Sample viewer




Time Syscall Op Syscall Name
2018-12-17T23:08:08.278428541Z 44 PC: 12b97 | Get time 0x12b97: cmp byte ptr [0x106], 0
0x12b9c: je 0x12ba3
0x12b9e: cmp dh, 0xf
0x12ba1: jg 0x12bac
0x12ba3: cmp dl, 0
0x12ba6: je 0x12b93
0x12ba8: mov byte ptr [0x106], dl
0x12bac: mov byte ptr [0x248], 0
0x12bb1: mov byte ptr [0x249], 4
0x12bb6: mov byte ptr [0x252], 0
0x12bbb: mov cx, 0x27
0x12bbe: mov dx, 0x131
0x12bc1: mov ah, 0x4e
0x12bc3: int 0x21
0x12bc5: cmp ax, 0x12
0x12bc8: je 0x12bcd
0x12bca: call 0x12bef
0x12bcd: mov cx, 0x27
0x12bd0: mov dx, 0x137
0x12bd3: mov ah, 0x4e
2018-12-17T23:08:08.280702391Z 78 PC: 12bc5 | Find first file
2018-12-17T23:08:08.286391533Z 78 PC: 12bd7 | Find first file
2018-12-17T23:08:08.291937534Z 67 PC: 12c10 | Get or set file attributes
2018-12-17T23:08:08.311106868Z 61 PC: 12c16 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:08:08.322538958Z 63 PC: 12c25 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T23:08:08.328588125Z 62 PC: 12c59 | Close file
2018-12-17T23:08:08.330182308Z 61 PC: 12c62 | Open file (Filename = 'SLEEP.COM')
2018-12-17T23:08:08.336986378Z 64 PC: 12a5a | Write file or device (Write 666 bytes on handle 5)
2018-12-17T23:08:08.344951394Z 87 PC: 12c8a | Get or set file date and time
2018-12-17T23:08:08.346254836Z 62 PC: 12c92 | Close file
2018-12-17T23:08:08.354171351Z 67 PC: 12c9f | Get or set file attributes
2018-12-17T23:08:08.358646115Z 79 PC: 12c49 | Find next file
2018-12-17T23:08:08.361021821Z 67 PC: 12c10 | Get or set file attributes
2018-12-17T23:08:08.370964561Z 61 PC: 12c16 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:08:08.382609879Z 63 PC: 12c25 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T23:08:08.388772583Z 62 PC: 12c59 | Close file
2018-12-17T23:08:08.391479071Z 61 PC: 12c62 | Open file (Filename = 'PRINT.COM')
2018-12-17T23:08:08.398610288Z 64 PC: 12a5a | Write file or device (Write 666 bytes on handle 5)
2018-12-17T23:08:08.406690678Z 87 PC: 12c8a | Get or set file date and time
2018-12-17T23:08:08.409166481Z 62 PC: 12c92 | Close file
2018-12-17T23:08:08.416660396Z 67 PC: 12c9f | Get or set file attributes
2018-12-17T23:08:08.421217337Z 79 PC: 12c49 | Find next file
2018-12-17T23:08:08.423662358Z 67 PC: 12c10 | Get or set file attributes
2018-12-17T23:08:08.430331801Z 61 PC: 12c16 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:08:08.438236706Z 63 PC: 12c25 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T23:08:08.444773454Z 62 PC: 12c59 | Close file
2018-12-17T23:08:08.448046252Z 61 PC: 12c62 | Open file (Filename = 'HELLO.COM')
2018-12-17T23:08:08.454715415Z 64 PC: 12a5a | Write file or device (Write 666 bytes on handle 5)
2018-12-17T23:08:08.462771474Z 87 PC: 12c8a | Get or set file date and time
2018-12-17T23:08:08.465341834Z 62 PC: 12c92 | Close file
2018-12-17T23:08:08.473434088Z 67 PC: 12c9f | Get or set file attributes
2018-12-17T23:08:08.478660554Z 79 PC: 12c49 | Find next file
2018-12-17T23:08:08.482314705Z 67 PC: 12c10 | Get or set file attributes
2018-12-17T23:08:08.491934795Z 61 PC: 12c16 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:08:08.503142992Z 63 PC: 12c25 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T23:08:08.510801604Z 62 PC: 12c59 | Close file
2018-12-17T23:08:08.51248718Z 61 PC: 12c62 | Open file (Filename = 'PHANG.COM')
2018-12-17T23:08:08.51919846Z 64 PC: 12a5a | Write file or device (Write 666 bytes on handle 5)
2018-12-17T23:08:08.528066998Z 87 PC: 12c8a | Get or set file date and time
2018-12-17T23:08:08.529474003Z 62 PC: 12c92 | Close file
2018-12-17T23:08:08.53692758Z 67 PC: 12c9f | Get or set file attributes
2018-12-17T23:08:08.542066421Z 9 PC: 12ccd | Display string (String= ' Program too big to fit in memory')
2018-12-17T23:08:08.546085913Z 76 PC: 12cd1 | Terminate with return code (Return code = '36')