Sample viewer




Time Syscall Op Syscall Name
2018-12-17T22:10:13.702865333Z 44 PC: 12b37 | Get time 0x12b37: cmp byte ptr [0x131], 0
0x12b3c: je 0x12b43
0x12b3e: cmp dh, 0xf
0x12b41: jg 0x12b4c
0x12b43: cmp dl, 0
0x12b46: je 0x12b33
0x12b48: mov byte ptr [0x131], dl
0x12b4c: mov byte ptr [0x1e8], 0
0x12b51: mov byte ptr [0x1e9], 4
0x12b56: mov byte ptr [0x1f2], 0
0x12b5b: mov cx, 0x27
0x12b5e: mov dx, 0x132
0x12b61: mov ah, 0x4e
0x12b63: int 0x21
0x12b65: cmp ax, 0x12
0x12b68: je 0x12b6d
0x12b6a: call 0x12b8f
0x12b6d: mov cx, 0x27
0x12b70: mov dx, 0x138
0x12b73: mov ah, 0x4e
2018-12-17T22:10:13.705861247Z 78 PC: 12b65 | Find first file
2018-12-17T22:10:13.711556678Z 78 PC: 12b77 | Find first file
2018-12-17T22:10:13.717149317Z 67 PC: 12bb0 | Get or set file attributes
2018-12-17T22:10:13.736405953Z 61 PC: 12bb6 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:10:13.742787193Z 63 PC: 12bc5 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:10:13.749015172Z 62 PC: 12bf9 | Close file
2018-12-17T22:10:13.751357629Z 61 PC: 12c02 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:10:13.758125798Z 64 PC: 12a59 | Write file or device (Write 555 bytes on handle 5)
2018-12-17T22:10:13.766199326Z 87 PC: 12c2a | Get or set file date and time
2018-12-17T22:10:13.768108721Z 62 PC: 12c32 | Close file
2018-12-17T22:10:13.77556197Z 67 PC: 12c3f | Get or set file attributes
2018-12-17T22:10:13.780183355Z 79 PC: 12be9 | Find next file
2018-12-17T22:10:13.783383814Z 67 PC: 12bb0 | Get or set file attributes
2018-12-17T22:10:13.795876841Z 61 PC: 12bb6 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:10:13.802312087Z 63 PC: 12bc5 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:10:13.808449579Z 62 PC: 12bf9 | Close file
2018-12-17T22:10:13.810384456Z 61 PC: 12c02 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:10:13.817222188Z 64 PC: 12a59 | Write file or device (Write 555 bytes on handle 5)
2018-12-17T22:10:13.825430213Z 87 PC: 12c2a | Get or set file date and time
2018-12-17T22:10:13.8282055Z 62 PC: 12c32 | Close file
2018-12-17T22:10:13.836012152Z 67 PC: 12c3f | Get or set file attributes
2018-12-17T22:10:13.841096901Z 79 PC: 12be9 | Find next file
2018-12-17T22:10:13.844541575Z 67 PC: 12bb0 | Get or set file attributes
2018-12-17T22:10:13.85647456Z 61 PC: 12bb6 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:10:13.863452323Z 63 PC: 12bc5 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:10:13.870575313Z 62 PC: 12bf9 | Close file
2018-12-17T22:10:13.872372839Z 61 PC: 12c02 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:10:13.879061679Z 64 PC: 12a59 | Write file or device (Write 555 bytes on handle 5)
2018-12-17T22:10:13.8876682Z 87 PC: 12c2a | Get or set file date and time
2018-12-17T22:10:13.889068836Z 62 PC: 12c32 | Close file
2018-12-17T22:10:13.896523259Z 67 PC: 12c3f | Get or set file attributes
2018-12-17T22:10:13.910999783Z 79 PC: 12be9 | Find next file
2018-12-17T22:10:13.913778367Z 67 PC: 12bb0 | Get or set file attributes
2018-12-17T22:10:13.923366442Z 61 PC: 12bb6 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:10:13.935415932Z 63 PC: 12bc5 | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:10:13.939462201Z 62 PC: 12bf9 | Close file
2018-12-17T22:10:13.940702876Z 61 PC: 12c02 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:10:13.9533427Z 64 PC: 12a59 | Write file or device (Write 555 bytes on handle 5)
2018-12-17T22:10:13.961462327Z 87 PC: 12c2a | Get or set file date and time
2018-12-17T22:10:13.962775521Z 62 PC: 12c32 | Close file
2018-12-17T22:10:13.970914163Z 67 PC: 12c3f | Get or set file attributes
2018-12-17T22:10:13.976032076Z 76 PC: 12c6b | Terminate with return code (Return code = '5')