Sample viewer

vx.netlux.org/Virus.DOS.Hell.1125

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:05:14.891312122Z 26 PC: 12baf | Set disk transfer address
2018-12-17T23:05:14.901361063Z 78 PC: 12bbd | Find first file
2018-12-17T23:05:14.909263528Z 67 PC: 12c00 | Get or set file attributes
2018-12-17T23:05:14.927507495Z 61 PC: 12c05 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:05:14.937573678Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:05:14.946126339Z 66 PC: 12c1b | Move file pointer
2018-12-17T23:05:14.948117918Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:05:14.952287801Z 66 PC: 12c56 | Move file pointer
2018-12-17T23:05:14.954834787Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-17T23:05:14.96456382Z 87 PC: 12c79 | Get or set file date and time
2018-12-17T23:05:14.966672761Z 62 PC: 12c7d | Close file
2018-12-17T23:05:14.976230035Z 67 PC: 12c8c | Get or set file attributes
2018-12-17T23:05:14.992507101Z 79 PC: 12bcf | Find next file
2018-12-17T23:05:14.995510781Z 67 PC: 12c00 | Get or set file attributes
2018-12-17T23:05:15.006405545Z 61 PC: 12c05 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:05:15.018756034Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:05:15.026485777Z 66 PC: 12c1b | Move file pointer
2018-12-17T23:05:15.028654358Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:05:15.032826004Z 66 PC: 12c56 | Move file pointer
2018-12-17T23:05:15.034714651Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-17T23:05:15.044313436Z 87 PC: 12c79 | Get or set file date and time
2018-12-17T23:05:15.047550079Z 62 PC: 12c7d | Close file
2018-12-17T23:05:15.056779489Z 67 PC: 12c8c | Get or set file attributes
2018-12-17T23:05:15.068639167Z 79 PC: 12bcf | Find next file
2018-12-17T23:05:15.072664236Z 67 PC: 12c00 | Get or set file attributes
2018-12-17T23:05:15.084200315Z 61 PC: 12c05 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:05:15.09172029Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:05:15.09952123Z 66 PC: 12c1b | Move file pointer
2018-12-17T23:05:15.10171896Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:05:15.10531586Z 66 PC: 12c56 | Move file pointer
2018-12-17T23:05:15.108033889Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-17T23:05:15.1307389Z 87 PC: 12c79 | Get or set file date and time
2018-12-17T23:05:15.132564468Z 62 PC: 12c7d | Close file
2018-12-17T23:05:15.141308703Z 67 PC: 12c8c | Get or set file attributes
2018-12-17T23:05:15.153076781Z 79 PC: 12bcf | Find next file
2018-12-17T23:05:15.156600869Z 67 PC: 12c00 | Get or set file attributes
2018-12-17T23:05:15.168238952Z 61 PC: 12c05 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:05:15.176299563Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:05:15.183747453Z 66 PC: 12c1b | Move file pointer
2018-12-17T23:05:15.185723147Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:05:15.189790725Z 66 PC: 12c56 | Move file pointer
2018-12-17T23:05:15.191464434Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-17T23:05:15.20090293Z 87 PC: 12c79 | Get or set file date and time
2018-12-17T23:05:15.203122944Z 62 PC: 12c7d | Close file
2018-12-17T23:05:15.21177299Z 67 PC: 12c8c | Get or set file attributes
2018-12-17T23:05:15.227368673Z 79 PC: 12bcf | Find next file
2018-12-17T23:05:15.233021958Z 67 PC: 12c00 | Get or set file attributes
2018-12-17T23:05:15.244028477Z 61 PC: 12c05 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T23:05:15.25170781Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:05:15.259858149Z 66 PC: 12c1b | Move file pointer
2018-12-17T23:05:15.261544859Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:05:15.26485453Z 66 PC: 12c56 | Move file pointer
2018-12-17T23:05:15.267082668Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-17T23:05:15.276925709Z 87 PC: 12c79 | Get or set file date and time
2018-12-17T23:05:15.278927685Z 62 PC: 12c7d | Close file
2018-12-17T23:05:15.288038213Z 67 PC: 12c8c | Get or set file attributes
2018-12-17T23:05:15.29985086Z 79 PC: 12bcf | Find next file
2018-12-17T23:05:15.303160148Z 67 PC: 12c00 | Get or set file attributes
2018-12-17T23:05:15.314704423Z 61 PC: 12c05 | Open file (Filename = 'MANDEL.COM')
2018-12-17T23:05:15.323422055Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:05:15.330851268Z 66 PC: 12c1b | Move file pointer
2018-12-17T23:05:15.332834707Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:05:15.337127125Z 66 PC: 12c56 | Move file pointer
2018-12-17T23:05:15.339084943Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-17T23:05:15.349119976Z 87 PC: 12c79 | Get or set file date and time
2018-12-17T23:05:15.351892346Z 62 PC: 12c7d | Close file
2018-12-17T23:05:15.36113145Z 67 PC: 12c8c | Get or set file attributes
2018-12-17T23:05:15.372241427Z 79 PC: 12bcf | Find next file
2018-12-17T23:05:15.376234884Z 67 PC: 12c00 | Get or set file attributes
2018-12-17T23:05:15.387614278Z 61 PC: 12c05 | Open file (Filename = 'PAH.COM')
2018-12-17T23:05:15.395382849Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:05:15.403413069Z 66 PC: 12c1b | Move file pointer
2018-12-17T23:05:15.405380002Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:05:15.408690492Z 66 PC: 12c56 | Move file pointer
2018-12-17T23:05:15.410818377Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-17T23:05:15.420694379Z 87 PC: 12c79 | Get or set file date and time
2018-12-17T23:05:15.422455543Z 62 PC: 12c7d | Close file
2018-12-17T23:05:15.433829183Z 67 PC: 12c8c | Get or set file attributes
2018-12-17T23:05:15.457888968Z 79 PC: 12bcf | Find next file
2018-12-17T23:05:15.461299912Z 67 PC: 12c00 | Get or set file attributes
2018-12-17T23:05:15.473182007Z 61 PC: 12c05 | Open file (Filename = 'TEST.COM')
2018-12-17T23:05:15.489267495Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:05:15.495846152Z 66 PC: 12c1b | Move file pointer
2018-12-17T23:05:15.505584073Z 62 PC: 12c7d | Close file
2018-12-17T23:05:15.50856682Z 67 PC: 12c8c | Get or set file attributes
2018-12-17T23:05:15.522201844Z 79 PC: 12bcf | Find next file
2018-12-17T23:05:15.528232052Z 78 PC: 12bbd | Find first file
2018-12-17T23:05:15.543738281Z 67 PC: 12c00 | Get or set file attributes
2018-12-17T23:05:15.904136386Z 61 PC: 12c05 | Open file (Filename = 'c:\COMMAND.COM')
2018-12-17T23:05:15.915408515Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-17T23:05:15.918623943Z 66 PC: 12c1b | Move file pointer
2018-12-17T23:05:15.921774282Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-17T23:05:15.925135231Z 66 PC: 12c56 | Move file pointer
2018-12-17T23:05:15.927115108Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-17T23:05:15.939127447Z 87 PC: 12c79 | Get or set file date and time
2018-12-17T23:05:15.941809642Z 62 PC: 12c7d | Close file
2018-12-17T23:05:15.951013293Z 67 PC: 12c8c | Get or set file attributes
2018-12-17T23:05:15.959548345Z 26 PC: 12be4 | Set disk transfer address
2018-12-17T23:05:15.961530355Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T23:05:15.966759977Z 76 PC: 12a86 | Terminate with return code (Return code = '36')

{"DateBased":true,"Day":1,"Month":1,"Year":1994,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":15140,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:42:41.699269918Z 26 PC: 12baf | Set disk transfer address
2018-12-25T12:42:41.701287526Z 78 PC: 12bbd | Find first file
2018-12-25T12:42:41.709020267Z 67 PC: 12c00 | Get or set file attributes
2018-12-25T12:42:41.727400139Z 61 PC: 12c05 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:42:41.734955064Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-25T12:42:41.742720892Z 66 PC: 12c1b | Move file pointer
2018-12-25T12:42:41.744736913Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-25T12:42:41.747968193Z 66 PC: 12c56 | Move file pointer
2018-12-25T12:42:41.750353316Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-25T12:42:41.759497605Z 87 PC: 12c79 | Get or set file date and time
2018-12-25T12:42:41.761166443Z 62 PC: 12c7d | Close file
2018-12-25T12:42:41.773963846Z 67 PC: 12c8c | Get or set file attributes
2018-12-25T12:42:41.784787346Z 79 PC: 12bcf | Find next file
2018-12-25T12:42:41.787883287Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:41.800394495Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:41.808069446Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:41.815557043Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:41.817620143Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:41.821076657Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:41.824164396Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:41.833866215Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:41.836617716Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:41.845298054Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:41.856044111Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:41.86026097Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:41.871727044Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:41.879368843Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:41.886914556Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:41.88844299Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:41.891271752Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:41.893888278Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:41.903005987Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:41.904509618Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:41.915078908Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:41.926764341Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:41.930751741Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:41.943013064Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:41.951040028Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:41.958622755Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:41.960775553Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:41.963831049Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:41.965569047Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:41.975227722Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:41.97758034Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:41.986420766Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:41.99799758Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.002395229Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.013242253Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.020470317Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.02822855Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.029969769Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.033000928Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.035226493Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.044717892Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.046419247Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.056112312Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.067719163Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.070960714Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.082515935Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.090629742Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.098093033Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.101320807Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.105491647Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.108242591Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.119140503Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.121574167Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.131092477Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.142238612Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.145704462Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.156393036Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.163910655Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.173102336Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.174926448Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.178011935Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.179998739Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.189868972Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.191474482Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.201603808Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.213261106Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.216571158Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.228397458Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.235746809Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.238586733Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.243144509Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.245395573Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.259734521Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.263045439Z 78 PC: 12bbd | Find first file (See above)
2018-12-25T12:42:42.270863198Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.618526885Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.626069295Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.630825224Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.632491954Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.635757161Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.638895614Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.650746874Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.652498547Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.662074244Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.67013592Z 26 PC: 12be4 | Set disk transfer address
2018-12-25T12:42:42.671294035Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-25T12:42:42.678064267Z 76 PC: 12a86 | Terminate with return code (Return code = '36')

{"DateBased":true,"Day":1,"Month":12,"Year":1994,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":15140,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:42:41.715741093Z 26 PC: 12baf | Set disk transfer address
2018-12-25T12:42:41.725681501Z 78 PC: 12bbd | Find first file
2018-12-25T12:42:41.736826834Z 67 PC: 12c00 | Get or set file attributes
2018-12-25T12:42:41.75070054Z 61 PC: 12c05 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:42:41.763451914Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-25T12:42:41.769647394Z 66 PC: 12c1b | Move file pointer
2018-12-25T12:42:41.771048992Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-25T12:42:41.77403668Z 66 PC: 12c56 | Move file pointer
2018-12-25T12:42:41.775287642Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-25T12:42:41.78400499Z 87 PC: 12c79 | Get or set file date and time
2018-12-25T12:42:41.786230659Z 62 PC: 12c7d | Close file
2018-12-25T12:42:41.794569497Z 67 PC: 12c8c | Get or set file attributes
2018-12-25T12:42:41.804276377Z 79 PC: 12bcf | Find next file
2018-12-25T12:42:41.807474582Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:41.816946588Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:41.823419262Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:41.828056159Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:41.831019267Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:41.833519282Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:41.835182156Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:41.844101179Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:41.845764403Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:41.853406701Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:41.863650108Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:41.866172645Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:41.875883068Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:41.882859223Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:41.889341831Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:41.89091532Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:41.89405055Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:41.89531012Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:41.903364242Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:41.906792298Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:41.914369347Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:41.924434705Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:41.928367562Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:41.939854969Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:41.946591597Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:41.953598787Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:41.956271883Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:41.95939071Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:41.960985853Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.153751995Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.155532705Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.275607474Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.296701638Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.299689688Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.311579249Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.31976846Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.32607075Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.328721235Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.33262103Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.33414216Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.343601128Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.353238429Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.383462699Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.394376032Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.398613873Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.409552173Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.416409867Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.421647073Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.422907806Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.425199369Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.427807926Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.440440613Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.44219143Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.453806259Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.467187002Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.470305817Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.481774795Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.489107476Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.495727382Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.497396634Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.500701564Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.502128327Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.510760165Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.513060729Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.520645743Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.531533472Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.535628945Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.545354148Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.551736749Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.55870764Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.560150382Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.561970179Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.574961873Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.577346997Z 78 PC: 12bbd | Find first file (See above)
2018-12-25T12:42:42.583033496Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.920174352Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.935668244Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.938508352Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.941454761Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.944340167Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.95900615Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.972504935Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.974372684Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.982134357Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.988994999Z 26 PC: 12be4 | Set disk transfer address
2018-12-25T12:42:42.990379949Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-25T12:42:42.995949826Z 76 PC: 12a86 | Terminate with return code (Return code = '36')

{"DateBased":true,"Day":16,"Month":12,"Year":1994,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":15140,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:42:42.088242558Z 26 PC: 12baf | Set disk transfer address
2018-12-25T12:42:42.089584743Z 78 PC: 12bbd | Find first file
2018-12-25T12:42:42.098662214Z 67 PC: 12c00 | Get or set file attributes
2018-12-25T12:42:42.11274746Z 61 PC: 12c05 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:42:42.118144706Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-25T12:42:42.123927376Z 66 PC: 12c1b | Move file pointer
2018-12-25T12:42:42.126254735Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-25T12:42:42.128999173Z 66 PC: 12c56 | Move file pointer
2018-12-25T12:42:42.13114804Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-25T12:42:42.141483804Z 87 PC: 12c79 | Get or set file date and time
2018-12-25T12:42:42.143311663Z 62 PC: 12c7d | Close file
2018-12-25T12:42:42.152050292Z 67 PC: 12c8c | Get or set file attributes
2018-12-25T12:42:42.164234292Z 79 PC: 12bcf | Find next file
2018-12-25T12:42:42.167448611Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.17858368Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.187068581Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.194597117Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.196629672Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.200460836Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.203192799Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.212660058Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.215060053Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.224318234Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.235777335Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.239068485Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.25044551Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.257831285Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.26498024Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.26885046Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.27218594Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.273933329Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.426157345Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.428924078Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.618224433Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.63164602Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.635321499Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.647180228Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.653344293Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.659003631Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.660410652Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.662481874Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.664397541Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.672118183Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.674099016Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.684802471Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.697372232Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.700956357Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.713617472Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.721491292Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.729956462Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.73283906Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.736156625Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.738121439Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.748299061Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.750043968Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.759251238Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.770876824Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.774856454Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.785386532Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.793215848Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.80164593Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.806190977Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.809630673Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.812913354Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.82991915Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.831792984Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.841490176Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.85298383Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.85651807Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.868637398Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.877013007Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.884722242Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.887280409Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.892389374Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.894188197Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.904152299Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.90747574Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.916727896Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.928029218Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.932345833Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.944129864Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.951956533Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.956503071Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.958747103Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.961134756Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.972707315Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.976845408Z 78 PC: 12bbd | Find first file (See above)
2018-12-25T12:42:42.983542062Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:43.336167791Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:43.344963921Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:43.347984807Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:43.349235692Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:43.351793543Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:43.353642715Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:43.365318709Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:43.368726539Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.376456644Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.383185348Z 26 PC: 12be4 | Set disk transfer address
2018-12-25T12:42:43.385627036Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-25T12:42:43.392184753Z 76 PC: 12a86 | Terminate with return code (Return code = '36')

{"DateBased":true,"Day":1,"Month":1,"Year":1995,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":15140,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:42:42.209349657Z 26 PC: 12baf | Set disk transfer address
2018-12-25T12:42:42.210801193Z 78 PC: 12bbd | Find first file
2018-12-25T12:42:42.217281099Z 67 PC: 12c00 | Get or set file attributes
2018-12-25T12:42:42.277256975Z 61 PC: 12c05 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:42:42.290015251Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-25T12:42:42.297051018Z 66 PC: 12c1b | Move file pointer
2018-12-25T12:42:42.298831671Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-25T12:42:42.301819841Z 66 PC: 12c56 | Move file pointer
2018-12-25T12:42:42.305113321Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-25T12:42:42.326010539Z 87 PC: 12c79 | Get or set file date and time
2018-12-25T12:42:42.327547494Z 62 PC: 12c7d | Close file
2018-12-25T12:42:42.33613602Z 67 PC: 12c8c | Get or set file attributes
2018-12-25T12:42:42.354935307Z 79 PC: 12bcf | Find next file
2018-12-25T12:42:42.357770456Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.370739615Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.378703358Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.38640046Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.393349354Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.396058001Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.397488409Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.4081072Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.410601728Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.418957276Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.429114586Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.433818952Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.444409753Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.451251387Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.458648659Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.460378005Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.463337693Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.466188Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.475029815Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.476859251Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.48597285Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.496349514Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.499331943Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.509456217Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.516516669Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.52294133Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.524766905Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.528526276Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.530195115Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.550715922Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.553350784Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.57476679Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.584717388Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.587896817Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.762333429Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.770009712Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.777947559Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.779481388Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.782443232Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.785131428Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.894198242Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.896223863Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.9185809Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.936070317Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.94076799Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.972325307Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.980305191Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.987370288Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.989785211Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.992917673Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.995138642Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:43.005159661Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:43.008105698Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.016611791Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.028799367Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:43.032269946Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:43.039433349Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:43.069911486Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:43.0770349Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:43.079392866Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:43.082258325Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:43.084116907Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:43.114774341Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:43.116546823Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.125597098Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.136610207Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:43.139100901Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:43.149194562Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:43.155616951Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:43.161737595Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:43.164168224Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.165881039Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.175466006Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:43.178642647Z 78 PC: 12bbd | Find first file (See above)
2018-12-25T12:42:43.184346679Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:43.852178889Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:43.86041413Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:43.863315044Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:43.865918737Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:43.869993598Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:43.871747828Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:43.878824022Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:43.88167734Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.886307104Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.890148035Z 26 PC: 12be4 | Set disk transfer address
2018-12-25T12:42:43.891778747Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-25T12:42:43.895185987Z 76 PC: 12a86 | Terminate with return code (Return code = '36')

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":15140,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:42:42.254813748Z 26 PC: 12baf | Set disk transfer address
2018-12-25T12:42:42.256983644Z 78 PC: 12bbd | Find first file
2018-12-25T12:42:42.263486781Z 67 PC: 12c00 | Get or set file attributes
2018-12-25T12:42:42.284614101Z 61 PC: 12c05 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:42:42.298412325Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-25T12:42:42.306664104Z 66 PC: 12c1b | Move file pointer
2018-12-25T12:42:42.308071671Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-25T12:42:42.310919371Z 66 PC: 12c56 | Move file pointer
2018-12-25T12:42:42.313677906Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-25T12:42:42.322749586Z 87 PC: 12c79 | Get or set file date and time
2018-12-25T12:42:42.324526195Z 62 PC: 12c7d | Close file
2018-12-25T12:42:42.333411249Z 67 PC: 12c8c | Get or set file attributes
2018-12-25T12:42:42.343495585Z 79 PC: 12bcf | Find next file
2018-12-25T12:42:42.346439082Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.357412715Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.364644331Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.371225901Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.373954064Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.376980329Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.378436875Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.387314957Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.389784263Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.397227364Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.407044723Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.410929202Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.420774209Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.427593153Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.434874752Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.436656803Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.439600086Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.442103252Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.450747147Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.452574963Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.461223449Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.4716349Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.474625169Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.485298442Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.492595955Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.497511548Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.499295714Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.501135612Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.502190308Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.508025061Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.511202666Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.516962077Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.537370608Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.55487635Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.570760488Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.586778151Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.595783364Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.597571049Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.600487213Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.602959013Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.840431587Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.84222777Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.918727491Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.925871749Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.930738175Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.942734894Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.953074908Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.961693036Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.963733006Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.966970072Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.968674166Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.978656377Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.9809222Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.989592526Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.00043806Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:43.018682667Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:43.028124183Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:43.039392198Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:43.056612584Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:43.058076723Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:43.060712966Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:43.062828443Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:43.070835474Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:43.072359533Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.081084924Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.093019727Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:43.095582634Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:43.106750869Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:43.11172638Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:43.117473531Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:43.119956169Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.122036161Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.136507327Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:43.140215551Z 78 PC: 12bbd | Find first file (See above)
2018-12-25T12:42:43.153964961Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:43.85226404Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:43.860013627Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:43.862972754Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:43.864751029Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:43.869275484Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:43.871380206Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:43.881552336Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:43.884178433Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.894522958Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.907116346Z 26 PC: 12be4 | Set disk transfer address
2018-12-25T12:42:43.909181408Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-25T12:42:43.917775027Z 76 PC: 12a86 | Terminate with return code (Return code = '36')

{"DateBased":true,"Day":1,"Month":1,"Year":1981,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":15140,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:42:42.400849453Z 26 PC: 12baf | Set disk transfer address
2018-12-25T12:42:42.40235315Z 78 PC: 12bbd | Find first file
2018-12-25T12:42:42.408962961Z 67 PC: 12c00 | Get or set file attributes
2018-12-25T12:42:42.618196242Z 61 PC: 12c05 | Open file (Filename = 'SLEEP.COM')
2018-12-25T12:42:42.623147673Z 63 PC: 12c12 | Read file or device (Read 5 bytes on handle 5)
2018-12-25T12:42:42.628206982Z 66 PC: 12c1b | Move file pointer
2018-12-25T12:42:42.629714115Z 64 PC: 12c4d | Write file or device (Write 5 bytes on handle 5)
2018-12-25T12:42:42.635271568Z 66 PC: 12c56 | Move file pointer
2018-12-25T12:42:42.640860229Z 64 PC: 12c6c | Write file or device (Write 1125 bytes on handle 5)
2018-12-25T12:42:42.651175264Z 87 PC: 12c79 | Get or set file date and time
2018-12-25T12:42:42.653235914Z 62 PC: 12c7d | Close file
2018-12-25T12:42:42.664815511Z 67 PC: 12c8c | Get or set file attributes
2018-12-25T12:42:42.676053082Z 79 PC: 12bcf | Find next file
2018-12-25T12:42:42.679204171Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.69108388Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.699526911Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.707138269Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.710355704Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.713732236Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.715692874Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.726249223Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.729237426Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.738157354Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.749307647Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.753048362Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.764871476Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.772731003Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.781069565Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.783068461Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.786390103Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.789008908Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.798686477Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.800586334Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.809835339Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.821909126Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.825966972Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.83710771Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.845269196Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.853529059Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.857540041Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.860819816Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.862731023Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.87416466Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.876612805Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.885392123Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.897187151Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.901801554Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:42.913109824Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:42.921629404Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:42.934280285Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:42.936482942Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:42.93998339Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:42.943420989Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:42.96346433Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:42.965042515Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:42.975309143Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:42.984662768Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:42.986775703Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:43.002422818Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:43.00773701Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:43.012577379Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:43.014097503Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:43.021916656Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:43.023847667Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:43.224372094Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:43.227825162Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.335898487Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.355481711Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:43.361123962Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:43.377525937Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:43.387325562Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:43.396261286Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:43.398505316Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:43.402818542Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:43.404767731Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:43.418329539Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:43.420496396Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.438432753Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.455893316Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:43.459828507Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:43.472335331Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:43.483763984Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:43.487092264Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:43.488994266Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.492252691Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.503338716Z 79 PC: 12bcf | Find next file (See above)
2018-12-25T12:42:43.506984089Z 78 PC: 12bbd | Find first file (See above)
2018-12-25T12:42:43.512585685Z 67 PC: 12c00 | Get or set file attributes (See above)
2018-12-25T12:42:43.860735026Z 61 PC: 12c05 | Open file (See above)
2018-12-25T12:42:43.868638113Z 63 PC: 12c12 | Read file or device (See above)
2018-12-25T12:42:43.872114965Z 66 PC: 12c1b | Move file pointer (See above)
2018-12-25T12:42:43.875631495Z 64 PC: 12c4d | Write file or device (See above)
2018-12-25T12:42:43.879261989Z 66 PC: 12c56 | Move file pointer (See above)
2018-12-25T12:42:43.882081474Z 64 PC: 12c6c | Write file or device (See above)
2018-12-25T12:42:43.893899657Z 87 PC: 12c79 | Get or set file date and time (See above)
2018-12-25T12:42:43.896276215Z 62 PC: 12c7d | Close file (See above)
2018-12-25T12:42:43.90423895Z 67 PC: 12c8c | Get or set file attributes (See above)
2018-12-25T12:42:43.911865293Z 26 PC: 12be4 | Set disk transfer address
2018-12-25T12:42:43.913501417Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-25T12:42:43.919667667Z 76 PC: 12a86 | Terminate with return code (Return code = '36')