Sample viewer




Time Syscall Op Syscall Name
2018-12-17T22:48:21.394374528Z 72 PC: 15af8 | Allocate memory
2018-12-17T22:48:21.396808467Z 74 PC: 159f5 | Reallocate memory
2018-12-17T22:48:21.402037527Z 72 PC: 15af8 | Allocate memory
2018-12-17T22:48:21.404691654Z 67 PC: 9e015 | Get or set file attributes
2018-12-17T22:48:21.410914417Z 61 PC: 9e023 | Open file (Filename = '!èí')
2018-12-17T22:48:21.418152501Z 87 PC: 9e02c | Get or set file date and time
2018-12-17T22:48:21.419916961Z 62 PC: 9e03c | Close file
2018-12-17T22:48:21.422162896Z 67 PC: 9e048 | Get or set file attributes
2018-12-17T22:48:22.088471634Z 61 PC: 9e050 | Open file (Filename = '!èí')
2018-12-17T22:48:22.096915644Z 63 PC: 9ddec | Read file or device (Read 1477 bytes on handle 5)
2018-12-17T22:48:22.104873788Z 66 PC: 9de7e | Move file pointer
2018-12-17T22:48:22.107698892Z 64 PC: 9de35 | Write file or device (Write 1477 bytes on handle 5)
2018-12-17T22:48:22.12187472Z 66 PC: 9de7e | Move file pointer
2018-12-17T22:48:22.124911086Z 64 PC: 9de74 | Write file or device (Write 1476 bytes on handle 5)
2018-12-17T22:48:22.136294589Z 66 PC: 9de45 | Move file pointer
2018-12-17T22:48:22.138405629Z 87 PC: 9de54 | Get or set file date and time
2018-12-17T22:48:22.140562128Z 62 PC: 9de58 | Close file
2018-12-17T22:48:22.150452126Z 67 PC: 9de67 | Get or set file attributes
2018-12-17T22:48:22.160974366Z 61 PC: 15aa1 | Open file (Filename = 'C:\COMMAND.COM')
2018-12-17T22:48:22.168159195Z 62 PC: 15aa9 | Close file
2018-12-17T22:48:22.177055821Z 74 PC: 12a87 | Reallocate memory
2018-12-17T22:48:22.179794135Z 99 PC: 14af8 | Get DBCS lead byte table pointer
2018-12-17T22:48:22.181329124Z 68 PC: 14b14 | I/O control for devices (Set for = '')
2018-12-17T22:48:22.183474819Z 68 PC: 14b1f | I/O control for devices (Set for = '')
2018-12-17T22:48:22.186079084Z 68 PC: 14b2a | I/O control for devices (Set for = '')
2018-12-17T22:48:22.189603894Z 68 PC: 14b32 | I/O control for devices (Set for = 'Ãèbÿ´ègòtöS3ÛèÏã[rì2äèWò<t<uß6öu°è±Ãè>€>W')
2018-12-17T22:48:22.192620867Z 48 PC: 14b37 | Get DOS version
2018-12-17T22:48:22.195784868Z 64 PC: 14dc8 | Write file or device (Write 27 bytes on handle 2)
2018-12-17T22:48:22.202414916Z 37 PC: 159bd | Set interrupt vector (Interrupt = '0' AKA 'Program terminate')
2018-12-17T22:48:22.204194309Z 76 PC: 159a6 | Terminate with return code (Return code = '11')