.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-17T22:33:06.343000309Z | 53 | PC: 136ef | Get interrupt vector (Interrupt = '33' AKA 'Random read') |
2018-12-17T22:33:06.345401583Z | 61 | PC: 138b6 | Open file (Filename = 'C:\COMMAND.COM') |
2018-12-17T22:33:06.353169505Z | 66 | PC: 138b6 | Move file pointer |
2018-12-17T22:33:06.355508314Z | 66 | PC: 138b6 | Move file pointer |
2018-12-17T22:33:06.357851114Z | 63 | PC: 138b6 | Read file or device (Read 6 bytes on handle 5) |
2018-12-17T22:33:06.36145556Z | 62 | PC: 138b6 | Close file |
2018-12-17T22:33:06.363829394Z | 51 | PC: 138b6 | Get or set Ctrl-Break |
2018-12-17T22:33:06.365017039Z | 51 | PC: 138b6 | Get or set Ctrl-Break |
2018-12-17T22:33:06.367315816Z | 67 | PC: 138b6 | Get or set file attributes |
2018-12-17T22:33:06.372974473Z | 61 | PC: 138b6 | Open file (Filename = '�') |
2018-12-17T22:33:06.378979423Z | 87 | PC: 138b6 | Get or set file date and time |
2018-12-17T22:33:06.381743891Z | 63 | PC: 138b6 | Read file or device (Read 3 bytes on handle 5) |
2018-12-17T22:33:06.384603504Z | 66 | PC: 138b6 | Move file pointer |
2018-12-17T22:33:06.38626078Z | 64 | PC: 138b6 | Write file or device (Write 1752 bytes on handle 5) |
2018-12-17T22:33:07.057466915Z | 66 | PC: 138b6 | Move file pointer |
2018-12-17T22:33:07.060200391Z | 64 | PC: 138b6 | Write file or device (Write 3 bytes on handle 5) |
2018-12-17T22:33:07.06415433Z | 87 | PC: 138b6 | Get or set file date and time |
2018-12-17T22:33:07.066589804Z | 62 | PC: 138b6 | Close file |
2018-12-17T22:33:07.076752045Z | 51 | PC: 138b6 | Get or set Ctrl-Break |
2018-12-17T22:33:07.101727366Z | 47 | PC: 138b6 | Get disk transfer address |