.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-17T22:45:40.320777295Z | 44 | PC: 12ba6 | Get time 0x12ba6: cmp byte ptr [0x103], 0 0x12bab: je 0x12bb2 0x12bad: cmp dh, 0xf 0x12bb0: jg 0x12bbb 0x12bb2: cmp dl, 0 0x12bb5: je 0x12ba2 0x12bb7: mov byte ptr [0x103], dl 0x12bbb: mov byte ptr [0x257], 0 0x12bc0: mov byte ptr [0x258], 4 0x12bc5: mov byte ptr [0x261], 0 0x12bca: mov cx, 0x27 0x12bcd: mov dx, 0x134 0x12bd0: mov ah, 0x4e 0x12bd2: int 0x21 0x12bd4: cmp ax, 0x12 0x12bd7: je 0x12bdc 0x12bd9: call 0x12bfe 0x12bdc: mov cx, 0x27 0x12bdf: mov dx, 0x13a 0x12be2: mov ah, 0x4e |
2018-12-17T22:45:40.323888308Z | 78 | PC: 12bd4 | Find first file |
2018-12-17T22:45:40.332918318Z | 78 | PC: 12be6 | Find first file |
2018-12-17T22:45:40.339698822Z | 67 | PC: 12c1f | Get or set file attributes |
2018-12-17T22:45:40.355728448Z | 61 | PC: 12c25 | Open file (Filename = 'SLEEP.COM') |
2018-12-17T22:45:40.363733723Z | 63 | PC: 12c34 | Read file or device (Read 20 bytes on handle 5) |
2018-12-17T22:45:40.37098373Z | 62 | PC: 12c68 | Close file |
2018-12-17T22:45:40.373430656Z | 61 | PC: 12c71 | Open file (Filename = 'SLEEP.COM') |
2018-12-17T22:45:40.383323155Z | 64 | PC: 12a5d | Write file or device (Write 666 bytes on handle 5) |
2018-12-17T22:45:40.393189014Z | 87 | PC: 12c99 | Get or set file date and time |
2018-12-17T22:45:40.395283919Z | 62 | PC: 12ca1 | Close file |
2018-12-17T22:45:40.40678012Z | 67 | PC: 12cae | Get or set file attributes |
2018-12-17T22:45:40.418970315Z | 79 | PC: 12c58 | Find next file |
2018-12-17T22:45:40.421898425Z | 67 | PC: 12c1f | Get or set file attributes |
2018-12-17T22:45:40.433364771Z | 61 | PC: 12c25 | Open file (Filename = 'PRINT.COM') |
2018-12-17T22:45:40.440602604Z | 63 | PC: 12c34 | Read file or device (Read 20 bytes on handle 5) |
2018-12-17T22:45:40.44843781Z | 62 | PC: 12c68 | Close file |
2018-12-17T22:45:40.451214294Z | 61 | PC: 12c71 | Open file (Filename = 'PRINT.COM') |
2018-12-17T22:45:40.459256489Z | 64 | PC: 12a5d | Write file or device (Write 666 bytes on handle 5) |
2018-12-17T22:45:40.487170295Z | 87 | PC: 12c99 | Get or set file date and time |
2018-12-17T22:45:40.494609417Z | 62 | PC: 12ca1 | Close file |
2018-12-17T22:45:40.508720129Z | 67 | PC: 12cae | Get or set file attributes |
2018-12-17T22:45:40.514491307Z | 79 | PC: 12c58 | Find next file |
2018-12-17T22:45:40.517635924Z | 67 | PC: 12c1f | Get or set file attributes |
2018-12-17T22:45:40.543005912Z | 61 | PC: 12c25 | Open file (Filename = 'HELLO.COM') |
2018-12-17T22:45:40.550388798Z | 63 | PC: 12c34 | Read file or device (Read 20 bytes on handle 5) |
2018-12-17T22:45:40.558395336Z | 62 | PC: 12c68 | Close file |
2018-12-17T22:45:40.56136329Z | 61 | PC: 12c71 | Open file (Filename = 'HELLO.COM') |
2018-12-17T22:45:40.569002427Z | 64 | PC: 12a5d | Write file or device (Write 666 bytes on handle 5) |
2018-12-17T22:45:40.597997504Z | 87 | PC: 12c99 | Get or set file date and time |
2018-12-17T22:45:40.601293245Z | 62 | PC: 12ca1 | Close file |
2018-12-17T22:45:40.638658752Z | 67 | PC: 12cae | Get or set file attributes |
2018-12-17T22:45:40.643768389Z | 79 | PC: 12c58 | Find next file |
2018-12-17T22:45:40.647703539Z | 67 | PC: 12c1f | Get or set file attributes |
2018-12-17T22:45:40.659963385Z | 61 | PC: 12c25 | Open file (Filename = 'PHANG.COM') |
2018-12-17T22:45:40.667426121Z | 63 | PC: 12c34 | Read file or device (Read 20 bytes on handle 5) |
2018-12-17T22:45:40.675788928Z | 62 | PC: 12c68 | Close file |
2018-12-17T22:45:40.67809547Z | 61 | PC: 12c71 | Open file (Filename = 'PHANG.COM') |
2018-12-17T22:45:40.685689672Z | 64 | PC: 12a5d | Write file or device (Write 666 bytes on handle 5) |
2018-12-17T22:45:40.705430759Z | 87 | PC: 12c99 | Get or set file date and time |
2018-12-17T22:45:40.709075855Z | 62 | PC: 12ca1 | Close file |
2018-12-17T22:45:40.795922265Z | 67 | PC: 12cae | Get or set file attributes |
2018-12-17T22:45:40.802004819Z | 9 | PC: 12cce | Display string (String= ' Program too big to fit in memory') |
2018-12-17T22:45:40.808372299Z | 76 | PC: 12cd2 | Terminate with return code (Return code = '36') |