.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-17T23:03:24.035714005Z | 255 | PC: 12a70 | UNKNOWN! |
2018-12-17T23:03:24.037343978Z | 67 | PC: 9f5dc | Get or set file attributes |
2018-12-17T23:03:24.044354389Z | 61 | PC: 9f5dc | Open file (Filename = 'C:\COMMAND.COM') |
2018-12-17T23:03:24.058143416Z | 87 | PC: 9f5dc | Get or set file date and time |
2018-12-17T23:03:24.061170423Z | 63 | PC: 9f5dc | Read file or device (Read 27 bytes on handle 5) |
2018-12-17T23:03:24.065149189Z | 66 | PC: 9f5dc | Move file pointer |
2018-12-17T23:03:24.067695753Z | 64 | PC: 9f5dc | Write file or device (Write 512 bytes on handle 5) |
2018-12-17T23:03:24.486422078Z | 66 | PC: 9f5dc | Move file pointer |
2018-12-17T23:03:24.489312528Z | 64 | PC: 9f5dc | Write file or device (Write 27 bytes on handle 5) |
2018-12-17T23:03:24.493002731Z | 87 | PC: 9f5dc | Get or set file date and time |
2018-12-17T23:03:24.494996317Z | 62 | PC: 9f5dc | Close file |
2018-12-17T23:03:24.503516755Z | 9 | PC: 12a5e | Display string (String= 'Infected [NuKE]'92 ') |