.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-17T22:58:39.985482725Z | 44 | PC: 12b9a | Get time 0x12b9a: cmp byte ptr [0x107], 0 0x12b9f: je 0x12ba6 0x12ba1: cmp dh, 0xf 0x12ba4: jg 0x12baf 0x12ba6: cmp dl, 0 0x12ba9: je 0x12b96 0x12bab: mov byte ptr [0x107], dl 0x12baf: mov byte ptr [0x24b], 0 0x12bb4: mov byte ptr [0x24c], 4 0x12bb9: mov byte ptr [0x255], 0 0x12bbe: mov cx, 0x27 0x12bc1: mov dx, 0x134 0x12bc4: mov ah, 0x4e 0x12bc6: int 0x21 0x12bc8: cmp ax, 0x12 0x12bcb: je 0x12bd0 0x12bcd: call 0x12bf2 0x12bd0: mov cx, 0x27 0x12bd3: mov dx, 0x13a 0x12bd6: mov ah, 0x4e |
2018-12-17T22:58:39.987796569Z | 78 | PC: 12bc8 | Find first file |
2018-12-17T22:58:39.994625079Z | 78 | PC: 12bda | Find first file |
2018-12-17T22:58:40.000516843Z | 67 | PC: 12c13 | Get or set file attributes |
2018-12-17T22:58:40.021389188Z | 61 | PC: 12c19 | Open file (Filename = 'SLEEP.COM') |
2018-12-17T22:58:40.029577762Z | 63 | PC: 12c28 | Read file or device (Read 20 bytes on handle 5) |
2018-12-17T22:58:40.03616105Z | 62 | PC: 12c5c | Close file |
2018-12-17T22:58:40.038144189Z | 61 | PC: 12c65 | Open file (Filename = 'SLEEP.COM') |
2018-12-17T22:58:40.045961Z | 64 | PC: 12a5c | Write file or device (Write 666 bytes on handle 5) |
2018-12-17T22:58:40.054115144Z | 87 | PC: 12c8d | Get or set file date and time |
2018-12-17T22:58:40.055566989Z | 62 | PC: 12c95 | Close file |
2018-12-17T22:58:40.063551052Z | 67 | PC: 12ca2 | Get or set file attributes |
2018-12-17T22:58:40.068062908Z | 79 | PC: 12c4c | Find next file |
2018-12-17T22:58:40.07054188Z | 67 | PC: 12c13 | Get or set file attributes |
2018-12-17T22:58:40.083940849Z | 61 | PC: 12c19 | Open file (Filename = 'PRINT.COM') |
2018-12-17T22:58:40.090439759Z | 63 | PC: 12c28 | Read file or device (Read 20 bytes on handle 5) |
2018-12-17T22:58:40.096603672Z | 62 | PC: 12c5c | Close file |
2018-12-17T22:58:40.09881607Z | 61 | PC: 12c65 | Open file (Filename = 'PRINT.COM') |
2018-12-17T22:58:40.105821611Z | 64 | PC: 12a5c | Write file or device (Write 666 bytes on handle 5) |
2018-12-17T22:58:40.11446273Z | 87 | PC: 12c8d | Get or set file date and time |
2018-12-17T22:58:40.116562182Z | 62 | PC: 12c95 | Close file |
2018-12-17T22:58:40.124795343Z | 67 | PC: 12ca2 | Get or set file attributes |
2018-12-17T22:58:40.129213791Z | 79 | PC: 12c4c | Find next file |
2018-12-17T22:58:40.131628051Z | 67 | PC: 12c13 | Get or set file attributes |
2018-12-17T22:58:40.143678224Z | 61 | PC: 12c19 | Open file (Filename = 'HELLO.COM') |
2018-12-17T22:58:40.150908247Z | 63 | PC: 12c28 | Read file or device (Read 20 bytes on handle 5) |
2018-12-17T22:58:40.157128653Z | 62 | PC: 12c5c | Close file |
2018-12-17T22:58:40.15996677Z | 61 | PC: 12c65 | Open file (Filename = 'HELLO.COM') |
2018-12-17T22:58:40.166653295Z | 64 | PC: 12a5c | Write file or device (Write 666 bytes on handle 5) |
2018-12-17T22:58:40.175627989Z | 87 | PC: 12c8d | Get or set file date and time |
2018-12-17T22:58:40.178468402Z | 62 | PC: 12c95 | Close file |
2018-12-17T22:58:40.187671472Z | 67 | PC: 12ca2 | Get or set file attributes |
2018-12-17T22:58:40.192550677Z | 79 | PC: 12c4c | Find next file |
2018-12-17T22:58:40.195890988Z | 67 | PC: 12c13 | Get or set file attributes |
2018-12-17T22:58:40.208989026Z | 61 | PC: 12c19 | Open file (Filename = 'PHANG.COM') |
2018-12-17T22:58:40.215442171Z | 63 | PC: 12c28 | Read file or device (Read 20 bytes on handle 5) |
2018-12-17T22:58:40.22698735Z | 62 | PC: 12c5c | Close file |
2018-12-17T22:58:40.228688339Z | 61 | PC: 12c65 | Open file (Filename = 'PHANG.COM') |
2018-12-17T22:58:40.235442943Z | 64 | PC: 12a5c | Write file or device (Write 666 bytes on handle 5) |
2018-12-17T22:58:40.244805815Z | 87 | PC: 12c8d | Get or set file date and time |
2018-12-17T22:58:40.246692281Z | 62 | PC: 12c95 | Close file |
2018-12-17T22:58:40.254425888Z | 67 | PC: 12ca2 | Get or set file attributes |
2018-12-17T22:58:40.259304241Z | 9 | PC: 12cd0 | Display string (String= ' Program too big to fit in memory') |
2018-12-17T22:58:40.263329625Z | 76 | PC: 12cd4 | Terminate with return code (Return code = '36') |