.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-17T22:40:14.335085864Z | 26 | PC: 12e43 | Set disk transfer address |
2018-12-17T22:40:14.336966836Z | 78 | PC: 12e53 | Find first file |
2018-12-17T22:40:14.344581985Z | 61 | PC: 12eb3 | Open file (Filename = 'SLEEP.COM') |
2018-12-17T22:40:14.351853342Z | 87 | PC: 12ebf | Get or set file date and time |
2018-12-17T22:40:14.353732513Z | 63 | PC: 12ed0 | Read file or device (Read 3 bytes on handle 5) |
2018-12-17T22:40:14.360816636Z | 66 | PC: 12ee4 | Move file pointer |
2018-12-17T22:40:14.362280491Z | 64 | PC: 12f0a | Write file or device (Write 341 bytes on handle 5) |
2018-12-17T22:40:14.790862522Z | 66 | PC: 12f1e | Move file pointer |
2018-12-17T22:40:14.795111165Z | 64 | PC: 12f2c | Write file or device (Write 3 bytes on handle 5) |
2018-12-17T22:40:14.802358752Z | 87 | PC: 12f45 | Get or set file date and time |
2018-12-17T22:40:14.803977296Z | 62 | PC: 12f49 | Close file |
2018-12-17T22:40:14.813158902Z | 26 | PC: 12f50 | Set disk transfer address |
2018-12-17T22:40:14.814780128Z | 9 | PC: 12b36 | Display string (String= ' YOU HAVE JUST RELEASED A VIRUS! Entry=3h, Size=1000, Stack=0, Overlay(0)=0 not loaded, Fill=FFFF* COM file, code at start, JMP at start, SS:SP != CS:IP ') |
2018-12-17T22:40:14.828087687Z | 76 | PC: 12b3a | Terminate with return code (Return code = '36') |