018-12-17T22:44:41.0814064Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.08266239Z 48 PC: 9e999 | Get DOS version
2018-12-17T22:44:41.084864335Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.086475271Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.087908934Z 42 PC: 9e999 | Get date 0x9e999: ret
0x9e99a: push ds
0x9e99b: push es
0x9e99c: push si
0x9e99d: push di
0x9e99e: push ax
0x9e99f: push bx
0x9e9a0: push cx
0x9e9a1: push dx
0x9e9a2: xor cx, cx
0x9e9a4: mov ax, 0x4300
0x9e9a7: call 0xae993
0x9e9aa: mov bx, cx
0x9e9ac: and cl, 0xfe
0x9e9af: cmp cl, bl
0x9e9b1: je 0x9e9ba
0x9e9b3: mov ax, 0x4301
0x9e9b6: call 0xae993
0x9e9b9: stc
0x9e9ba: pushf
2018-12-17T22:44:41.09755477Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.09942387Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.100453805Z 44 PC: 9e999 | Get time 0x9e999: ret
0x9e99a: push ds
0x9e99b: push es
0x9e99c: push si
0x9e99d: push di
0x9e99e: push ax
0x9e99f: push bx
0x9e9a0: push cx
0x9e9a1: push dx
0x9e9a2: xor cx, cx
0x9e9a4: mov ax, 0x4300
0x9e9a7: call 0xae993
0x9e9aa: mov bx, cx
0x9e9ac: and cl, 0xfe
0x9e9af: cmp cl, bl
0x9e9b1: je 0x9e9ba
0x9e9b3: mov ax, 0x4301
0x9e9b6: call 0xae993
0x9e9b9: stc
0x9e9ba: pushf
2018-12-17T22:44:41.104501988Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.109726059Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.111386828Z 77 PC: 9e999 | Get program return code
2018-12-17T22:44:41.113319568Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.116134506Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.117603495Z 72 PC: 9e999 | Allocate memory
2018-12-17T22:44:41.119853019Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.126128195Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.127739311Z 72 PC: 9e999 | Allocate memory
2018-12-17T22:44:41.129914917Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.133123213Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.134692881Z 37 PC: 9e999 | Set interrupt vector (Interrupt = '34' AKA 'Random write')
2018-12-17T22:44:41.13636943Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.138468382Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.140110356Z 37 PC: 9e999 | Set interrupt vector (Interrupt = '35' AKA 'Get file size in records')
2018-12-17T22:44:41.141803947Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.143699136Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.14575668Z 37 PC: 9e999 | Set interrupt vector (Interrupt = '36' AKA 'Set random record number')
2018-12-17T22:44:41.14753994Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.149135767Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.151247303Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.153124058Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.154623554Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.15700686Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.159038486Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.16056351Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.162833443Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.165141398Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.166810803Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.169957534Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.172084999Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.173660979Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.176075444Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.178403686Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.180485617Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.182003839Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.185775261Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.187149302Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.188328467Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.19228102Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.193501563Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.19539564Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.199681349Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.20098113Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.20213113Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.204760348Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.205995198Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.207030262Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.20891936Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.210693402Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.211679724Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.213447765Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.215557517Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.21697548Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.218980526Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.221086161Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.222514914Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.224504912Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.227074588Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.228568564Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.231108945Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.233583362Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.235124427Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.237201899Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.241112373Z 67 PC: 9e999 | Get or set file attributes
2018-12-17T22:44:41.247443584Z 61 PC: 9e999 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T22:44:41.254482234Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.256646789Z 63 PC: 9e999 | Read file or device (Read 24 bytes on handle 5)
2018-12-17T22:44:41.259736172Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.260999103Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.262132181Z 66 PC: 9e999 | Move file pointer
2018-12-17T22:44:41.265004947Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.266271596Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.267352406Z 87 PC: 9e999 | Get or set file date and time
2018-12-17T22:44:41.269689305Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.270973777Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.272070096Z 66 PC: 9e999 | Move file pointer
2018-12-17T22:44:41.274735572Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.275992212Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.277089373Z 87 PC: 9e999 | Get or set file date and time
2018-12-17T22:44:41.279921222Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.281425818Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.282623367Z 44 PC: 9e999 | Get time 0x9e999: ret
0x9e99a: push ds
0x9e99b: push es
0x9e99c: push si
0x9e99d: push di
0x9e99e: push ax
0x9e99f: push bx
0x9e9a0: push cx
0x9e9a1: push dx
0x9e9a2: xor cx, cx
0x9e9a4: mov ax, 0x4300
0x9e9a7: call 0xae993
0x9e9aa: mov bx, cx
0x9e9ac: and cl, 0xfe
0x9e9af: cmp cl, bl
0x9e9b1: je 0x9e9ba
0x9e9b3: mov ax, 0x4301
0x9e9b6: call 0xae993
0x9e9b9: stc
0x9e9ba: pushf
2018-12-17T22:44:41.285895232Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.288129168Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.290002867Z 44 PC: 9e999 | Get time 0x9e999: ret
0x9e99a: push ds
0x9e99b: push es
0x9e99c: push si
0x9e99d: push di
0x9e99e: push ax
0x9e99f: push bx
0x9e9a0: push cx
0x9e9a1: push dx
0x9e9a2: xor cx, cx
0x9e9a4: mov ax, 0x4300
0x9e9a7: call 0xae993
0x9e9aa: mov bx, cx
0x9e9ac: and cl, 0xfe
0x9e9af: cmp cl, bl
0x9e9b1: je 0x9e9ba
0x9e9b3: mov ax, 0x4301
0x9e9b6: call 0xae993
0x9e9b9: stc
0x9e9ba: pushf
2018-12-17T22:44:41.293015666Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.296481144Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.298036425Z 44 PC: 9e999 | Get time 0x9e999: ret
0x9e99a: push ds
0x9e99b: push es
0x9e99c: push si
0x9e99d: push di
0x9e99e: push ax
0x9e99f: push bx
0x9e9a0: push cx
0x9e9a1: push dx
0x9e9a2: xor cx, cx
0x9e9a4: mov ax, 0x4300
0x9e9a7: call 0xae993
0x9e9aa: mov bx, cx
0x9e9ac: and cl, 0xfe
0x9e9af: cmp cl, bl
0x9e9b1: je 0x9e9ba
0x9e9b3: mov ax, 0x4301
0x9e9b6: call 0xae993
0x9e9b9: stc
0x9e9ba: pushf
2018-12-17T22:44:41.301016603Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.30363993Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.304994524Z 44 PC: 9e999 | Get time 0x9e999: ret
0x9e99a: push ds
0x9e99b: push es
0x9e99c: push si
0x9e99d: push di
0x9e99e: push ax
0x9e99f: push bx
0x9e9a0: push cx
0x9e9a1: push dx
0x9e9a2: xor cx, cx
0x9e9a4: mov ax, 0x4300
0x9e9a7: call 0xae993
0x9e9aa: mov bx, cx
0x9e9ac: and cl, 0xfe
0x9e9af: cmp cl, bl
0x9e9b1: je 0x9e9ba
0x9e9b3: mov ax, 0x4301
0x9e9b6: call 0xae993
0x9e9b9: stc
0x9e9ba: pushf
2018-12-17T22:44:41.307731704Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.310606183Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.31190374Z 44 PC: 9e999 | Get time 0x9e999: ret
0x9e99a: push ds
0x9e99b: push es
0x9e99c: push si
0x9e99d: push di
0x9e99e: push ax
0x9e99f: push bx
0x9e9a0: push cx
0x9e9a1: push dx
0x9e9a2: xor cx, cx
0x9e9a4: mov ax, 0x4300
0x9e9a7: call 0xae993
0x9e9aa: mov bx, cx
0x9e9ac: and cl, 0xfe
0x9e9af: cmp cl, bl
0x9e9b1: je 0x9e9ba
0x9e9b3: mov ax, 0x4301
0x9e9b6: call 0xae993
0x9e9b9: stc
0x9e9ba: pushf
2018-12-17T22:44:41.314614101Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.317077207Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.318466596Z 44 PC: 9e999 | Get time 0x9e999: ret
0x9e99a: push ds
0x9e99b: push es
0x9e99c: push si
0x9e99d: push di
0x9e99e: push ax
0x9e99f: push bx
0x9e9a0: push cx
0x9e9a1: push dx
0x9e9a2: xor cx, cx
0x9e9a4: mov ax, 0x4300
0x9e9a7: call 0xae993
0x9e9aa: mov bx, cx
0x9e9ac: and cl, 0xfe
0x9e9af: cmp cl, bl
0x9e9b1: je 0x9e9ba
0x9e9b3: mov ax, 0x4301
0x9e9b6: call 0xae993
0x9e9b9: stc
0x9e9ba: pushf
2018-12-17T22:44:41.321294076Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.324106609Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.325483635Z 64 PC: 9e999 | Write file or device (Write 2877 bytes on handle 5)
2018-12-17T22:44:41.685778143Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.68825217Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.689815165Z 66 PC: 9e999 | Move file pointer
2018-12-17T22:44:41.691629102Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.693597289Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.695432796Z 64 PC: 9e999 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:44:41.699112948Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.702209945Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.703890481Z 87 PC: 9e999 | Get or set file date and time
2018-12-17T22:44:41.705990996Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.707799453Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.71700359Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.718572226Z 61 PC: 9e999 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T22:44:41.725749676Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.728550927Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.730161001Z 66 PC: 9e999 | Move file pointer
2018-12-17T22:44:41.732302954Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.735046156Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.737580376Z 63 PC: 9e999 | Read file or device (Read 44693 bytes on handle 5)
2018-12-17T22:44:41.753111215Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.755864817Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.758000018Z 62 PC: 9e999 | Close file
2018-12-17T22:44:41.760565716Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.764732642Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.766937112Z 99 PC: 9e999 | Get DBCS lead byte table pointer
2018-12-17T22:44:41.7689537Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.772018386Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.773643247Z 56 PC: 9e999 | Get or set country info
2018-12-17T22:44:41.775723084Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.779159898Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.780785802Z 64 PC: 9e999 | Write file or device (Write 2 bytes on handle 1)
2018-12-17T22:44:41.78562982Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.78767979Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.79012882Z 25 PC: 9e999 | Get default drive
2018-12-17T22:44:41.791791723Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.793867562Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.79626253Z 71 PC: 9e999 | Get current directory
2018-12-17T22:44:41.799715335Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.802340195Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.804294235Z 64 PC: 9e999 | Write file or device (Write 3 bytes on handle 1)
2018-12-17T22:44:41.807391111Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.809497036Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.811852841Z 2 PC: 9e999 | Character output (Char = '3e')
2018-12-17T22:44:41.814393042Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.81587771Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.818510044Z 93 PC: 9e999 | File sharing functions
2018-12-17T22:44:41.820574482Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.82200012Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.824134097Z 93 PC: 9e999 | File sharing functions
2018-12-17T22:44:41.826309423Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.828099825Z 98 PC: 9e999 | Get current PSP
2018-12-17T22:44:41.830268158Z 10 PC: 9e999 | Buffered keyboard input

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":8293,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:04:10.370720555Z 42 PC: 1360b | Get date 0x1360b: cmp al, 0
0x1360d: jne 0x13612
0x1360f: jmp 0x13615
0x13611: nop
0x13612: jmp 0x137de
0x13615: mov ah, 1
0x13617: mov cx, 0x2020
0x1361a: int 0x10
0x1361c: mov ah, 2
0x1361e: xor dx, dx
0x13620: int 0x10
0x13622: xor ax, ax
0x13624: int 0x10
0x13626: mov ah, 0xe
0x13628: mov al, 0x49
0x1362a: int 0x10
0x1362c: mov ah, 0xe
0x1362e: mov al, 0x74
0x13630: int 0x10
0x13632: mov ah, 0xe
2018-12-25T12:04:10.373247823Z 105 PC: 137e3 | Get or set media id
2018-12-25T12:04:10.374880673Z 73 PC: 1385b | Release memory
2018-12-25T12:04:10.376318654Z 72 PC: 13862 | Allocate memory
2018-12-25T12:04:10.37861925Z 74 PC: 13871 | Reallocate memory
2018-12-25T12:04:10.380261058Z 74 PC: 13881 | Reallocate memory
2018-12-25T12:04:10.381558277Z 98 PC: 9e999 | Get current PSP
2018-12-25T12:04:10.388249719Z 48 PC: 9e999 | Get DOS version (See above)
2018-12-25T12:04:10.389420763Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.390353361Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.392200894Z 42 PC: 9e999 | Get date (See above)
2018-12-25T12:04:10.395966204Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.398456973Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.400044734Z 77 PC: 9e999 | Get program return code (See above)
2018-12-25T12:04:10.401543091Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.402530978Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.403437083Z 72 PC: 9e999 | Allocate memory (See above)
2018-12-25T12:04:10.415479267Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.418477263Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.419281873Z 72 PC: 9e999 | Allocate memory (See above)
2018-12-25T12:04:10.421340875Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.422918511Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.424080347Z 37 PC: 9e999 | Set interrupt vector (See above)
2018-12-25T12:04:10.425844194Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.426746833Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.427530497Z 37 PC: 9e999 | Set interrupt vector (See above)
2018-12-25T12:04:10.429265422Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.430159903Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.431157354Z 37 PC: 9e999 | Set interrupt vector (See above)
2018-12-25T12:04:10.432838106Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.434132386Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.435315343Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.437433559Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.438480939Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.439714652Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.44131403Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.442479575Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.443268415Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.445042477Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.448002137Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.448982802Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.451362214Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.452600131Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.453523393Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.45587358Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.457164402Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.458346991Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.461235727Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.462500933Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.463669185Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.466332259Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.467738866Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.46891902Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.47089136Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.472731563Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.473540442Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.475565177Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.478092561Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.479066301Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.480662026Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.482249931Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.483649408Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.485017267Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.486564972Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.487531376Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.489995772Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.491810461Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.493707035Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.497517062Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.499410277Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.50092531Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.50238527Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.503529958Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.505509566Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.50717232Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.509325354Z 67 PC: 9e999 | Get or set file attributes (See above)
2018-12-25T12:04:10.515516238Z 61 PC: 9e999 | Open file (See above)
2018-12-25T12:04:10.52283902Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.523528035Z 63 PC: 9e999 | Read file or device (See above)
2018-12-25T12:04:10.526013039Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.527493569Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.528401875Z 66 PC: 9e999 | Move file pointer (See above)
2018-12-25T12:04:10.529786313Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.531649204Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.532744087Z 87 PC: 9e999 | Get or set file date and time (See above)
2018-12-25T12:04:10.53443505Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.536676663Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.537563207Z 66 PC: 9e999 | Move file pointer (See above)
2018-12-25T12:04:10.539208458Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.540969705Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.542113185Z 87 PC: 9e999 | Get or set file date and time (See above)
2018-12-25T12:04:10.543765397Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.545793671Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.547841454Z 44 PC: 9e999 | Get time (See above)
2018-12-25T12:04:10.549990738Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.55210407Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.554288608Z 44 PC: 9e999 | Get time (See above)
2018-12-25T12:04:10.55677208Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.558987205Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.560494407Z 44 PC: 9e999 | Get time (See above)
2018-12-25T12:04:10.562919724Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.565078742Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.566593976Z 44 PC: 9e999 | Get time (See above)
2018-12-25T12:04:10.569004151Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.571133088Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.572630109Z 44 PC: 9e999 | Get time (See above)
2018-12-25T12:04:10.575125921Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.576685994Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.578749918Z 44 PC: 9e999 | Get time (See above)
2018-12-25T12:04:10.581263848Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.582904194Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.585639763Z 64 PC: 9e999 | Write file or device (See above)
2018-12-25T12:04:10.919384934Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.92089813Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.923076519Z 66 PC: 9e999 | Move file pointer (See above)
2018-12-25T12:04:10.925162162Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.926641435Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.928762387Z 64 PC: 9e999 | Write file or device (See above)
2018-12-25T12:04:10.932008018Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.933373768Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.936048028Z 87 PC: 9e999 | Get or set file date and time (See above)
2018-12-25T12:04:10.937966651Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.939244533Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.948890195Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.950107887Z 61 PC: 9e999 | Open file (See above)
2018-12-25T12:04:10.956615226Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.958835143Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.962147746Z 66 PC: 9e999 | Move file pointer (See above)
2018-12-25T12:04:10.964531412Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.966737849Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.969815651Z 63 PC: 9e999 | Read file or device (See above)
2018-12-25T12:04:10.982167836Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.984381202Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.985877693Z 62 PC: 9e999 | Close file (See above)
2018-12-25T12:04:10.988045015Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.991619476Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.993088032Z 99 PC: 9e999 | Get DBCS lead byte table pointer (See above)
2018-12-25T12:04:10.994536191Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.996158606Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:10.998381631Z 56 PC: 9e999 | Get or set country info (See above)
2018-12-25T12:04:10.999990558Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.002010723Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.004282977Z 64 PC: 9e999 | Write file or device (See above)
2018-12-25T12:04:11.008764477Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.010287254Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.012531116Z 25 PC: 9e999 | Get default drive (See above)
2018-12-25T12:04:11.013868281Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.0156966Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.017868655Z 71 PC: 9e999 | Get current directory (See above)
2018-12-25T12:04:11.020944129Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.023334232Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.025294Z 64 PC: 9e999 | Write file or device (See above)
2018-12-25T12:04:11.028597339Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.030426685Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.032397638Z 2 PC: 9e999 | Character output (See above)
2018-12-25T12:04:11.035162495Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.03656297Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.038748366Z 93 PC: 9e999 | File sharing functions (See above)
2018-12-25T12:04:11.040727483Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.04208278Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.044771577Z 93 PC: 9e999 | File sharing functions (See above)
2018-12-25T12:04:11.046479101Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.047766291Z 98 PC: 9e999 | Get current PSP (See above)
2018-12-25T12:04:11.0490192Z 10 PC: 9e999 | Buffered keyboard input (See above)

{"DateBased":true,"Day":6,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":8293,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:04:10.432590633Z 78 PC: 12a9b | Find first file
2018-12-25T12:04:10.439583515Z 61 PC: 12ad3 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:04:10.446377585Z 87 PC: 12ad9 | Get or set file date and time
2018-12-25T12:04:10.448088907Z 63 PC: 12aec | Read file or device (Read 3 bytes on handle 5)
2018-12-25T12:04:10.455726074Z 66 PC: 12b0b | Move file pointer
2018-12-25T12:04:10.457559943Z 64 PC: 12b16 | Write file or device (Write 3 bytes on handle 5)
2018-12-25T12:04:10.461375643Z 66 PC: 12b1f | Move file pointer
2018-12-25T12:04:10.466260205Z 64 PC: 12b2a | Write file or device (Write 66 bytes on handle 5)
2018-12-25T12:04:10.471085402Z 64 PC: 12b43 | Write file or device (Write 307 bytes on handle 5)
2018-12-25T12:04:10.487674397Z 87 PC: 12b4a | Get or set file date and time
2018-12-25T12:04:10.493569448Z 62 PC: 12b4e | Close file
2018-12-25T12:04:10.500240572Z 79 PC: 12a9b | Find next file (See above)
2018-12-25T12:04:10.517066387Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:04:10.524293993Z 87 PC: 12ad9 | Get or set file date and time (See above)
2018-12-25T12:04:10.526601149Z 63 PC: 12aec | Read file or device (See above)
2018-12-25T12:04:10.54129716Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:04:10.542807546Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:04:10.54646826Z 66 PC: 12b1f | Move file pointer (See above)
2018-12-25T12:04:10.548716314Z 64 PC: 12b2a | Write file or device (See above)
2018-12-25T12:04:10.55247888Z 64 PC: 12b43 | Write file or device (See above)
2018-12-25T12:04:10.55676609Z 87 PC: 12b4a | Get or set file date and time (See above)
2018-12-25T12:04:10.558378476Z 62 PC: 12b4e | Close file (See above)
2018-12-25T12:04:10.565748788Z 79 PC: 12a9b | Find next file (See above)
2018-12-25T12:04:10.575715722Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:04:10.582277205Z 87 PC: 12ad9 | Get or set file date and time (See above)
2018-12-25T12:04:10.584094895Z 63 PC: 12aec | Read file or device (See above)
2018-12-25T12:04:10.601066953Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:04:10.602808151Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:04:10.605748374Z 66 PC: 12b1f | Move file pointer (See above)
2018-12-25T12:04:10.608425751Z 64 PC: 12b2a | Write file or device (See above)
2018-12-25T12:04:10.612722012Z 64 PC: 12b43 | Write file or device (See above)
2018-12-25T12:04:10.615663393Z 87 PC: 12b4a | Get or set file date and time (See above)
2018-12-25T12:04:10.618464868Z 62 PC: 12b4e | Close file (See above)
2018-12-25T12:04:10.823181894Z 79 PC: 12a9b | Find next file (See above)
2018-12-25T12:04:10.828035908Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:04:10.836353917Z 87 PC: 12ad9 | Get or set file date and time (See above)
2018-12-25T12:04:10.839087469Z 63 PC: 12aec | Read file or device (See above)
2018-12-25T12:04:10.846510029Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:04:10.848289688Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:04:10.851496702Z 66 PC: 12b1f | Move file pointer (See above)
2018-12-25T12:04:10.852910342Z 64 PC: 12b2a | Write file or device (See above)
2018-12-25T12:04:10.8558921Z 64 PC: 12b43 | Write file or device (See above)
2018-12-25T12:04:10.859140411Z 87 PC: 12b4a | Get or set file date and time (See above)
2018-12-25T12:04:10.86050786Z 62 PC: 12b4e | Close file (See above)
2018-12-25T12:04:10.919267304Z 79 PC: 12a9b | Find next file (See above)
2018-12-25T12:04:10.923067859Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:04:10.931810642Z 87 PC: 12ad9 | Get or set file date and time (See above)
2018-12-25T12:04:10.933597486Z 63 PC: 12aec | Read file or device (See above)
2018-12-25T12:04:10.941310691Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:04:10.943057324Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:04:10.946079605Z 66 PC: 12b1f | Move file pointer (See above)
2018-12-25T12:04:10.948964623Z 64 PC: 12b2a | Write file or device (See above)
2018-12-25T12:04:10.952133292Z 64 PC: 12b43 | Write file or device (See above)
2018-12-25T12:04:10.955138867Z 87 PC: 12b4a | Get or set file date and time (See above)
2018-12-25T12:04:10.958011761Z 62 PC: 12b4e | Close file (See above)
2018-12-25T12:04:10.965407261Z 79 PC: 12a9b | Find next file (See above)
2018-12-25T12:04:10.969032349Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:04:10.97663948Z 87 PC: 12ad9 | Get or set file date and time (See above)
2018-12-25T12:04:10.978793297Z 63 PC: 12aec | Read file or device (See above)
2018-12-25T12:04:10.985438357Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:04:10.988183979Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:04:10.990880432Z 66 PC: 12b1f | Move file pointer (See above)
2018-12-25T12:04:10.992506958Z 64 PC: 12b2a | Write file or device (See above)
2018-12-25T12:04:11.002097192Z 64 PC: 12b43 | Write file or device (See above)
2018-12-25T12:04:11.005417077Z 87 PC: 12b4a | Get or set file date and time (See above)
2018-12-25T12:04:11.007193025Z 62 PC: 12b4e | Close file (See above)
2018-12-25T12:04:11.01626377Z 79 PC: 12a9b | Find next file (See above)
2018-12-25T12:04:11.019422602Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:04:11.025772329Z 87 PC: 12ad9 | Get or set file date and time (See above)
2018-12-25T12:04:11.027366158Z 63 PC: 12aec | Read file or device (See above)
2018-12-25T12:04:11.034093225Z 66 PC: 12b0b | Move file pointer (See above)
2018-12-25T12:04:11.035499575Z 64 PC: 12b16 | Write file or device (See above)
2018-12-25T12:04:11.038476219Z 66 PC: 12b1f | Move file pointer (See above)
2018-12-25T12:04:11.040584934Z 64 PC: 12b2a | Write file or device (See above)
2018-12-25T12:04:11.043463421Z 64 PC: 12b43 | Write file or device (See above)
2018-12-25T12:04:11.046357096Z 87 PC: 12b4a | Get or set file date and time (See above)
2018-12-25T12:04:11.048517138Z 62 PC: 12b4e | Close file (See above)
2018-12-25T12:04:11.05686033Z 79 PC: 12a9b | Find next file (See above)
2018-12-25T12:04:11.059617718Z 61 PC: 12ad3 | Open file (See above)
2018-12-25T12:04:11.067171488Z 87 PC: 12ad9 | Get or set file date and time (See above)
2018-12-25T12:04:11.068598387Z 63 PC: 12aec | Read file or device (See above)
2018-12-25T12:04:11.071424183Z 87 PC: 12b4a | Get or set file date and time (See above)
2018-12-25T12:04:11.073811962Z 62 PC: 12b4e | Close file (See above)
2018-12-25T12:04:11.080828052Z 79 PC: 12a9b | Find next file (See above)
2018-12-25T12:04:11.083279231Z 42 PC: 12aa1 | Get date 0x12aa1: cmp al, 2
0x12aa3: je 0x12ab0
0x12aa5: cmp al, 4
0x12aa7: je 0x12ab0
0x12aa9: cmp al, 6
0x12aab: je 0x12ab0
0x12aad: jmp 0x12ac7
0x12ab0: mov ah, 9
0x12ab2: lea dx, word ptr [bp + 0x213]
0x12ab6: int 0x21
0x12ab8: mov ah, 0x2b
0x12aba: mov cx, 0x7d1
0x12abd: int 0x21
0x12abf: mov ah, 0x39
0x12ac1: lea dx, word ptr [bp + 0x26d]
0x12ac5: int 0x21
0x12ac7: push 0x100
0x12aca: ret
0x12acb: mov ax, 0x3d02
0x12ace: mov dx, 0x9e