.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-17T22:48:17.348162256Z | 26 | PC: 14bcf | Set disk transfer address |
2018-12-17T22:48:17.349455966Z | 78 | PC: 14bd8 | Find first file |
2018-12-17T22:48:17.35313605Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:17.353902436Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:17.355999083Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:17.356806226Z | 67 | PC: 14c04 | Get or set file attributes |
2018-12-17T22:48:18.074407149Z | 61 | PC: 14c09 | Open file (Filename = 'SLEEP.COM') |
2018-12-17T22:48:18.086740676Z | 63 | PC: 14c22 | Read file or device (Read 4 bytes on handle 5) |
2018-12-17T22:48:18.091271277Z | 66 | PC: 14c34 | Move file pointer |
2018-12-17T22:48:18.092560584Z | 87 | PC: 14c39 | Get or set file date and time |
2018-12-17T22:48:18.094696608Z | 64 | PC: 14c4c | Write file or device (Write 4 bytes on handle 5) |
2018-12-17T22:48:18.098394389Z | 66 | PC: 14c55 | Move file pointer |
2018-12-17T22:48:18.100136845Z | 64 | PC: 14c60 | Write file or device (Write 290 bytes on handle 5) |
2018-12-17T22:48:18.109250903Z | 44 | PC: 14c65 | Get time 0x14c65: mov cl, dl 0x14c67: mov al, cl 0x14c69: mov ax, 0x2c00 0x14c6c: int 0x21 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d |
2018-12-17T22:48:18.112558301Z | 44 | PC: 14c6e | Get time 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d 0x14c95: mov ah, 0x3b 0x14c97: int 0x21 0x14c99: jb 0x14c9e 0x14c9b: jmp 0x14bd0 |
2018-12-17T22:48:18.114678328Z | 64 | PC: 14c7c | Write file or device (Write 161 bytes on handle 5) |
2018-12-17T22:48:18.117304414Z | 87 | PC: 14c89 | Get or set file date and time |
2018-12-17T22:48:18.119737191Z | 62 | PC: 14c8d | Close file |
2018-12-17T22:48:18.127222415Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.129998329Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.132153783Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.133925346Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.134906398Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.137198184Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.138252814Z | 67 | PC: 14c04 | Get or set file attributes |
2018-12-17T22:48:18.146590304Z | 61 | PC: 14c09 | Open file (Filename = 'PRINT.COM') |
2018-12-17T22:48:18.15382154Z | 63 | PC: 14c22 | Read file or device (Read 4 bytes on handle 5) |
2018-12-17T22:48:18.160696454Z | 66 | PC: 14c34 | Move file pointer |
2018-12-17T22:48:18.162305388Z | 87 | PC: 14c39 | Get or set file date and time |
2018-12-17T22:48:18.164553816Z | 64 | PC: 14c4c | Write file or device (Write 4 bytes on handle 5) |
2018-12-17T22:48:18.167470466Z | 66 | PC: 14c55 | Move file pointer |
2018-12-17T22:48:18.169184889Z | 64 | PC: 14c60 | Write file or device (Write 290 bytes on handle 5) |
2018-12-17T22:48:18.18674148Z | 44 | PC: 14c65 | Get time 0x14c65: mov cl, dl 0x14c67: mov al, cl 0x14c69: mov ax, 0x2c00 0x14c6c: int 0x21 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d |
2018-12-17T22:48:18.189789855Z | 44 | PC: 14c6e | Get time 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d 0x14c95: mov ah, 0x3b 0x14c97: int 0x21 0x14c99: jb 0x14c9e 0x14c9b: jmp 0x14bd0 |
2018-12-17T22:48:18.192609486Z | 64 | PC: 14c7c | Write file or device (Write 161 bytes on handle 5) |
2018-12-17T22:48:18.197598194Z | 87 | PC: 14c89 | Get or set file date and time |
2018-12-17T22:48:18.199755649Z | 62 | PC: 14c8d | Close file |
2018-12-17T22:48:18.208196024Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.212163084Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.213528378Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.216114515Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.217961335Z | 67 | PC: 14c04 | Get or set file attributes |
2018-12-17T22:48:18.228408038Z | 61 | PC: 14c09 | Open file (Filename = 'HELLO.COM') |
2018-12-17T22:48:18.235242271Z | 63 | PC: 14c22 | Read file or device (Read 4 bytes on handle 5) |
2018-12-17T22:48:18.242112221Z | 66 | PC: 14c34 | Move file pointer |
2018-12-17T22:48:18.244382571Z | 87 | PC: 14c39 | Get or set file date and time |
2018-12-17T22:48:18.246072433Z | 64 | PC: 14c4c | Write file or device (Write 4 bytes on handle 5) |
2018-12-17T22:48:18.249189728Z | 66 | PC: 14c55 | Move file pointer |
2018-12-17T22:48:18.251752131Z | 64 | PC: 14c60 | Write file or device (Write 290 bytes on handle 5) |
2018-12-17T22:48:18.254695375Z | 44 | PC: 14c65 | Get time 0x14c65: mov cl, dl 0x14c67: mov al, cl 0x14c69: mov ax, 0x2c00 0x14c6c: int 0x21 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d |
2018-12-17T22:48:18.25709144Z | 44 | PC: 14c6e | Get time 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d 0x14c95: mov ah, 0x3b 0x14c97: int 0x21 0x14c99: jb 0x14c9e 0x14c9b: jmp 0x14bd0 |
2018-12-17T22:48:18.26047252Z | 64 | PC: 14c7c | Write file or device (Write 164 bytes on handle 5) |
2018-12-17T22:48:18.269038814Z | 87 | PC: 14c89 | Get or set file date and time |
2018-12-17T22:48:18.270832911Z | 62 | PC: 14c8d | Close file |
2018-12-17T22:48:18.27889135Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.281409718Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.282504823Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.285871877Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.2873022Z | 67 | PC: 14c04 | Get or set file attributes |
2018-12-17T22:48:18.297120207Z | 61 | PC: 14c09 | Open file (Filename = 'PHANG.COM') |
2018-12-17T22:48:18.304949393Z | 63 | PC: 14c22 | Read file or device (Read 4 bytes on handle 5) |
2018-12-17T22:48:18.31150538Z | 66 | PC: 14c34 | Move file pointer |
2018-12-17T22:48:18.313235097Z | 87 | PC: 14c39 | Get or set file date and time |
2018-12-17T22:48:18.315672099Z | 64 | PC: 14c4c | Write file or device (Write 4 bytes on handle 5) |
2018-12-17T22:48:18.318310318Z | 66 | PC: 14c55 | Move file pointer |
2018-12-17T22:48:18.3196722Z | 64 | PC: 14c60 | Write file or device (Write 290 bytes on handle 5) |
2018-12-17T22:48:18.323009233Z | 44 | PC: 14c65 | Get time 0x14c65: mov cl, dl 0x14c67: mov al, cl 0x14c69: mov ax, 0x2c00 0x14c6c: int 0x21 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d |
2018-12-17T22:48:18.325819678Z | 44 | PC: 14c6e | Get time 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d 0x14c95: mov ah, 0x3b 0x14c97: int 0x21 0x14c99: jb 0x14c9e 0x14c9b: jmp 0x14bd0 |
2018-12-17T22:48:18.328218985Z | 64 | PC: 14c7c | Write file or device (Write 39 bytes on handle 5) |
2018-12-17T22:48:18.331894247Z | 87 | PC: 14c89 | Get or set file date and time |
2018-12-17T22:48:18.334003536Z | 62 | PC: 14c8d | Close file |
2018-12-17T22:48:18.341925657Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.345473705Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.347240692Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.349954268Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.351576448Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.355107653Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.356519991Z | 67 | PC: 14c04 | Get or set file attributes |
2018-12-17T22:48:18.381509063Z | 61 | PC: 14c09 | Open file (Filename = 'PRINTA~1.COM') |
2018-12-17T22:48:18.388590792Z | 63 | PC: 14c22 | Read file or device (Read 4 bytes on handle 5) |
2018-12-17T22:48:18.39486881Z | 66 | PC: 14c34 | Move file pointer |
2018-12-17T22:48:18.396526845Z | 87 | PC: 14c39 | Get or set file date and time |
2018-12-17T22:48:18.398533419Z | 64 | PC: 14c4c | Write file or device (Write 4 bytes on handle 5) |
2018-12-17T22:48:18.401652031Z | 66 | PC: 14c55 | Move file pointer |
2018-12-17T22:48:18.403548572Z | 64 | PC: 14c60 | Write file or device (Write 290 bytes on handle 5) |
2018-12-17T22:48:18.407343975Z | 44 | PC: 14c65 | Get time 0x14c65: mov cl, dl 0x14c67: mov al, cl 0x14c69: mov ax, 0x2c00 0x14c6c: int 0x21 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d |
2018-12-17T22:48:18.409397258Z | 44 | PC: 14c6e | Get time 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d 0x14c95: mov ah, 0x3b 0x14c97: int 0x21 0x14c99: jb 0x14c9e 0x14c9b: jmp 0x14bd0 |
2018-12-17T22:48:18.411172512Z | 64 | PC: 14c7c | Write file or device (Write 172 bytes on handle 5) |
2018-12-17T22:48:18.413175979Z | 87 | PC: 14c89 | Get or set file date and time |
2018-12-17T22:48:18.414238359Z | 62 | PC: 14c8d | Close file |
2018-12-17T22:48:18.419475057Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.42191338Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.422895756Z | 67 | PC: 14c04 | Get or set file attributes |
2018-12-17T22:48:18.429553787Z | 61 | PC: 14c09 | Open file (Filename = 'MANDEL.COM') |
2018-12-17T22:48:18.434540131Z | 63 | PC: 14c22 | Read file or device (Read 4 bytes on handle 5) |
2018-12-17T22:48:18.438743252Z | 66 | PC: 14c34 | Move file pointer |
2018-12-17T22:48:18.439803437Z | 87 | PC: 14c39 | Get or set file date and time |
2018-12-17T22:48:18.441523237Z | 64 | PC: 14c4c | Write file or device (Write 4 bytes on handle 5) |
2018-12-17T22:48:18.443463996Z | 66 | PC: 14c55 | Move file pointer |
2018-12-17T22:48:18.444608499Z | 64 | PC: 14c60 | Write file or device (Write 290 bytes on handle 5) |
2018-12-17T22:48:18.45001213Z | 44 | PC: 14c65 | Get time 0x14c65: mov cl, dl 0x14c67: mov al, cl 0x14c69: mov ax, 0x2c00 0x14c6c: int 0x21 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d |
2018-12-17T22:48:18.45163566Z | 44 | PC: 14c6e | Get time 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d 0x14c95: mov ah, 0x3b 0x14c97: int 0x21 0x14c99: jb 0x14c9e 0x14c9b: jmp 0x14bd0 |
2018-12-17T22:48:18.453251528Z | 64 | PC: 14c7c | Write file or device (Write 172 bytes on handle 5) |
2018-12-17T22:48:18.455718582Z | 87 | PC: 14c89 | Get or set file date and time |
2018-12-17T22:48:18.45686247Z | 62 | PC: 14c8d | Close file |
2018-12-17T22:48:18.462323483Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.46488487Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.465817089Z | 67 | PC: 14c04 | Get or set file attributes |
2018-12-17T22:48:18.472017871Z | 61 | PC: 14c09 | Open file (Filename = 'PAH.COM') |
2018-12-17T22:48:18.480189348Z | 63 | PC: 14c22 | Read file or device (Read 4 bytes on handle 5) |
2018-12-17T22:48:18.484491262Z | 66 | PC: 14c34 | Move file pointer |
2018-12-17T22:48:18.485698112Z | 87 | PC: 14c39 | Get or set file date and time |
2018-12-17T22:48:18.488361898Z | 64 | PC: 14c4c | Write file or device (Write 4 bytes on handle 5) |
2018-12-17T22:48:18.491332257Z | 66 | PC: 14c55 | Move file pointer |
2018-12-17T22:48:18.492989939Z | 64 | PC: 14c60 | Write file or device (Write 290 bytes on handle 5) |
2018-12-17T22:48:18.496904446Z | 44 | PC: 14c65 | Get time 0x14c65: mov cl, dl 0x14c67: mov al, cl 0x14c69: mov ax, 0x2c00 0x14c6c: int 0x21 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d |
2018-12-17T22:48:18.499330369Z | 44 | PC: 14c6e | Get time 0x14c6e: mov cl, dl 0x14c70: add cl, al 0x14c72: ror cl, 1 0x14c74: xor ch, ch 0x14c76: xor dx, dx 0x14c78: mov ah, 0x40 0x14c7a: int 0x21 0x14c7c: mov cx, word ptr [0x212] 0x14c80: mov dx, word ptr [0x210] 0x14c84: mov ax, 0x5701 0x14c87: int 0x21 0x14c89: mov ah, 0x3e 0x14c8b: int 0x21 0x14c8d: mov ah, 0x4f 0x14c8f: jmp 0x14bd2 0x14c92: mov dx, 0x20d 0x14c95: mov ah, 0x3b 0x14c97: int 0x21 0x14c99: jb 0x14c9e 0x14c9b: jmp 0x14bd0 |
2018-12-17T22:48:18.501735068Z | 64 | PC: 14c7c | Write file or device (Write 175 bytes on handle 5) |
2018-12-17T22:48:18.504963755Z | 87 | PC: 14c89 | Get or set file date and time |
2018-12-17T22:48:18.506412142Z | 62 | PC: 14c8d | Close file |
2018-12-17T22:48:18.513480513Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.516921649Z | 47 | PC: 14be4 | Get disk transfer address |
2018-12-17T22:48:18.518057695Z | 67 | PC: 14c04 | Get or set file attributes |
2018-12-17T22:48:18.527851685Z | 61 | PC: 14c09 | Open file (Filename = 'TEST.COM') |
2018-12-17T22:48:18.534609139Z | 63 | PC: 14c22 | Read file or device (Read 4 bytes on handle 5) |
2018-12-17T22:48:18.540626778Z | 62 | PC: 14c8d | Close file |
2018-12-17T22:48:18.542179065Z | 79 | PC: 14bd8 | Find next file |
2018-12-17T22:48:18.544741195Z | 59 | PC: 14c99 | Change current directory |
2018-12-17T22:48:18.549789509Z | 26 | PC: 14ca5 | Set disk transfer address |