Sample viewer

vx.netlux.org/Virus.DOS.Szamalk.1861

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:44:57.493370037Z 26 PC: 154a3 | Set disk transfer address
2018-12-17T22:44:57.496661794Z 42 PC: 154ad | Get date 0x154ad: cmp cx, 0x7c8
0x154b1: jb 0x15526
0x154b3: cmp dh, 9
0x154b6: jb 0x15526
0x154b8: cmp dl, 1
0x154bb: jne 0x15526
0x154bd: call 0x15671
0x154c0: mov al, 9
0x154c2: call 0x156ac
0x154c5: mov al, 0x24
0x154c7: call 0x156ac
0x154ca: mov al, 2
0x154cc: push ax
0x154cd: mov cx, 0x80
0x154d0: mov dx, 0
0x154d3: push ds
0x154d4: mov ds, dx
0x154d6: mov bx, 0
0x154d9: int 0x26
0x154db: popf
2018-12-17T22:44:57.500443858Z 55 PC: 15824 | Get or set switch character
2018-12-17T22:44:57.502225943Z 78 PC: 15544 | Find first file
2018-12-17T22:44:57.51763301Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:57.533577396Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:57.560364847Z 61 PC: 156c4 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:44:57.568356226Z 87 PC: 157e4 | Get or set file date and time
2018-12-17T22:44:57.571110441Z 63 PC: 156d0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:57.589742279Z 62 PC: 156e2 | Close file
2018-12-17T22:44:57.591946848Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:57.626358037Z 79 PC: 155af | Find next file
2018-12-17T22:44:57.629676854Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:57.646600198Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:57.659744397Z 61 PC: 156c4 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:44:57.674968133Z 87 PC: 157e4 | Get or set file date and time
2018-12-17T22:44:57.677162728Z 63 PC: 156d0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:57.698991343Z 62 PC: 156e2 | Close file
2018-12-17T22:44:57.701251351Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:57.724039915Z 79 PC: 155af | Find next file
2018-12-17T22:44:57.727484871Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:57.734199119Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:57.764699707Z 61 PC: 156c4 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:44:57.77697692Z 87 PC: 157e4 | Get or set file date and time
2018-12-17T22:44:57.780377784Z 63 PC: 156d0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:57.800854782Z 62 PC: 156e2 | Close file
2018-12-17T22:44:57.802685158Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:57.888906046Z 79 PC: 155af | Find next file
2018-12-17T22:44:57.892645158Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:57.899692931Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:57.998465288Z 61 PC: 156c4 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:44:58.007195418Z 87 PC: 157e4 | Get or set file date and time
2018-12-17T22:44:58.009472303Z 63 PC: 156d0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:58.022656401Z 62 PC: 156e2 | Close file
2018-12-17T22:44:58.024719549Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.074337979Z 79 PC: 155af | Find next file
2018-12-17T22:44:58.078244221Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.08528895Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.16102009Z 61 PC: 156c4 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:44:58.170712027Z 87 PC: 157e4 | Get or set file date and time
2018-12-17T22:44:58.183358206Z 63 PC: 156d0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:58.20650894Z 62 PC: 156e2 | Close file
2018-12-17T22:44:58.208516059Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.295708113Z 79 PC: 155af | Find next file
2018-12-17T22:44:58.299392702Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.307107881Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.355170805Z 61 PC: 156c4 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:44:58.363569378Z 87 PC: 157e4 | Get or set file date and time
2018-12-17T22:44:58.365791534Z 63 PC: 156d0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:58.379625531Z 62 PC: 156e2 | Close file
2018-12-17T22:44:58.385167224Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.399570002Z 79 PC: 155af | Find next file
2018-12-17T22:44:58.404057475Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.412252526Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.423611724Z 61 PC: 156c4 | Open file (Filename = 'PAH.COM')
2018-12-17T22:44:58.432109922Z 87 PC: 157e4 | Get or set file date and time
2018-12-17T22:44:58.434598442Z 63 PC: 156d0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:58.442310129Z 62 PC: 156e2 | Close file
2018-12-17T22:44:58.444692089Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.458173406Z 79 PC: 155af | Find next file
2018-12-17T22:44:58.461495547Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.468480597Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.502526797Z 61 PC: 156c4 | Open file (Filename = 'TEST.COM')
2018-12-17T22:44:58.510068378Z 87 PC: 157e4 | Get or set file date and time
2018-12-17T22:44:58.51994823Z 63 PC: 156d0 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:44:58.52482457Z 66 PC: 157da | Move file pointer
2018-12-17T22:44:58.526505611Z 63 PC: 156d0 | Read file or device (Read 10 bytes on handle 5)
2018-12-17T22:44:58.541085135Z 62 PC: 156e2 | Close file
2018-12-17T22:44:58.544283383Z 67 PC: 1581c | Get or set file attributes
2018-12-17T22:44:58.556098115Z 79 PC: 155af | Find next file
2018-12-17T22:44:58.560488359Z 26 PC: 156bb | Set disk transfer address
2018-12-17T22:44:58.562430178Z 9 PC: 1514e | Display string (String= 'Hello - Copyright S & S International, 1990 ')

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":8391,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:04:31.765408708Z 26 PC: 154a3 | Set disk transfer address
2018-12-25T12:04:31.767199946Z 42 PC: 154ad | Get date 0x154ad: cmp cx, 0x7c8
0x154b1: jb 0x15526
0x154b3: cmp dh, 9
0x154b6: jb 0x15526
0x154b8: cmp dl, 1
0x154bb: jne 0x15526
0x154bd: call 0x15671
0x154c0: mov al, 9
0x154c2: call 0x156ac
0x154c5: mov al, 0x24
0x154c7: call 0x156ac
0x154ca: mov al, 2
0x154cc: push ax
0x154cd: mov cx, 0x80
0x154d0: mov dx, 0
0x154d3: push ds
0x154d4: mov ds, dx
0x154d6: mov bx, 0
0x154d9: int 0x26
0x154db: popf
2018-12-25T12:04:31.768746978Z 78 PC: 15544 | Find first file
2018-12-25T12:04:31.772534465Z 67 PC: 1581c | Get or set file attributes
2018-12-25T12:04:31.778820136Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.516536554Z 61 PC: 156c4 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:04:32.523444976Z 87 PC: 157e4 | Get or set file date and time
2018-12-25T12:04:32.525367168Z 63 PC: 156d0 | Read file or device (Read 3 bytes on handle 5)
2018-12-25T12:04:32.53176722Z 62 PC: 156e2 | Close file
2018-12-25T12:04:32.533847207Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.547759786Z 79 PC: 155af | Find next file
2018-12-25T12:04:32.551554259Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.557318223Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.567433015Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.573777959Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.575045216Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.584642826Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.586565621Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.596517001Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.599547301Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.606191169Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.615766411Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.622801779Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.624588487Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.630725711Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.632301775Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.642302733Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.644328088Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.649454328Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.658702903Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.662918384Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.663836092Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.668176522Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.669307966Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.677996922Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.681737998Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.687086769Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.69328618Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.698136914Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.69919825Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.703038517Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.704934224Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.710946542Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.713404411Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.719448729Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.728792383Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.743017581Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.744944861Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.751160943Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.752863226Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.76264365Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.7650912Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.770335799Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.780745383Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.787093849Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.788613133Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.795342044Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.796909671Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.809257618Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.812351538Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.817809274Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.82745856Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.834899168Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.836870047Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.843361529Z 66 PC: 157da | Move file pointer
2018-12-25T12:04:32.84544412Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.852184121Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.853772288Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.864545303Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.867873177Z 26 PC: 156bb | Set disk transfer address
2018-12-25T12:04:32.869232334Z 9 PC: 1514e | Display string (String= 'Hello - Copyright S & S International, 1990 ')

{"DateBased":true,"Day":1,"Month":1,"Year":1992,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":8391,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:04:31.880717878Z 26 PC: 154a3 | Set disk transfer address
2018-12-25T12:04:31.882943513Z 42 PC: 154ad | Get date 0x154ad: cmp cx, 0x7c8
0x154b1: jb 0x15526
0x154b3: cmp dh, 9
0x154b6: jb 0x15526
0x154b8: cmp dl, 1
0x154bb: jne 0x15526
0x154bd: call 0x15671
0x154c0: mov al, 9
0x154c2: call 0x156ac
0x154c5: mov al, 0x24
0x154c7: call 0x156ac
0x154ca: mov al, 2
0x154cc: push ax
0x154cd: mov cx, 0x80
0x154d0: mov dx, 0
0x154d3: push ds
0x154d4: mov ds, dx
0x154d6: mov bx, 0
0x154d9: int 0x26
0x154db: popf
2018-12-25T12:04:31.885456112Z 78 PC: 15544 | Find first file
2018-12-25T12:04:31.891577805Z 67 PC: 1581c | Get or set file attributes
2018-12-25T12:04:31.897586676Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:31.915483205Z 61 PC: 156c4 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:04:31.921234351Z 87 PC: 157e4 | Get or set file date and time
2018-12-25T12:04:31.923039333Z 63 PC: 156d0 | Read file or device (Read 3 bytes on handle 5)
2018-12-25T12:04:31.928652444Z 62 PC: 156e2 | Close file
2018-12-25T12:04:31.930173093Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:31.938786483Z 79 PC: 155af | Find next file
2018-12-25T12:04:31.94117142Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:31.945607459Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:31.953528251Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:31.962514457Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:31.963743863Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:31.968391073Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:31.970499733Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:31.977705823Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:31.979726851Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:31.984329531Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:31.991316114Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:31.996011112Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:31.997762832Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.002350903Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.003731733Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.011425448Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.013483095Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.021001684Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.030429171Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.038924701Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.040141865Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.045265927Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.046716573Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.053894733Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.05645304Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.060618226Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.067623266Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.072869625Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.074046133Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.078469318Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.079915716Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.089073704Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.090964282Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.098813309Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.106209002Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.111011274Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.112199348Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.117336117Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.11872387Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.125786576Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.128257023Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.132503685Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.141377231Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.149970336Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.151218893Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.155883842Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.157745907Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.167085953Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.169109311Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.173786739Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.180869492Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.185624442Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.187268341Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.191957369Z 66 PC: 157da | Move file pointer
2018-12-25T12:04:32.19305556Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.198473075Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.199912594Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.207047759Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.209710935Z 26 PC: 156bb | Set disk transfer address
2018-12-25T12:04:32.210575668Z 9 PC: 1514e | Display string (String= 'Hello - Copyright S & S International, 1990 ')

{"DateBased":true,"Day":1,"Month":9,"Year":1992,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":8391,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:04:31.860514506Z 26 PC: 154a3 | Set disk transfer address
2018-12-25T12:04:31.862256487Z 42 PC: 154ad | Get date 0x154ad: cmp cx, 0x7c8
0x154b1: jb 0x15526
0x154b3: cmp dh, 9
0x154b6: jb 0x15526
0x154b8: cmp dl, 1
0x154bb: jne 0x15526
0x154bd: call 0x15671
0x154c0: mov al, 9
0x154c2: call 0x156ac
0x154c5: mov al, 0x24
0x154c7: call 0x156ac
0x154ca: mov al, 2
0x154cc: push ax
0x154cd: mov cx, 0x80
0x154d0: mov dx, 0
0x154d3: push ds
0x154d4: mov ds, dx
0x154d6: mov bx, 0
0x154d9: int 0x26
0x154db: popf
2018-12-25T12:04:31.864208927Z 78 PC: 1567d | Find first file
2018-12-25T12:04:31.869746793Z 37 PC: 156b3 | Set interrupt vector (Interrupt = '9' AKA 'Display string')
2018-12-25T12:04:31.871077005Z 37 PC: 156b3 | Set interrupt vector (See above)
2018-12-25T12:04:31.880218107Z 9 PC: 15511 | Display string (String= '===== SZ�MALK v�rus V1.0E Copyright (C) SZ�MALK 1992. (R) =====')
2018-12-25T12:04:31.883873665Z 9 PC: 15511 | Display string (See above)
2018-12-25T12:04:31.887757282Z 9 PC: 15511 | Display string (See above)
2018-12-25T12:04:31.891278839Z 9 PC: 15511 | Display string (See above)
2018-12-25T12:04:31.894767276Z 9 PC: 15511 | Display string (See above)
2018-12-25T12:04:31.898716788Z 9 PC: 15511 | Display string (See above)
2018-12-25T12:04:31.902266546Z 9 PC: 15511 | Display string (See above)
2018-12-25T12:04:31.904492846Z 9 PC: 15511 | Display string (See above)
2018-12-25T12:04:31.908473379Z 9 PC: 15511 | Display string (See above)
2018-12-25T12:04:31.911420374Z 9 PC: 15511 | Display string (See above)
2018-12-25T12:04:31.915993334Z 9 PC: 15511 | Display string (See above)
2018-12-25T12:04:31.918859449Z 9 PC: 15511 | Display string (See above)

{"DateBased":true,"Day":2,"Month":9,"Year":1992,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":8391,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:04:32.257578594Z 26 PC: 154a3 | Set disk transfer address
2018-12-25T12:04:32.25967083Z 42 PC: 154ad | Get date 0x154ad: cmp cx, 0x7c8
0x154b1: jb 0x15526
0x154b3: cmp dh, 9
0x154b6: jb 0x15526
0x154b8: cmp dl, 1
0x154bb: jne 0x15526
0x154bd: call 0x15671
0x154c0: mov al, 9
0x154c2: call 0x156ac
0x154c5: mov al, 0x24
0x154c7: call 0x156ac
0x154ca: mov al, 2
0x154cc: push ax
0x154cd: mov cx, 0x80
0x154d0: mov dx, 0
0x154d3: push ds
0x154d4: mov ds, dx
0x154d6: mov bx, 0
0x154d9: int 0x26
0x154db: popf
2018-12-25T12:04:32.262120251Z 55 PC: 15824 | Get or set switch character
2018-12-25T12:04:32.263578814Z 78 PC: 15544 | Find first file
2018-12-25T12:04:32.270075173Z 67 PC: 1581c | Get or set file attributes
2018-12-25T12:04:32.276231013Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.518616121Z 61 PC: 156c4 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:04:32.526960883Z 87 PC: 157e4 | Get or set file date and time
2018-12-25T12:04:32.528484879Z 63 PC: 156d0 | Read file or device (Read 3 bytes on handle 5)
2018-12-25T12:04:32.535416049Z 62 PC: 156e2 | Close file
2018-12-25T12:04:32.539015406Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.549157019Z 79 PC: 155af | Find next file
2018-12-25T12:04:32.552230768Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.563738765Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.571166127Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.577503515Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.586370063Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.594888385Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.596667872Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.607792008Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.610587945Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.616238469Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.626434594Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.64162377Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.643018446Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.649975194Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.652021356Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.662146067Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.664899663Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.670441307Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.679829622Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.68631707Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.687955485Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.694312991Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.69624868Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.709989344Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.712882274Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.718844405Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.728595863Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.735016023Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.736426447Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.743637646Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.745508306Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.751774015Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.753738709Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.759945729Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.767620602Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.771995346Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.772880132Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.776628286Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.778376866Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.785265704Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.78774409Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.793267412Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.808352549Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.815719861Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.817344262Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.821449936Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.822544286Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.830869561Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.832694811Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.839386646Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.845693122Z 61 PC: 156c4 | Open file (See above)
2018-12-25T12:04:32.852130604Z 87 PC: 157e4 | Get or set file date and time (See above)
2018-12-25T12:04:32.853346365Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.861393836Z 66 PC: 157da | Move file pointer
2018-12-25T12:04:32.863103329Z 63 PC: 156d0 | Read file or device (See above)
2018-12-25T12:04:32.869767072Z 62 PC: 156e2 | Close file (See above)
2018-12-25T12:04:32.872075911Z 67 PC: 1581c | Get or set file attributes (See above)
2018-12-25T12:04:32.882388421Z 79 PC: 155af | Find next file (See above)
2018-12-25T12:04:32.885578763Z 26 PC: 156bb | Set disk transfer address
2018-12-25T12:04:32.887617115Z 9 PC: 1514e | Display string (String= 'Hello - Copyright S & S International, 1990 ')