Sample viewer




Time Syscall Op Syscall Name
2018-12-17T22:23:19.073333964Z 44 PC: 12ab5 | Get time 0x12ab5: cmp byte ptr [0x106], 0
0x12aba: je 0x12abc
0x12abc: cmp dl, 0
0x12abf: je 0x12ab1
0x12ac1: mov byte ptr [0x106], dl
0x12ac5: mov byte ptr [0x166], 0
0x12aca: mov byte ptr [0x167], 2
0x12acf: mov byte ptr [0x170], 0
0x12ad4: mov cx, 0x27
0x12ad7: mov dx, 0x143
0x12ada: mov ah, 0x4e
0x12adc: int 0x21
0x12ade: cmp ax, 0x12
0x12ae1: je 0x12ae6
0x12ae3: call 0x12b08
0x12ae6: mov cx, 0x27
0x12ae9: mov dx, 0x149
0x12aec: mov ah, 0x4e
0x12aee: int 0x21
0x12af0: cmp ax, 0x12
2018-12-17T22:23:19.075647826Z 78 PC: 12ade | Find first file
2018-12-17T22:23:19.082309605Z 78 PC: 12af0 | Find first file
2018-12-17T22:23:19.089060225Z 67 PC: 12b29 | Get or set file attributes
2018-12-17T22:23:19.111486936Z 61 PC: 12b2f | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:23:19.130749348Z 63 PC: 12b3e | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:23:19.138491024Z 62 PC: 12b72 | Close file
2018-12-17T22:23:19.140871351Z 61 PC: 12b7b | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:23:19.155408648Z 64 PC: 12a62 | Write file or device (Write 666 bytes on handle 5)
2018-12-17T22:23:19.171620386Z 87 PC: 12ba3 | Get or set file date and time
2018-12-17T22:23:19.174165936Z 62 PC: 12bab | Close file
2018-12-17T22:23:19.182763967Z 67 PC: 12bb8 | Get or set file attributes
2018-12-17T22:23:19.189122782Z 79 PC: 12b62 | Find next file
2018-12-17T22:23:19.192260191Z 67 PC: 12b29 | Get or set file attributes
2018-12-17T22:23:19.203028702Z 61 PC: 12b2f | Open file (Filename = 'PRINT.COM')
2018-12-17T22:23:19.211321747Z 63 PC: 12b3e | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:23:19.218601431Z 62 PC: 12b72 | Close file
2018-12-17T22:23:19.220535816Z 61 PC: 12b7b | Open file (Filename = 'PRINT.COM')
2018-12-17T22:23:19.229193752Z 64 PC: 12a62 | Write file or device (Write 666 bytes on handle 5)
2018-12-17T22:23:19.243434473Z 87 PC: 12ba3 | Get or set file date and time
2018-12-17T22:23:19.245635796Z 62 PC: 12bab | Close file
2018-12-17T22:23:19.254815395Z 67 PC: 12bb8 | Get or set file attributes