.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-17T22:55:20.114515841Z | 47 | PC: 12ac5 | Get disk transfer address |
2018-12-17T22:55:20.116240172Z | 26 | PC: 12ad5 | Set disk transfer address |
2018-12-17T22:55:20.118574195Z | 25 | PC: 12ae2 | Get default drive |
2018-12-17T22:55:20.120172931Z | 14 | PC: 12aeb | Set default drive (Drive = 'C') |
2018-12-17T22:55:20.122779772Z | 78 | PC: 12af7 | Find first file |
2018-12-17T22:55:20.130390976Z | 67 | PC: 12b31 | Get or set file attributes |
2018-12-17T22:55:20.136557679Z | 67 | PC: 12b3d | Get or set file attributes |
2018-12-17T22:55:20.47901364Z | 61 | PC: 12b45 | Open file (Filename = 'COMMAND.COM') |
2018-12-17T22:55:20.487953036Z | 87 | PC: 12b4c | Get or set file date and time |
2018-12-17T22:55:20.490235296Z | 44 | PC: 12b58 | Get time 0x12b58: or dx, dx 0x12b5a: je 0x12b54 0x12b5c: mov word ptr [bp + 0x145], dx 0x12b60: mov ah, 0x3f 0x12b62: lea dx, word ptr [bp + 0x59] 0x12b65: mov cx, 3 0x12b68: int 0x21 0x12b6a: mov ax, 0x4202 0x12b6d: xor cx, cx 0x12b6f: xor dx, dx 0x12b71: int 0x21 0x12b73: sub ax, 3 0x12b76: mov word ptr [0xfb2d], ax 0x12b79: mov byte ptr [0xfb2c], 0xe9 0x12b7e: lea si, word ptr [bp - 3] 0x12b81: mov di, 0xfcbc 0x12b84: mov cx, 0x14a 0x12b87: rep movsb byte ptr es:[di], byte ptr [si] 0x12b89: mov si, 0xfcd4 0x12b8c: call 0x22aac |
2018-12-17T22:55:20.493259217Z | 63 | PC: 12b6a | Read file or device (Read 3 bytes on handle 5) |
2018-12-17T22:55:20.496984711Z | 66 | PC: 12b73 | Move file pointer |
2018-12-17T22:55:20.499928694Z | 64 | PC: 12b99 | Write file or device (Write 330 bytes on handle 5) |
2018-12-17T22:55:20.510795875Z | 66 | PC: 12ba2 | Move file pointer |
2018-12-17T22:55:20.512968016Z | 64 | PC: 12bac | Write file or device (Write 3 bytes on handle 5) |
2018-12-17T22:55:20.517293525Z | 87 | PC: 12bbf | Get or set file date and time |
2018-12-17T22:55:20.519679008Z | 62 | PC: 12bc3 | Close file |
2018-12-17T22:55:20.527923985Z | 67 | PC: 12bcf | Get or set file attributes |
2018-12-17T22:55:20.539107625Z | 26 | PC: 12bdc | Set disk transfer address |
2018-12-17T22:55:20.540809223Z | 14 | PC: 12be5 | Set default drive (Drive = 'A') |
2018-12-17T22:55:20.542717885Z | 9 | PC: 12aa2 | Display string (String= 'Hello - Copyright S & S International, 1990 ') |