.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-17T23:01:05.388203729Z | 42 | PC: 13c5d | Get date 0x13c5d: cmp dx, 0x116 0x13c61: je 0x13c66 0x13c63: jmp 0x13f2a 0x13c66: mov al, 0xf5 0x13c68: out 0x60, al 0x13c6a: push ds 0x13c6b: pop es 0x13c6c: mov byte ptr [0x75e], 0x80 0x13c71: mov ah, 8 0x13c73: mov dl, byte ptr [0x75e] 0x13c77: int 0x13 0x13c79: mov byte ptr [0x75f], dh 0x13c7d: mov byte ptr [0x760], 0 0x13c82: mov byte ptr [0x761], 0 0x13c87: cld 0x13c88: mov cx, 0x100 0x13c8b: mov di, 0x76e 0x13c8e: mov ax, 0x1080 0x13c91: rep stosd dword ptr es:[di], eax 0x13c93: mov ax, 0x510 |
2018-12-17T23:01:05.391451201Z | 26 | PC: 13f31 | Set disk transfer address |
2018-12-17T23:01:05.393326815Z | 78 | PC: 13fa4 | Find first file |
2018-12-17T23:01:05.40030108Z | 79 | PC: 13fea | Find next file |
2018-12-17T23:01:05.404400113Z | 79 | PC: 13fea | Find next file |
2018-12-17T23:01:05.40786304Z | 79 | PC: 13fea | Find next file |
2018-12-17T23:01:05.411186435Z | 79 | PC: 13fea | Find next file |
2018-12-17T23:01:05.414270159Z | 79 | PC: 13fea | Find next file |
2018-12-17T23:01:05.418582583Z | 79 | PC: 13fea | Find next file |
2018-12-17T23:01:05.421988834Z | 79 | PC: 13fea | Find next file |
2018-12-17T23:01:05.425487458Z | 78 | PC: 13fa4 | Find first file |
2018-12-17T23:01:05.433697335Z | 67 | PC: 1406d | Get or set file attributes |
2018-12-17T23:01:05.457054525Z | 61 | PC: 14074 | Open file (Filename = 'TEST.EXE') |
2018-12-17T23:01:05.464943309Z | 63 | PC: 1409b | Read file or device (Read 2 bytes on handle 5) |
2018-12-17T23:01:05.468061468Z | 66 | PC: 140b0 | Move file pointer |
2018-12-17T23:01:05.469759228Z | 63 | PC: 140ba | Read file or device (Read 11 bytes on handle 5) |
2018-12-17T23:01:05.473404668Z | 62 | PC: 14258 | Close file |
2018-12-17T23:01:05.47655084Z | 67 | PC: 14264 | Get or set file attributes |
2018-12-17T23:01:05.488722953Z | 79 | PC: 13fea | Find next file |
2018-12-17T23:01:05.491132671Z | 26 | PC: 1404a | Set disk transfer address |
2018-12-17T23:01:05.492160833Z | 9 | PC: 12a5c | Display string (Could not find end pointer) |
2018-12-17T23:01:05.496523691Z | 76 | PC: 12a61 | Terminate with return code (Return code = '0') |
.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-25T12:38:55.412988102Z | 42 | PC: 13c5d | Get date 0x13c5d: cmp dx, 0x116 0x13c61: je 0x13c66 0x13c63: jmp 0x13f2a 0x13c66: mov al, 0xf5 0x13c68: out 0x60, al 0x13c6a: push ds 0x13c6b: pop es 0x13c6c: mov byte ptr [0x75e], 0x80 0x13c71: mov ah, 8 0x13c73: mov dl, byte ptr [0x75e] 0x13c77: int 0x13 0x13c79: mov byte ptr [0x75f], dh 0x13c7d: mov byte ptr [0x760], 0 0x13c82: mov byte ptr [0x761], 0 0x13c87: cld 0x13c88: mov cx, 0x100 0x13c8b: mov di, 0x76e 0x13c8e: mov ax, 0x1080 0x13c91: rep stosd dword ptr es:[di], eax 0x13c93: mov ax, 0x510 |
.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-25T12:38:55.446866052Z | 42 | PC: 13c5d | Get date 0x13c5d: cmp dx, 0x116 0x13c61: je 0x13c66 0x13c63: jmp 0x13f2a 0x13c66: mov al, 0xf5 0x13c68: out 0x60, al 0x13c6a: push ds 0x13c6b: pop es 0x13c6c: mov byte ptr [0x75e], 0x80 0x13c71: mov ah, 8 0x13c73: mov dl, byte ptr [0x75e] 0x13c77: int 0x13 0x13c79: mov byte ptr [0x75f], dh 0x13c7d: mov byte ptr [0x760], 0 0x13c82: mov byte ptr [0x761], 0 0x13c87: cld 0x13c88: mov cx, 0x100 0x13c8b: mov di, 0x76e 0x13c8e: mov ax, 0x1080 0x13c91: rep stosd dword ptr es:[di], eax 0x13c93: mov ax, 0x510 |
2018-12-25T12:38:55.449862489Z | 26 | PC: 13f31 | Set disk transfer address |
2018-12-25T12:38:55.451540936Z | 78 | PC: 13fa4 | Find first file |
2018-12-25T12:38:55.458393491Z | 79 | PC: 13fea | Find next file |
2018-12-25T12:38:55.461817276Z | 79 | PC: 13fea | Find next file (See above) |
2018-12-25T12:38:55.463696813Z | 79 | PC: 13fea | Find next file (See above) |
2018-12-25T12:38:55.473932825Z | 79 | PC: 13fea | Find next file (See above) |
2018-12-25T12:38:55.486449001Z | 79 | PC: 13fea | Find next file (See above) |
2018-12-25T12:38:55.489377938Z | 79 | PC: 13fea | Find next file (See above) |
2018-12-25T12:38:55.491969428Z | 79 | PC: 13fea | Find next file (See above) |
2018-12-25T12:38:55.494953917Z | 78 | PC: 13fa4 | Find first file (See above) |
2018-12-25T12:38:55.501054833Z | 67 | PC: 1406d | Get or set file attributes |
2018-12-25T12:38:55.516852998Z | 61 | PC: 14074 | Open file (Filename = 'TEST.EXE') |
2018-12-25T12:38:55.524125535Z | 63 | PC: 1409b | Read file or device (Read 2 bytes on handle 5) |
2018-12-25T12:38:55.528087515Z | 66 | PC: 140b0 | Move file pointer |
2018-12-25T12:38:55.529807644Z | 63 | PC: 140ba | Read file or device (Read 11 bytes on handle 5) |
2018-12-25T12:38:55.53322898Z | 62 | PC: 14258 | Close file |
2018-12-25T12:38:55.536920965Z | 67 | PC: 14264 | Get or set file attributes |
2018-12-25T12:38:55.548703075Z | 79 | PC: 13fea | Find next file (See above) |
2018-12-25T12:38:55.551186166Z | 26 | PC: 1404a | Set disk transfer address |
2018-12-25T12:38:55.553018949Z | 9 | PC: 12a5c | Display string (Could not find end pointer) |
2018-12-25T12:38:55.558682123Z | 76 | PC: 12a61 | Terminate with return code (Return code = '0') |