Sample viewer




Time Syscall Op Syscall Name
2018-12-17T22:47:18.658664448Z 44 PC: 12b24 | Get time 0x12b24: cmp byte ptr [0x106], 0
0x12b29: je 0x12b2b
0x12b2b: cmp dl, 0
0x12b2e: je 0x12b20
0x12b30: mov byte ptr [0x106], dl
0x12b34: mov byte ptr [0x169], 0
0x12b39: mov byte ptr [0x16a], 2
0x12b3e: mov byte ptr [0x173], 0
0x12b43: mov cx, 0x27
0x12b46: mov dx, 0x146
0x12b49: mov ah, 0x4e
0x12b4b: int 0x21
0x12b4d: cmp ax, 0x12
0x12b50: je 0x12b55
0x12b52: call 0x12b77
0x12b55: mov cx, 0x27
0x12b58: mov dx, 0x14c
0x12b5b: mov ah, 0x4e
0x12b5d: int 0x21
0x12b5f: cmp ax, 0x12
2018-12-17T22:47:18.661672909Z 78 PC: 12b4d | Find first file
2018-12-17T22:47:18.669970292Z 78 PC: 12b5f | Find first file
2018-12-17T22:47:18.677144106Z 67 PC: 12b98 | Get or set file attributes
2018-12-17T22:47:18.696922885Z 61 PC: 12b9e | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:47:18.705298446Z 63 PC: 12bad | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:47:18.713103332Z 62 PC: 12be1 | Close file
2018-12-17T22:47:18.715397191Z 61 PC: 12bea | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:47:18.724379884Z 64 PC: 12a65 | Write file or device (Write 534 bytes on handle 5)
2018-12-17T22:47:18.740439839Z 87 PC: 12c12 | Get or set file date and time
2018-12-17T22:47:18.742457287Z 62 PC: 12c1a | Close file
2018-12-17T22:47:18.751728844Z 67 PC: 12c27 | Get or set file attributes
2018-12-17T22:47:18.757062906Z 79 PC: 12bd1 | Find next file
2018-12-17T22:47:18.760015923Z 67 PC: 12b98 | Get or set file attributes
2018-12-17T22:47:18.774524087Z 61 PC: 12b9e | Open file (Filename = 'PRINT.COM')
2018-12-17T22:47:18.782066068Z 63 PC: 12bad | Read file or device (Read 20 bytes on handle 5)
2018-12-17T22:47:18.789147658Z 62 PC: 12be1 | Close file
2018-12-17T22:47:18.791207998Z 61 PC: 12bea | Open file (Filename = 'PRINT.COM')
2018-12-17T22:47:18.80004853Z 64 PC: 12a65 | Write file or device (Write 534 bytes on handle 5)
2018-12-17T22:47:18.809926164Z 87 PC: 12c12 | Get or set file date and time
2018-12-17T22:47:18.81212492Z 62 PC: 12c1a | Close file
2018-12-17T22:47:18.827294311Z 67 PC: 12c27 | Get or set file attributes