Sample viewer

vx.netlux.org/Virus.DOS.Burger.560.w

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:00:41.378902463Z 25 PC: 12a56 | Get default drive
2018-12-17T23:00:41.387680035Z 71 PC: 12a68 | Get current directory
2018-12-17T23:00:41.390985382Z 14 PC: 12a6e | Set default drive (Drive = 'A')
2018-12-17T23:00:41.392947115Z 14 PC: 12ac4 | Set default drive (Drive = 'A')
2018-12-17T23:00:41.394271224Z 59 PC: 12acc | Change current directory
2018-12-17T23:00:41.399376389Z 78 PC: 12b2d | Find first file
2018-12-17T23:00:41.407213472Z 61 PC: 12b40 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:41.414850379Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:41.423343929Z 62 PC: 12b52 | Close file
2018-12-17T23:00:41.428445558Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T23:00:41.441078914Z 67 PC: 12b70 | Get or set file attributes
2018-12-17T23:00:41.458206922Z 61 PC: 12b79 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:41.466513384Z 87 PC: 12b81 | Get or set file date and time
2018-12-17T23:00:41.468287933Z 64 PC: 12ba9 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:00:41.486176232Z 87 PC: 12bb1 | Get or set file date and time
2018-12-17T23:00:41.488058474Z 62 PC: 12bb5 | Close file
2018-12-17T23:00:41.496613279Z 14 PC: 12bd3 | Set default drive (Drive = 'A')
2018-12-17T23:00:41.503013283Z 59 PC: 12bdb | Change current directory
2018-12-17T23:00:41.505463271Z 25 PC: 12a56 | Get default drive
2018-12-17T23:00:41.507015808Z 71 PC: 12a68 | Get current directory
2018-12-17T23:00:41.51163348Z 14 PC: 12a6e | Set default drive (Drive = 'A')
2018-12-17T23:00:41.513739752Z 14 PC: 12ac4 | Set default drive (Drive = 'A')
2018-12-17T23:00:41.515482125Z 59 PC: 12acc | Change current directory
2018-12-17T23:00:41.520307592Z 78 PC: 12b2d | Find first file
2018-12-17T23:00:41.528689264Z 61 PC: 12b40 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:41.533663453Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:41.542415625Z 62 PC: 12b52 | Close file
2018-12-17T23:00:41.545832831Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:41.548955023Z 61 PC: 12b40 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:00:41.555401952Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:41.562434142Z 62 PC: 12b52 | Close file
2018-12-17T23:00:41.566682764Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T23:00:41.573954049Z 67 PC: 12b70 | Get or set file attributes
2018-12-17T23:00:41.586970386Z 61 PC: 12b79 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:00:41.595629375Z 87 PC: 12b81 | Get or set file date and time
2018-12-17T23:00:41.59757932Z 64 PC: 12ba9 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:00:41.607713614Z 87 PC: 12bb1 | Get or set file date and time
2018-12-17T23:00:41.609937492Z 62 PC: 12bb5 | Close file
2018-12-17T23:00:41.61972904Z 14 PC: 12bd3 | Set default drive (Drive = 'A')
2018-12-17T23:00:41.621477554Z 59 PC: 12bdb | Change current directory
2018-12-17T23:00:41.623698668Z 25 PC: 12a56 | Get default drive
2018-12-17T23:00:41.624970787Z 71 PC: 12a68 | Get current directory
2018-12-17T23:00:41.628498083Z 14 PC: 12a6e | Set default drive (Drive = 'A')
2018-12-17T23:00:41.630169973Z 14 PC: 12ac4 | Set default drive (Drive = 'A')
2018-12-17T23:00:41.631643015Z 59 PC: 12acc | Change current directory
2018-12-17T23:00:41.636560435Z 78 PC: 12b2d | Find first file
2018-12-17T23:00:41.65124759Z 61 PC: 12b40 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:41.658912633Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:41.667731553Z 62 PC: 12b52 | Close file
2018-12-17T23:00:41.670827898Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:41.674783322Z 61 PC: 12b40 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:00:41.683124749Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:41.692757271Z 62 PC: 12b52 | Close file
2018-12-17T23:00:41.69509383Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:41.69881077Z 61 PC: 12b40 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:00:41.7078786Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:41.716199315Z 62 PC: 12b52 | Close file
2018-12-17T23:00:41.718402575Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T23:00:41.725353082Z 67 PC: 12b70 | Get or set file attributes
2018-12-17T23:00:41.736669254Z 61 PC: 12b79 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:00:41.744187215Z 87 PC: 12b81 | Get or set file date and time
2018-12-17T23:00:41.746044822Z 64 PC: 12ba9 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:00:41.756328669Z 87 PC: 12bb1 | Get or set file date and time
2018-12-17T23:00:41.757991502Z 62 PC: 12bb5 | Close file
2018-12-17T23:00:41.766736934Z 14 PC: 12bd3 | Set default drive (Drive = 'A')
2018-12-17T23:00:41.770107952Z 59 PC: 12bdb | Change current directory
2018-12-17T23:00:41.772154118Z 25 PC: 12a56 | Get default drive
2018-12-17T23:00:41.773550197Z 71 PC: 12a68 | Get current directory
2018-12-17T23:00:41.783103547Z 14 PC: 12a6e | Set default drive (Drive = 'A')
2018-12-17T23:00:41.784806215Z 14 PC: 12ac4 | Set default drive (Drive = 'A')
2018-12-17T23:00:41.786268042Z 59 PC: 12acc | Change current directory
2018-12-17T23:00:41.791385407Z 78 PC: 12b2d | Find first file
2018-12-17T23:00:41.802165241Z 61 PC: 12b40 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:41.809595985Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:41.825419925Z 62 PC: 12b52 | Close file
2018-12-17T23:00:41.827996854Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:41.831520745Z 61 PC: 12b40 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:00:41.840130726Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:41.849053477Z 62 PC: 12b52 | Close file
2018-12-17T23:00:41.851572099Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:41.85613665Z 61 PC: 12b40 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:00:41.863809338Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:41.872228778Z 62 PC: 12b52 | Close file
2018-12-17T23:00:41.874638276Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:41.879466804Z 61 PC: 12b40 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:00:41.88675717Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:41.893685234Z 62 PC: 12b52 | Close file
2018-12-17T23:00:41.905468547Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T23:00:41.911862394Z 67 PC: 12b70 | Get or set file attributes
2018-12-17T23:00:41.923297649Z 61 PC: 12b79 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:00:41.931220533Z 87 PC: 12b81 | Get or set file date and time
2018-12-17T23:00:41.932749353Z 64 PC: 12ba9 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:00:41.94188831Z 87 PC: 12bb1 | Get or set file date and time
2018-12-17T23:00:41.944842207Z 62 PC: 12bb5 | Close file
2018-12-17T23:00:41.953247662Z 14 PC: 12bd3 | Set default drive (Drive = 'A')
2018-12-17T23:00:41.954812074Z 59 PC: 12bdb | Change current directory
2018-12-17T23:00:41.957382683Z 25 PC: 12a56 | Get default drive
2018-12-17T23:00:41.958662946Z 71 PC: 12a68 | Get current directory
2018-12-17T23:00:41.961724989Z 14 PC: 12a6e | Set default drive (Drive = 'A')
2018-12-17T23:00:41.962994502Z 14 PC: 12ac4 | Set default drive (Drive = 'A')
2018-12-17T23:00:41.964512456Z 59 PC: 12acc | Change current directory
2018-12-17T23:00:41.968844458Z 78 PC: 12b2d | Find first file
2018-12-17T23:00:41.980823032Z 61 PC: 12b40 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:41.99502528Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.003079821Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.005076593Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.009178146Z 61 PC: 12b40 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:00:42.016419031Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.024301568Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.02709602Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.030113485Z 61 PC: 12b40 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:00:42.037924548Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.046466337Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.049213688Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.052104701Z 61 PC: 12b40 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:00:42.059834852Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.068026931Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.070389224Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.075444003Z 61 PC: 12b40 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:00:42.083593463Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.09125705Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.094590963Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T23:00:42.101965515Z 67 PC: 12b70 | Get or set file attributes
2018-12-17T23:00:42.113470485Z 61 PC: 12b79 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:00:42.122019479Z 87 PC: 12b81 | Get or set file date and time
2018-12-17T23:00:42.125283221Z 64 PC: 12ba9 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:00:42.133451682Z 87 PC: 12bb1 | Get or set file date and time
2018-12-17T23:00:42.135194093Z 62 PC: 12bb5 | Close file
2018-12-17T23:00:42.144682415Z 14 PC: 12bd3 | Set default drive (Drive = 'A')
2018-12-17T23:00:42.146065593Z 59 PC: 12bdb | Change current directory
2018-12-17T23:00:42.147962356Z 25 PC: 12a56 | Get default drive
2018-12-17T23:00:42.14966489Z 71 PC: 12a68 | Get current directory
2018-12-17T23:00:42.152832511Z 14 PC: 12a6e | Set default drive (Drive = 'A')
2018-12-17T23:00:42.154014537Z 14 PC: 12ac4 | Set default drive (Drive = 'A')
2018-12-17T23:00:42.156034835Z 59 PC: 12acc | Change current directory
2018-12-17T23:00:42.16040711Z 78 PC: 12b2d | Find first file
2018-12-17T23:00:42.167192207Z 61 PC: 12b40 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:42.176473059Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.182157507Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.183742402Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.186429521Z 61 PC: 12b40 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:00:42.19108555Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.196563189Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.198615236Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.201683121Z 61 PC: 12b40 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:00:42.208930592Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.216831273Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.218847779Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.221657618Z 61 PC: 12b40 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:00:42.22907311Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.237399372Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.239343577Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.243430902Z 61 PC: 12b40 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:00:42.251657135Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.259744137Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.261787891Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.265047514Z 61 PC: 12b40 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:00:42.272608694Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.279982429Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.282299006Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T23:00:42.288608248Z 67 PC: 12b70 | Get or set file attributes
2018-12-17T23:00:42.299153977Z 61 PC: 12b79 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:00:42.306996724Z 87 PC: 12b81 | Get or set file date and time
2018-12-17T23:00:42.308550521Z 64 PC: 12ba9 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:00:42.318124053Z 87 PC: 12bb1 | Get or set file date and time
2018-12-17T23:00:42.320720845Z 62 PC: 12bb5 | Close file
2018-12-17T23:00:42.329515187Z 14 PC: 12bd3 | Set default drive (Drive = 'A')
2018-12-17T23:00:42.331281077Z 59 PC: 12bdb | Change current directory
2018-12-17T23:00:42.334300136Z 25 PC: 12a56 | Get default drive
2018-12-17T23:00:42.335853469Z 71 PC: 12a68 | Get current directory
2018-12-17T23:00:42.339444646Z 14 PC: 12a6e | Set default drive (Drive = 'A')
2018-12-17T23:00:42.342201771Z 14 PC: 12ac4 | Set default drive (Drive = 'A')
2018-12-17T23:00:42.344337474Z 59 PC: 12acc | Change current directory
2018-12-17T23:00:42.34927437Z 78 PC: 12b2d | Find first file
2018-12-17T23:00:42.357650947Z 61 PC: 12b40 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:42.371523563Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.380344106Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.383336404Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.386372483Z 61 PC: 12b40 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:00:42.394262654Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.403526368Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.405509236Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.408853411Z 61 PC: 12b40 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:00:42.416967468Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.425282138Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.427096108Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.429828993Z 61 PC: 12b40 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:00:42.436925532Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.445436302Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.44718151Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.451145129Z 61 PC: 12b40 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:00:42.458599053Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.466860863Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.470339133Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.47338786Z 61 PC: 12b40 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:00:42.48120678Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.489976555Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.491961717Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.494782061Z 61 PC: 12b40 | Open file (Filename = 'PAH.COM')
2018-12-17T23:00:42.502582076Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.510038865Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.512505291Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T23:00:42.5200955Z 67 PC: 12b70 | Get or set file attributes
2018-12-17T23:00:42.531037678Z 61 PC: 12b79 | Open file (Filename = 'PAH.COM')
2018-12-17T23:00:42.538331209Z 87 PC: 12b81 | Get or set file date and time
2018-12-17T23:00:42.540326008Z 64 PC: 12ba9 | Write file or device (Write 560 bytes on handle 5)
2018-12-17T23:00:42.549885072Z 87 PC: 12bb1 | Get or set file date and time
2018-12-17T23:00:42.552172478Z 62 PC: 12bb5 | Close file
2018-12-17T23:00:42.560255157Z 14 PC: 12bd3 | Set default drive (Drive = 'A')
2018-12-17T23:00:42.561674368Z 59 PC: 12bdb | Change current directory
2018-12-17T23:00:42.564097018Z 25 PC: 12a56 | Get default drive
2018-12-17T23:00:42.566485307Z 71 PC: 12a68 | Get current directory
2018-12-17T23:00:42.575832186Z 14 PC: 12a6e | Set default drive (Drive = 'A')
2018-12-17T23:00:42.577317597Z 14 PC: 12ac4 | Set default drive (Drive = 'A')
2018-12-17T23:00:42.580121076Z 59 PC: 12acc | Change current directory
2018-12-17T23:00:42.58446636Z 78 PC: 12b2d | Find first file
2018-12-17T23:00:42.59463855Z 61 PC: 12b40 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:42.602321367Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.610516334Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.612574756Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.616446107Z 61 PC: 12b40 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:00:42.623602999Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.631183399Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.633417721Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.636254789Z 61 PC: 12b40 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:00:42.644147141Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.652473924Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.654278946Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.657047334Z 61 PC: 12b40 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:00:42.664569339Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.672381154Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.674767513Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.678497863Z 61 PC: 12b40 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:00:42.685770949Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.693930555Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.696312291Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.699184103Z 61 PC: 12b40 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:00:42.707246777Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.716328236Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.719475329Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.722332604Z 61 PC: 12b40 | Open file (Filename = 'PAH.COM')
2018-12-17T23:00:42.72999929Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.73740188Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.739057311Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.742200165Z 61 PC: 12b40 | Open file (Filename = 'TEST.COM')
2018-12-17T23:00:42.748061132Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.754395164Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.757285439Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.759537613Z 23 PC: 12ad7 | Rename file
2018-12-17T23:00:42.765550298Z 59 PC: 12adf | Change current directory
2018-12-17T23:00:42.769743159Z 78 PC: 12aea | Find first file
2018-12-17T23:00:42.775012843Z 23 PC: 12a91 | Rename file
2018-12-17T23:00:42.779313515Z 44 PC: 12a99 | Get time 0x12a99: mov bx, word ptr cs:[0x2a4]
0x12a9e: mov al, byte ptr cs:[bx]
0x12aa1: mov bx, dx
0x12aa3: mov cx, 2
0x12aa6: xor dx, dx
0x12aa8: int 0x26
0x12aaa: mov bx, word ptr cs:[0x2a4]
0x12aaf: dec bx
0x12ab0: mov word ptr cs:[0x2a4], bx
0x12ab5: mov dl, byte ptr cs:[bx]
0x12ab8: cmp dl, 0xff
0x12abb: jne 0x12ac0
0x12abd: jmp 0x12bbf
0x12ac0: mov ah, 0xe
0x12ac2: int 0x21
0x12ac4: mov ah, 0x3b
0x12ac6: lea dx, word ptr [0x2f9]
0x12aca: int 0x21
0x12acc: jmp 0x12b22
0x12ace: nop
2018-12-17T23:00:42.7845848Z 14 PC: 12bd3 | Set default drive (Drive = 'A')
2018-12-17T23:00:42.786074218Z 59 PC: 12bdb | Change current directory
2018-12-17T23:00:42.787738275Z 25 PC: 12a56 | Get default drive
2018-12-17T23:00:42.789690484Z 71 PC: 12a68 | Get current directory
2018-12-17T23:00:42.792017513Z 14 PC: 12a6e | Set default drive (Drive = 'A')
2018-12-17T23:00:42.793375577Z 14 PC: 12ac4 | Set default drive (Drive = 'A')
2018-12-17T23:00:42.795206425Z 59 PC: 12acc | Change current directory
2018-12-17T23:00:42.797905464Z 78 PC: 12b2d | Find first file
2018-12-17T23:00:42.801913029Z 61 PC: 12b40 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:00:42.806321422Z 63 PC: 12b4e | Read file or device (Read 560 bytes on handle 5)
2018-12-17T23:00:42.811583543Z 62 PC: 12b52 | Close file
2018-12-17T23:00:42.813535994Z 79 PC: 12b35 | Find next file
2018-12-17T23:00:42.817358423Z 61 PC: 12b40 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:00:42.826878577Z 81 PC: 122cc | Get current PSP
2018-12-17T23:00:42.828020037Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T23:00:42.831124446Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T23:00:42.836223949Z 89 PC: 12459 | Get extended error info
2018-12-17T23:00:42.837716126Z 2 PC: 1268d | Character output (Char = '49')
2018-12-17T23:00:42.841512925Z 2 PC: 1268d | Character output (Char = '6e')
2018-12-17T23:00:42.847546464Z 2 PC: 1268d | Character output (Char = '76')
2018-12-17T23:00:42.850375088Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T23:00:42.853959197Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T23:00:42.856447373Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T23:00:42.858839873Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T23:00:42.86171685Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:42.864086893Z 2 PC: 1268d | Character output (Char = '6d')
2018-12-17T23:00:42.866480772Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T23:00:42.86892942Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T23:00:42.871197138Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T23:00:42.873876458Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T23:00:42.876269944Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:42.878972531Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T23:00:42.881841603Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T23:00:42.884303236Z 2 PC: 1268d | Character output (Char = '70')
2018-12-17T23:00:42.886769351Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T23:00:42.889715654Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:42.892073302Z 2 PC: 126da | Character output (Char = '72')
2018-12-17T23:00:42.894891448Z 2 PC: 126da | Character output (Char = '65')
2018-12-17T23:00:42.897884892Z 2 PC: 126da | Character output (Char = '61')
2018-12-17T23:00:42.900149277Z 2 PC: 126da | Character output (Char = '64')
2018-12-17T23:00:42.902387836Z 2 PC: 126da | Character output (Char = '69')
2018-12-17T23:00:42.905250285Z 2 PC: 126da | Character output (Char = '6e')
2018-12-17T23:00:42.90738089Z 2 PC: 126da | Character output (Char = '67')
2018-12-17T23:00:42.910332854Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:42.912607624Z 2 PC: 1268d | Character output (Char = '64')
2018-12-17T23:00:42.914828576Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T23:00:42.91708124Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T23:00:42.919422551Z 2 PC: 1268d | Character output (Char = '76')
2018-12-17T23:00:42.921469945Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T23:00:42.924305468Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:42.927654423Z 2 PC: 126ce | Character output (Char = '41')
2018-12-17T23:00:42.930462324Z 2 PC: 1268d | Character output (Char = '0d')
2018-12-17T23:00:42.934445922Z 2 PC: 1268d | Character output (Char = '0a')
2018-12-17T23:00:42.938991338Z 2 PC: 1268d | Character output (Char = '41')
2018-12-17T23:00:42.941241882Z 2 PC: 1268d | Character output (Char = '62')
2018-12-17T23:00:42.944015123Z 2 PC: 1268d | Character output (Char = '6f')
2018-12-17T23:00:42.946632536Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T23:00:42.949087972Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T23:00:42.952554858Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T23:00:42.954826328Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:42.957938156Z 2 PC: 1268d | Character output (Char = '52')
2018-12-17T23:00:42.960774334Z 2 PC: 1268d | Character output (Char = '65')
2018-12-17T23:00:42.963460603Z 2 PC: 1268d | Character output (Char = '74')
2018-12-17T23:00:42.966433329Z 2 PC: 1268d | Character output (Char = '72')
2018-12-17T23:00:42.969244349Z 2 PC: 1268d | Character output (Char = '79')
2018-12-17T23:00:42.979273965Z 2 PC: 1268d | Character output (Char = '2c')
2018-12-17T23:00:42.981728658Z 2 PC: 1268d | Character output (Char = '20')
2018-12-17T23:00:42.984010312Z 2 PC: 1268d | Character output (Char = '46')
2018-12-17T23:00:42.98655188Z 2 PC: 1268d | Character output (Char = '61')
2018-12-17T23:00:42.989917291Z 2 PC: 1268d | Character output (Char = '69')
2018-12-17T23:00:42.992102836Z 2 PC: 1268d | Character output (Char = '6c')
2018-12-17T23:00:42.995396919Z 2 PC: 1268d | Character output (Char = '3f')
2018-12-17T23:00:42.999391242Z 12 PC: 12581 | Flush input buffer and input