.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-17T22:52:54.124706067Z | 14 | PC: 12a46 | Set default drive (Drive = '') |
2018-12-17T22:52:54.126868449Z | 59 | PC: 12a4d | Change current directory |
2018-12-17T22:52:54.132557385Z | 59 | PC: 12a54 | Change current directory |
2018-12-17T22:52:54.13932597Z | 78 | PC: 12a5b | Find first file |
2018-12-17T22:52:54.14611351Z | 61 | PC: 12a63 | Open file (Filename = 'TEST.EXE') |
2018-12-17T22:52:54.154744663Z | 64 | PC: 12a6e | Write file or device (Write 290 bytes on handle 5) |
2018-12-17T22:52:54.158367619Z | 62 | PC: 12a72 | Close file |
2018-12-17T22:52:54.17463691Z | 79 | PC: 12a76 | Find next file |
2018-12-17T22:52:54.179072352Z | 78 | PC: 12a7f | Find first file |
2018-12-17T22:52:54.205477883Z | 61 | PC: 12a87 | Open file (Filename = 'TEST.EXE') |
2018-12-17T22:52:54.21328562Z | 64 | PC: 12a92 | Write file or device (Write 290 bytes on handle 5) |
2018-12-17T22:52:54.221621639Z | 62 | PC: 12a96 | Close file |
2018-12-17T22:52:54.230434223Z | 79 | PC: 12a9a | Find next file |
2018-12-17T22:52:54.233195861Z | 59 | PC: 12aa3 | Change current directory |
2018-12-17T22:52:54.237760906Z | 78 | PC: 12aaa | Find first file |
2018-12-17T22:52:54.244750977Z | 61 | PC: 12ab2 | Open file (Filename = 'TEST.EXE') |
2018-12-17T22:52:54.257326259Z | 64 | PC: 12abd | Write file or device (Write 290 bytes on handle 5) |
2018-12-17T22:52:54.265231098Z | 62 | PC: 12ac1 | Close file |
2018-12-17T22:52:54.27494767Z | 79 | PC: 12ac5 | Find next file |
2018-12-17T22:52:54.278669682Z | 78 | PC: 12ace | Find first file |
2018-12-17T22:52:54.285502237Z | 61 | PC: 12ad6 | Open file (Filename = 'TEST.EXE') |
2018-12-17T22:52:54.295258303Z | 64 | PC: 12ae1 | Write file or device (Write 290 bytes on handle 5) |
2018-12-17T22:52:54.298491046Z | 62 | PC: 12ae5 | Close file |
2018-12-17T22:52:54.307391735Z | 79 | PC: 12ae9 | Find next file |
2018-12-17T22:52:54.311479324Z | 9 | PC: 12af2 | Display string (String= ' Dateifehler! Gr��e vom SYSTEM-KiLLeR (����k�R) Created by tSA-Hacker /BE 83840- 1994 ') |