.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-17T22:53:14.626467656Z | 42 | PC: 12c88 | Get date 0x12c88: mov word ptr [0x857], dx 0x12c8c: cmp cx, 0x7ca 0x12c90: jb 0x12ca0 0x12c92: cmp dx, 0x312 0x12c96: jne 0x12ca0 0x12c98: mov byte ptr [0x92f], 1 0x12c9d: nop 0x12c9e: clc 0x12c9f: ret 0x12ca0: stc 0x12ca1: ret 0x12ca2: mov al, 0x21 0x12ca4: mov si, 0x963 0x12ca7: call 0x13257 0x12caa: mov es, cx 0x12cac: mov si, 0x2f2 0x12caf: mov di, si 0x12cb1: mov cx, 0x11 0x12cb4: call 0x132af 0x12cb7: ret |
2018-12-17T22:53:14.629689277Z | 61 | PC: 132c8 | Open file (Filename = 'C:\COMMAND.COM') |
2018-12-17T22:53:14.637258082Z | 66 | PC: 132dc | Move file pointer |
2018-12-17T22:53:14.639219065Z | 63 | PC: 132cd | Read file or device (Read 5 bytes on handle 5) |
2018-12-17T22:53:14.642873466Z | 62 | PC: 132d7 | Close file |
2018-12-17T22:53:14.646142039Z | 67 | PC: 13211 | Get or set file attributes |
2018-12-17T22:53:14.652475153Z | 67 | PC: 13221 | Get or set file attributes |
2018-12-17T22:53:14.985605825Z | 54 | PC: 13298 | Get free disk space |
2018-12-17T22:53:15.034915169Z | 61 | PC: 132c8 | Open file (Filename = 'C:\COMMAND.COM') |
2018-12-17T22:53:15.04526945Z | 63 | PC: 132cd | Read file or device (Read 15 bytes on handle 5) |
2018-12-17T22:53:15.051444315Z | 87 | PC: 13227 | Get or set file date and time |
2018-12-17T22:53:15.053774248Z | 66 | PC: 132dc | Move file pointer |
2018-12-17T22:53:15.056638571Z | 64 | PC: 132d2 | Write file or device (Write 67 bytes on handle 5) |
2018-12-17T22:53:15.063813129Z | 64 | PC: 132d2 | Write file or device (Write 2303 bytes on handle 5) |
2018-12-17T22:53:15.073470733Z | 66 | PC: 132dc | Move file pointer |
2018-12-17T22:53:15.075237302Z | 64 | PC: 132d2 | Write file or device (Write 5 bytes on handle 5) |
2018-12-17T22:53:15.080409321Z | 66 | PC: 132dc | Move file pointer |
2018-12-17T22:53:15.082993373Z | 64 | PC: 132d2 | Write file or device (Write 15 bytes on handle 5) |
2018-12-17T22:53:15.087837881Z | 87 | PC: 13241 | Get or set file date and time |
2018-12-17T22:53:15.08947569Z | 62 | PC: 132d7 | Close file |
2018-12-17T22:53:15.097477394Z | 67 | PC: 13221 | Get or set file attributes |