Sample viewer

vx.netlux.org/Virus.DOS.HLLP.Eek.22922

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:49:55.119741252Z 48 PC: 12a4c | Get DOS version
2018-12-17T22:49:55.123144535Z 53 PC: 12be0 | Get interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:49:55.124435687Z 53 PC: 12bed | Get interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:49:55.125910704Z 53 PC: 12bfa | Get interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:49:55.128174261Z 53 PC: 12c07 | Get interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:49:55.129643059Z 37 PC: 12c1b | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:49:55.131074526Z 74 PC: 12af7 | Reallocate memory
2018-12-17T22:49:55.133343126Z 88 PC: 12b31 | case 0xGet or set allocation strateg:
2018-12-17T22:49:55.134491572Z 103 PC: 12b3b | Set handle count
2018-12-17T22:49:55.136150042Z 72 PC: 12b44 | Allocate memory
2018-12-17T22:49:55.13841537Z 73 PC: 12b51 | Release memory
2018-12-17T22:49:55.139774959Z 88 PC: 12b5b | case 0xGet or set allocation strateg:
2018-12-17T22:49:55.141045564Z 68 PC: 13567 | I/O control for devices (Set for = 'pointer assignment ')
2018-12-17T22:49:55.144083088Z 68 PC: 13567 | I/O control for devices (Set for = '')
2018-12-17T22:49:55.14648903Z 61 PC: 14670 | Open file (Filename = 'A:\TEST.EXE')
2018-12-17T22:49:55.153711829Z 25 PC: 13383 | Get default drive
2018-12-17T22:49:55.155329856Z 71 PC: 13476 | Get current directory
2018-12-17T22:49:55.159339713Z 66 PC: 1362d | Move file pointer
2018-12-17T22:49:55.160822402Z 47 PC: 13fe0 | Get disk transfer address
2018-12-17T22:49:55.163443995Z 26 PC: 13fe9 | Set disk transfer address
2018-12-17T22:49:55.165408857Z 78 PC: 13ff3 | Find first file
2018-12-17T22:49:55.171383025Z 26 PC: 13ffc | Set disk transfer address
2018-12-17T22:49:55.174439896Z 60 PC: 13ebe | Create or truncate file
2018-12-17T22:49:55.195668528Z 66 PC: 1362d | Move file pointer
2018-12-17T22:49:55.197175339Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.205786289Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 6)
2018-12-17T22:49:55.213796403Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.220808682Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 6)
2018-12-17T22:49:55.228669092Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.238620308Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 6)
2018-12-17T22:49:55.246307259Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.253946603Z 64 PC: 14eaf | Write file or device (Write 464 bytes on handle 6)
2018-12-17T22:49:55.258201514Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.26029528Z 66 PC: 1362d | Move file pointer
2018-12-17T22:49:55.262838292Z 62 PC: 13e85 | Close file
2018-12-17T22:49:55.271376851Z 67 PC: 13e6c | Get or set file attributes
2018-12-17T22:49:55.278391139Z 41 PC: 15774 | Parse filename
2018-12-17T22:49:55.280388258Z 41 PC: 15793 | Parse filename
2018-12-17T22:49:55.282107375Z 75 PC: 157d3 | Execute program
2018-12-17T22:49:55.296458021Z 76 PC: 259ba | Terminate with return code (Return code = '0')
2018-12-17T22:49:55.30033746Z 77 PC: 157f7 | Get program return code
2018-12-17T22:49:55.307848303Z 65 PC: 1368e | Delete file (Filename = 'Eek!.exe')
2018-12-17T22:49:55.320516981Z 47 PC: 13fe0 | Get disk transfer address
2018-12-17T22:49:55.321535716Z 26 PC: 13fe9 | Set disk transfer address
2018-12-17T22:49:55.323148485Z 78 PC: 13ff3 | Find first file
2018-12-17T22:49:55.329098193Z 26 PC: 13ffc | Set disk transfer address
2018-12-17T22:49:55.331114849Z 47 PC: 13fe0 | Get disk transfer address
2018-12-17T22:49:55.332830054Z 26 PC: 13fe9 | Set disk transfer address
2018-12-17T22:49:55.333865524Z 78 PC: 13ff3 | Find first file
2018-12-17T22:49:55.343046549Z 26 PC: 13ffc | Set disk transfer address
2018-12-17T22:49:55.344721569Z 59 PC: 1325e | Change current directory
2018-12-17T22:49:55.351006171Z 14 PC: 1339d | Set default drive (Drive = 'C')
2018-12-17T22:49:55.352759196Z 61 PC: 14670 | Open file (Filename = '')
2018-12-17T22:49:55.361217794Z 47 PC: 13fe0 | Get disk transfer address
2018-12-17T22:49:55.36289662Z 26 PC: 13fe9 | Set disk transfer address
2018-12-17T22:49:55.364528756Z 78 PC: 13ff3 | Find first file
2018-12-17T22:49:55.371427755Z 26 PC: 13ffc | Set disk transfer address
2018-12-17T22:49:55.372569217Z 60 PC: 13ebe | Create or truncate file
2018-12-17T22:49:55.719107013Z 66 PC: 1362d | Move file pointer
2018-12-17T22:49:55.721372Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.728707531Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.737693327Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.745643002Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.752191123Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.75908921Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.767462282Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.774196919Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.780877672Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.788616938Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.796228929Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.803087877Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.810480656Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.817826973Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.824315919Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.832257412Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.838910559Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.845687643Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.853651126Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.861720465Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.868153058Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.874971474Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.88238498Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.88909832Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.895471265Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.903381992Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.910161872Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.916678917Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.923856134Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.930472254Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.936533512Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.943523097Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.950206535Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.956742598Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.968520755Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.975873286Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.983513051Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:55.991172329Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:55.997658681Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.004492552Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.011816062Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.018569567Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.025261242Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.032713026Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.039250386Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.046532792Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.055261641Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.062045465Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.068849838Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.076794748Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.083484507Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.090309871Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.097364744Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.105129088Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.112190146Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.120107364Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.127211227Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.134199405Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.142175971Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.149586259Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.156158424Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.164006952Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.171020757Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.178515782Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.185221521Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.193178257Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.205569248Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.212252076Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.225704008Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.232626711Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.251430978Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.259228415Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.265006695Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.271698164Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.278600116Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.285440425Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.291981217Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.29938764Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.305622532Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.313044162Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.320118323Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.335484987Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.342956408Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.350412642Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.357043737Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.364633935Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.370766546Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.377256577Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.382787339Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.389589937Z 64 PC: 14eaf | Write file or device (Write 394 bytes on handle 7)
2018-12-17T22:49:56.393125162Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.40033136Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.406051014Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.411972434Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.416637948Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.422897001Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.429023006Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.438606566Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.459296185Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.466842085Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.474196924Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.481042487Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.487880529Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.49581257Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.501918813Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.508637889Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.515974861Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.523452734Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.529614836Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.537518023Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.543592237Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.550419903Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.558403802Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.565173947Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.571247966Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.579875505Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.586032966Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.592797183Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.599559228Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.606272325Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.612167088Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.620442597Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.626499877Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.634721669Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.641807833Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.649531828Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.655605479Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.662715703Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.668609931Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.67528221Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.682249864Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.690298177Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.696626597Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.704168847Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.710218317Z 64 PC: 14eaf | Write file or device (Write 456 bytes on handle 7)
2018-12-17T22:49:56.717117709Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:56.720062016Z 87 PC: 134ca | Get or set file date and time
2018-12-17T22:49:56.722165434Z 62 PC: 13e85 | Close file
2018-12-17T22:49:56.724228592Z 87 PC: 136b1 | Get or set file date and time
2018-12-17T22:49:56.726935469Z 62 PC: 13e85 | Close file
2018-12-17T22:49:56.734014095Z 67 PC: 13e6c | Get or set file attributes
2018-12-17T22:49:56.739961193Z 67 PC: 13e6c | Get or set file attributes
2018-12-17T22:49:56.750965303Z 65 PC: 1368e | Delete file (Filename = '')
2018-12-17T22:49:56.765900037Z 86 PC: 14a51 | Rename file
2018-12-17T22:49:56.778497714Z 65 PC: 1368e | Delete file (Filename = 'C:\D.exe')
2018-12-17T22:49:56.784590471Z 47 PC: 14017 | Get disk transfer address
2018-12-17T22:49:56.78595374Z 26 PC: 14020 | Set disk transfer address
2018-12-17T22:49:56.787441546Z 79 PC: 14024 | Find next file
2018-12-17T22:49:56.791343477Z 26 PC: 1402d | Set disk transfer address
2018-12-17T22:49:56.793154317Z 59 PC: 1325e | Change current directory
2018-12-17T22:49:56.799446919Z 14 PC: 1339d | Set default drive (Drive = 'C')
2018-12-17T22:49:56.801370213Z 61 PC: 14670 | Open file (Filename = '')
2018-12-17T22:49:56.808727356Z 47 PC: 13fe0 | Get disk transfer address
2018-12-17T22:49:56.810845475Z 26 PC: 13fe9 | Set disk transfer address
2018-12-17T22:49:56.81233616Z 78 PC: 13ff3 | Find first file
2018-12-17T22:49:56.81863971Z 26 PC: 13ffc | Set disk transfer address
2018-12-17T22:49:56.820864629Z 60 PC: 13ebe | Create or truncate file
2018-12-17T22:49:56.83118539Z 66 PC: 1362d | Move file pointer
2018-12-17T22:49:56.832877963Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.840316605Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.847732246Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.854477883Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.861543221Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.868567168Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.875375208Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.883344054Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.890548098Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.897316571Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.904931316Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.912052454Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.918493495Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.925993441Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.932709424Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.939504586Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.947301211Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.955367119Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.962055669Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.96942065Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.975804493Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.982346082Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:56.989519372Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:56.996156431Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.002710497Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.01130574Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.01876258Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.02613171Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.03370738Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.041590115Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.04850389Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.056560631Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.063937737Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.071224176Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.079942234Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.087342988Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.093897461Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.101880552Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.108817811Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.115681008Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.122982878Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.130230266Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.137882101Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.146073236Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.157114318Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.163864239Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.171018225Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.177677782Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.183679566Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.188598332Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.193064668Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.197379423Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.201973688Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.206722013Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.211064357Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.215876641Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.220199365Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.224576167Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.229180624Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.233546664Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.238036153Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.242495446Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.246663784Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.251695029Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.255894604Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.260617629Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.266831783Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.272404315Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.477911498Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.485607174Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.611094922Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.617048236Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.621641979Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.62588116Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.63266705Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.639598306Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.645777821Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.652761583Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.659439601Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.666015747Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.672713343Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.679031738Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.685386736Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.691221189Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.699337054Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.706869393Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.712913973Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.728988472Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.736628904Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.744034931Z 64 PC: 14eaf | Write file or device (Write 394 bytes on handle 7)
2018-12-17T22:49:57.748508856Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 5)
2018-12-17T22:49:57.756645903Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.762921165Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.769985961Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.77770209Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.785011323Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.790896681Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.798865899Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.804941568Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.813074764Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.819672987Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.826649461Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.833565479Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.840233676Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.846386269Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.855248547Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.861510778Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.869031798Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.876144059Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.883283799Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.88912501Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.896993435Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.902688008Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.909044025Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.916471393Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.924542407Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.93058576Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.937224072Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.943016891Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.950400362Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.956376545Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.965998644Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.972800794Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.980920372Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:57.987206174Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:57.994756121Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:58.00098583Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:58.008366976Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:58.015585461Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:58.02225218Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:58.029119772Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:58.037252971Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:58.043285058Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:58.052251199Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:58.05820329Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:58.064720497Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:58.071524494Z 64 PC: 14eaf | Write file or device (Write 512 bytes on handle 7)
2018-12-17T22:49:58.082706379Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:58.088466763Z 64 PC: 14eaf | Write file or device (Write 465 bytes on handle 7)
2018-12-17T22:49:58.096549019Z 63 PC: 1365e | Read file or device (Read 512 bytes on handle 6)
2018-12-17T22:49:58.098418758Z 87 PC: 134ca | Get or set file date and time
2018-12-17T22:49:58.099802573Z 62 PC: 13e85 | Close file
2018-12-17T22:49:58.102506584Z 87 PC: 136b1 | Get or set file date and time
2018-12-17T22:49:58.104025724Z 62 PC: 13e85 | Close file
2018-12-17T22:49:58.110871927Z 67 PC: 13e6c | Get or set file attributes
2018-12-17T22:49:58.11754717Z 67 PC: 13e6c | Get or set file attributes
2018-12-17T22:49:58.12758541Z 65 PC: 1368e | Delete file (Filename = '')
2018-12-17T22:49:58.138569869Z 86 PC: 14a51 | Rename file
2018-12-17T22:49:58.151954957Z 65 PC: 1368e | Delete file (Filename = 'C:\D.exe')
2018-12-17T22:49:58.157911385Z 62 PC: 13e85 | Close file
2018-12-17T22:49:58.161003207Z 14 PC: 1339d | Set default drive (Drive = 'A')
2018-12-17T22:49:58.163027462Z 59 PC: 1325e | Change current directory
2018-12-17T22:49:58.16757831Z 37 PC: 12c27 | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:49:58.169840262Z 37 PC: 12c32 | Set interrupt vector (Interrupt = '4' AKA 'Auxiliary output')
2018-12-17T22:49:58.171634099Z 37 PC: 12c3d | Set interrupt vector (Interrupt = '5' AKA 'Printer output')
2018-12-17T22:49:58.173030017Z 37 PC: 12c48 | Set interrupt vector (Interrupt = '6' AKA 'Direct console I/O')
2018-12-17T22:49:58.175273851Z 76 PC: 12bcb | Terminate with return code (Return code = '0')