Sample viewer

vx.netlux.org/Virus.DOS.Burger.512.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:58:47.554614319Z 25 PC: 12a56 | Get default drive
2018-12-17T21:58:47.556367125Z 71 PC: 12a67 | Get current directory
2018-12-17T21:58:47.55915339Z 14 PC: 12a6d | Set default drive (Drive = 'A')
2018-12-17T21:58:47.560374265Z 14 PC: 12abe | Set default drive (Drive = 'A')
2018-12-17T21:58:47.563691139Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:47.567628813Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:47.573698517Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:47.581242704Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:47.587428426Z 62 PC: 12b48 | Close file
2018-12-17T21:58:47.589218511Z 67 PC: 12b5c | Get or set file attributes
2018-12-17T21:58:47.599486816Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T21:58:47.619615393Z 61 PC: 12b6f | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:47.627523622Z 87 PC: 12b77 | Get or set file date and time
2018-12-17T21:58:47.629207801Z 64 PC: 12b9d | Write file or device (Write 512 bytes on handle 5)
2018-12-17T21:58:47.636936473Z 87 PC: 12ba5 | Get or set file date and time
2018-12-17T21:58:47.63844615Z 62 PC: 12ba9 | Close file
2018-12-17T21:58:47.645300193Z 14 PC: 12bc7 | Set default drive (Drive = 'A')
2018-12-17T21:58:47.647184148Z 59 PC: 12bce | Change current directory
2018-12-17T21:58:47.651268759Z 25 PC: 12a56 | Get default drive
2018-12-17T21:58:47.652605255Z 71 PC: 12a67 | Get current directory
2018-12-17T21:58:47.65650754Z 14 PC: 12a6d | Set default drive (Drive = 'A')
2018-12-17T21:58:47.657735174Z 14 PC: 12abe | Set default drive (Drive = 'A')
2018-12-17T21:58:47.659082711Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:47.668708738Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:47.67971978Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:47.686231771Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:47.702344584Z 62 PC: 12b48 | Close file
2018-12-17T21:58:47.7048305Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:47.707997309Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:47.71570265Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:47.722316274Z 62 PC: 12b48 | Close file
2018-12-17T21:58:47.724499318Z 67 PC: 12b5c | Get or set file attributes
2018-12-17T21:58:47.730777129Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T21:58:47.741124548Z 61 PC: 12b6f | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:47.752824262Z 87 PC: 12b77 | Get or set file date and time
2018-12-17T21:58:47.756044541Z 64 PC: 12b9d | Write file or device (Write 512 bytes on handle 5)
2018-12-17T21:58:47.763424753Z 87 PC: 12ba5 | Get or set file date and time
2018-12-17T21:58:47.765244915Z 62 PC: 12ba9 | Close file
2018-12-17T21:58:47.772290906Z 14 PC: 12bc7 | Set default drive (Drive = 'A')
2018-12-17T21:58:47.774449781Z 59 PC: 12bce | Change current directory
2018-12-17T21:58:47.778565626Z 25 PC: 12a56 | Get default drive
2018-12-17T21:58:47.779932984Z 71 PC: 12a67 | Get current directory
2018-12-17T21:58:47.783688388Z 14 PC: 12a6d | Set default drive (Drive = 'A')
2018-12-17T21:58:47.78522095Z 14 PC: 12abe | Set default drive (Drive = 'A')
2018-12-17T21:58:47.786755885Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:47.791729214Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:47.802415745Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:47.81343953Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:47.820742869Z 62 PC: 12b48 | Close file
2018-12-17T21:58:47.824169496Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:47.827174047Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:47.834546117Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:47.841056135Z 62 PC: 12b48 | Close file
2018-12-17T21:58:47.843671234Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:47.847409988Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:47.853813426Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:47.860128673Z 62 PC: 12b48 | Close file
2018-12-17T21:58:47.862882803Z 67 PC: 12b5c | Get or set file attributes
2018-12-17T21:58:47.868686863Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T21:58:47.878532331Z 61 PC: 12b6f | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:47.885924411Z 87 PC: 12b77 | Get or set file date and time
2018-12-17T21:58:47.887388023Z 64 PC: 12b9d | Write file or device (Write 512 bytes on handle 5)
2018-12-17T21:58:47.894871621Z 87 PC: 12ba5 | Get or set file date and time
2018-12-17T21:58:47.897495895Z 62 PC: 12ba9 | Close file
2018-12-17T21:58:47.904555699Z 14 PC: 12bc7 | Set default drive (Drive = 'A')
2018-12-17T21:58:47.905801351Z 59 PC: 12bce | Change current directory
2018-12-17T21:58:47.910466932Z 25 PC: 12a56 | Get default drive
2018-12-17T21:58:47.911550342Z 71 PC: 12a67 | Get current directory
2018-12-17T21:58:47.914225729Z 14 PC: 12a6d | Set default drive (Drive = 'A')
2018-12-17T21:58:47.916043177Z 14 PC: 12abe | Set default drive (Drive = 'A')
2018-12-17T21:58:47.91729488Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:47.921288991Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:47.932095901Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:47.943295316Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:47.949775341Z 62 PC: 12b48 | Close file
2018-12-17T21:58:47.95172716Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:47.954757722Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:47.961681496Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:47.968153471Z 62 PC: 12b48 | Close file
2018-12-17T21:58:47.970601171Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:47.973214574Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:47.979659719Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:47.986176029Z 62 PC: 12b48 | Close file
2018-12-17T21:58:47.988134542Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:47.99091317Z 61 PC: 12b36 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:47.998130825Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.004369625Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.006759656Z 67 PC: 12b5c | Get or set file attributes
2018-12-17T21:58:48.017610852Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T21:58:48.028260879Z 61 PC: 12b6f | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:48.035339801Z 87 PC: 12b77 | Get or set file date and time
2018-12-17T21:58:48.037224435Z 64 PC: 12b9d | Write file or device (Write 512 bytes on handle 5)
2018-12-17T21:58:48.044376084Z 87 PC: 12ba5 | Get or set file date and time
2018-12-17T21:58:48.0458944Z 62 PC: 12ba9 | Close file
2018-12-17T21:58:48.053243799Z 14 PC: 12bc7 | Set default drive (Drive = 'A')
2018-12-17T21:58:48.054563856Z 59 PC: 12bce | Change current directory
2018-12-17T21:58:48.058556447Z 25 PC: 12a56 | Get default drive
2018-12-17T21:58:48.060076224Z 71 PC: 12a67 | Get current directory
2018-12-17T21:58:48.062838388Z 14 PC: 12a6d | Set default drive (Drive = 'A')
2018-12-17T21:58:48.064475692Z 14 PC: 12abe | Set default drive (Drive = 'A')
2018-12-17T21:58:48.066474277Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:48.075125546Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:48.086024056Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:48.098264638Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.104390767Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.105969556Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.110640052Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:48.11701066Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.123157495Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.125565565Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.128079806Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:48.134314179Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.141227119Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.142985169Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.145517084Z 61 PC: 12b36 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:48.152356529Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.158859266Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.160426525Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.163670147Z 61 PC: 12b36 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:58:48.169932797Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.176054336Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.178376766Z 67 PC: 12b5c | Get or set file attributes
2018-12-17T21:58:48.183884936Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T21:58:48.193321175Z 61 PC: 12b6f | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:58:48.200378124Z 87 PC: 12b77 | Get or set file date and time
2018-12-17T21:58:48.201790299Z 64 PC: 12b9d | Write file or device (Write 512 bytes on handle 5)
2018-12-17T21:58:48.208687564Z 87 PC: 12ba5 | Get or set file date and time
2018-12-17T21:58:48.2111262Z 62 PC: 12ba9 | Close file
2018-12-17T21:58:48.234612674Z 14 PC: 12bc7 | Set default drive (Drive = 'A')
2018-12-17T21:58:48.235963235Z 59 PC: 12bce | Change current directory
2018-12-17T21:58:48.240680641Z 25 PC: 12a56 | Get default drive
2018-12-17T21:58:48.241948625Z 71 PC: 12a67 | Get current directory
2018-12-17T21:58:48.244646643Z 14 PC: 12a6d | Set default drive (Drive = 'A')
2018-12-17T21:58:48.245979356Z 14 PC: 12abe | Set default drive (Drive = 'A')
2018-12-17T21:58:48.247104994Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:48.251027242Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:48.255553132Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:48.263119451Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.267180256Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.269197446Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.271006992Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:48.278134995Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.283148887Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.28441986Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.286230954Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:48.29146026Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.297676884Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.298897022Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.300866403Z 61 PC: 12b36 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:48.304750588Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.308624524Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.31033462Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.312890904Z 61 PC: 12b36 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:58:48.319079183Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.32584299Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.327582461Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.33028447Z 61 PC: 12b36 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:58:48.337059763Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.343378104Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.345333234Z 67 PC: 12b5c | Get or set file attributes
2018-12-17T21:58:48.351579419Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T21:58:48.361603484Z 61 PC: 12b6f | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:58:48.36836405Z 87 PC: 12b77 | Get or set file date and time
2018-12-17T21:58:48.371059374Z 64 PC: 12b9d | Write file or device (Write 512 bytes on handle 5)
2018-12-17T21:58:48.378339191Z 87 PC: 12ba5 | Get or set file date and time
2018-12-17T21:58:48.380143689Z 62 PC: 12ba9 | Close file
2018-12-17T21:58:48.38817026Z 14 PC: 12bc7 | Set default drive (Drive = 'A')
2018-12-17T21:58:48.389744056Z 59 PC: 12bce | Change current directory
2018-12-17T21:58:48.393943393Z 25 PC: 12a56 | Get default drive
2018-12-17T21:58:48.396320744Z 71 PC: 12a67 | Get current directory
2018-12-17T21:58:48.399449048Z 14 PC: 12a6d | Set default drive (Drive = 'A')
2018-12-17T21:58:48.401059614Z 14 PC: 12abe | Set default drive (Drive = 'A')
2018-12-17T21:58:48.403570243Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:48.412119432Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:48.422718664Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:48.427741538Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.431895604Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.433614235Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.437086784Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:48.444189456Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.450837089Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.453363907Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.456295352Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:48.462908919Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.469449213Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.471104454Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.473747744Z 61 PC: 12b36 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:48.480518732Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.487054333Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.488658156Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.491235598Z 61 PC: 12b36 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:58:48.497432433Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.505729329Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.507529957Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.510020801Z 61 PC: 12b36 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:58:48.516187535Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.522838161Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.524476329Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.52699907Z 61 PC: 12b36 | Open file (Filename = 'PAH.COM')
2018-12-17T21:58:48.535214661Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.541413157Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.543031038Z 67 PC: 12b5c | Get or set file attributes
2018-12-17T21:58:48.549740393Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T21:58:48.559276174Z 61 PC: 12b6f | Open file (Filename = 'PAH.COM')
2018-12-17T21:58:48.565718111Z 87 PC: 12b77 | Get or set file date and time
2018-12-17T21:58:48.567653483Z 64 PC: 12b9d | Write file or device (Write 512 bytes on handle 5)
2018-12-17T21:58:48.574950587Z 87 PC: 12ba5 | Get or set file date and time
2018-12-17T21:58:48.576385467Z 62 PC: 12ba9 | Close file
2018-12-17T21:58:48.583986094Z 14 PC: 12bc7 | Set default drive (Drive = 'A')
2018-12-17T21:58:48.585055549Z 59 PC: 12bce | Change current directory
2018-12-17T21:58:48.588799766Z 25 PC: 12a56 | Get default drive
2018-12-17T21:58:48.590344801Z 71 PC: 12a67 | Get current directory
2018-12-17T21:58:48.592963776Z 14 PC: 12a6d | Set default drive (Drive = 'A')
2018-12-17T21:58:48.597886632Z 14 PC: 12abe | Set default drive (Drive = 'A')
2018-12-17T21:58:48.599004818Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:48.610869741Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:48.622762178Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:48.629733257Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.636338132Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.638921552Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.641457161Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:48.647878188Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.655149371Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.656779185Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.659261858Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:48.66654659Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.672986092Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.674748053Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.678027834Z 61 PC: 12b36 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:48.695841072Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.702534703Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.705434414Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.708151047Z 61 PC: 12b36 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:58:48.714514115Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.722199742Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.724332271Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.727289057Z 61 PC: 12b36 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:58:48.734499843Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.740846654Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.74254293Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.746159386Z 61 PC: 12b36 | Open file (Filename = 'PAH.COM')
2018-12-17T21:58:48.753170999Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.764573199Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.767102216Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.769746684Z 61 PC: 12b36 | Open file (Filename = 'TEST.COM')
2018-12-17T21:58:48.776025198Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.78282649Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.784479091Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.786879716Z 79 PC: 12aef | Find next file
2018-12-17T21:58:48.789799304Z 23 PC: 12a8e | Rename file
2018-12-17T21:58:48.795565316Z 44 PC: 12a96 | Get time 0x12a96: mov bx, word ptr cs:[0x297]
0x12a9b: mov al, byte ptr cs:[bx]
0x12a9e: mov bx, dx
0x12aa0: mov cx, 2
0x12aa3: mov dh, 0
0x12aa5: int 0x26
0x12aa7: mov bx, word ptr cs:[0x297]
0x12aac: dec bx
0x12aad: mov word ptr cs:[0x297], bx
0x12ab2: mov dl, byte ptr cs:[bx]
0x12ab5: jne 0x12aba
0x12ab7: jmp 0x12bb3
0x12aba: mov ah, 0xe
0x12abc: int 0x21
0x12abe: mov ah, 0x3b
0x12ac0: mov dx, 0x2ec
0x12ac3: int 0x21
0x12ac5: jmp 0x12b18
0x12ac7: nop
0x12ac8: mov ah, 0x17
2018-12-17T21:58:48.801546454Z 14 PC: 12abe | Set default drive (Drive = '@')
2018-12-17T21:58:48.803525518Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:48.807308577Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:48.820140577Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:48.827115306Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.833474511Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.835277106Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.837940346Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:48.844334439Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.851018704Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.852324993Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.854117424Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:48.858674595Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.864896931Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.866494432Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.869500309Z 61 PC: 12b36 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:48.875896884Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.883105116Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.885215676Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.887661487Z 61 PC: 12b36 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:58:48.894034305Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.900619579Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.901802277Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.90351285Z 61 PC: 12b36 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:58:48.908322473Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.91277648Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.914030239Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.916494031Z 61 PC: 12b36 | Open file (Filename = 'PAH.COM')
2018-12-17T21:58:48.922391876Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.928528735Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.930632761Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.933057432Z 61 PC: 12b36 | Open file (Filename = 'TEST.COM')
2018-12-17T21:58:48.939381002Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.94587593Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.947502778Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.950401261Z 79 PC: 12aef | Find next file
2018-12-17T21:58:48.952617871Z 23 PC: 12a8e | Rename file
2018-12-17T21:58:48.95826854Z 44 PC: 12a96 | Get time 0x12a96: mov bx, word ptr cs:[0x297]
0x12a9b: mov al, byte ptr cs:[bx]
0x12a9e: mov bx, dx
0x12aa0: mov cx, 2
0x12aa3: mov dh, 0
0x12aa5: int 0x26
0x12aa7: mov bx, word ptr cs:[0x297]
0x12aac: dec bx
0x12aad: mov word ptr cs:[0x297], bx
0x12ab2: mov dl, byte ptr cs:[bx]
0x12ab5: jne 0x12aba
0x12ab7: jmp 0x12bb3
0x12aba: mov ah, 0xe
0x12abc: int 0x21
0x12abe: mov ah, 0x3b
0x12ac0: mov dx, 0x2ec
0x12ac3: int 0x21
0x12ac5: jmp 0x12b18
0x12ac7: nop
0x12ac8: mov ah, 0x17
2018-12-17T21:58:48.960938558Z 14 PC: 12abe | Set default drive (Drive = 'D')
2018-12-17T21:58:48.962000218Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:48.965691782Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:48.971981183Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:48.983056168Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:48.989282785Z 62 PC: 12b48 | Close file
2018-12-17T21:58:48.991446653Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:48.994232861Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:49.011973419Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.019463556Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.021307148Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.02416127Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:49.031223105Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.037660885Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.040231714Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.042981854Z 61 PC: 12b36 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:49.049628872Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.056662985Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.058538203Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.061734214Z 61 PC: 12b36 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:58:49.068441612Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.075088129Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.076720128Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.08016468Z 61 PC: 12b36 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:58:49.086398397Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.093289761Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.095580536Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.098421143Z 61 PC: 12b36 | Open file (Filename = 'PAH.COM')
2018-12-17T21:58:49.104945326Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.112255074Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.114044255Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.11773392Z 61 PC: 12b36 | Open file (Filename = 'TEST.COM')
2018-12-17T21:58:49.124146488Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.130865832Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.133711626Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.137073316Z 79 PC: 12aef | Find next file
2018-12-17T21:58:49.139853328Z 23 PC: 12a8e | Rename file
2018-12-17T21:58:49.147237749Z 44 PC: 12a96 | Get time 0x12a96: mov bx, word ptr cs:[0x297]
0x12a9b: mov al, byte ptr cs:[bx]
0x12a9e: mov bx, dx
0x12aa0: mov cx, 2
0x12aa3: mov dh, 0
0x12aa5: int 0x26
0x12aa7: mov bx, word ptr cs:[0x297]
0x12aac: dec bx
0x12aad: mov word ptr cs:[0x297], bx
0x12ab2: mov dl, byte ptr cs:[bx]
0x12ab5: jne 0x12aba
0x12ab7: jmp 0x12bb3
0x12aba: mov ah, 0xe
0x12abc: int 0x21
0x12abe: mov ah, 0x3b
0x12ac0: mov dx, 0x2ec
0x12ac3: int 0x21
0x12ac5: jmp 0x12b18
0x12ac7: nop
0x12ac8: mov ah, 0x17
2018-12-17T21:58:49.150329305Z 14 PC: 12abe | Set default drive (Drive = 'C')
2018-12-17T21:58:49.151824413Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:49.156187072Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:49.161693111Z 61 PC: 12b36 | Open file (Filename = 'COMMAND.COM')
2018-12-17T21:58:49.167723256Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.174180492Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.176553698Z 67 PC: 12b5c | Get or set file attributes
2018-12-17T21:58:49.181916214Z 67 PC: 12b66 | Get or set file attributes
2018-12-17T21:58:49.846741951Z 61 PC: 12b6f | Open file (Filename = 'COMMAND.COM')
2018-12-17T21:58:49.852784202Z 87 PC: 12b77 | Get or set file date and time
2018-12-17T21:58:49.854164406Z 64 PC: 12b9d | Write file or device (Write 512 bytes on handle 5)
2018-12-17T21:58:49.861549726Z 87 PC: 12ba5 | Get or set file date and time
2018-12-17T21:58:49.863571096Z 62 PC: 12ba9 | Close file
2018-12-17T21:58:49.870315551Z 14 PC: 12bc7 | Set default drive (Drive = 'A')
2018-12-17T21:58:49.872010141Z 59 PC: 12bce | Change current directory
2018-12-17T21:58:49.876409167Z 25 PC: 12a56 | Get default drive
2018-12-17T21:58:49.878414179Z 71 PC: 12a67 | Get current directory
2018-12-17T21:58:49.881621501Z 14 PC: 12a6d | Set default drive (Drive = 'A')
2018-12-17T21:58:49.883177718Z 14 PC: 12abe | Set default drive (Drive = 'A')
2018-12-17T21:58:49.88583104Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:49.890405333Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:49.896312835Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:49.904188645Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.91071599Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.912381737Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.915403692Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:49.923508406Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.930569884Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.93480374Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.93835819Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:49.94576682Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.95267598Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.954600886Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.958450758Z 61 PC: 12b36 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:49.965089201Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.971326214Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.973699395Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.976461574Z 61 PC: 12b36 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:58:49.982919472Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:49.98994125Z 62 PC: 12b48 | Close file
2018-12-17T21:58:49.991658601Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:49.994392024Z 61 PC: 12b36 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:58:50.002501833Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.009771104Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.012503408Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.015099857Z 61 PC: 12b36 | Open file (Filename = 'PAH.COM')
2018-12-17T21:58:50.02242044Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.030345407Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.032313079Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.03519344Z 61 PC: 12b36 | Open file (Filename = 'TEST.COM')
2018-12-17T21:58:50.042817621Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.049702268Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.051410929Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.05460897Z 79 PC: 12aef | Find next file
2018-12-17T21:58:50.056708138Z 23 PC: 12a8e | Rename file
2018-12-17T21:58:50.062689965Z 44 PC: 12a96 | Get time 0x12a96: mov bx, word ptr cs:[0x297]
0x12a9b: mov al, byte ptr cs:[bx]
0x12a9e: mov bx, dx
0x12aa0: mov cx, 2
0x12aa3: mov dh, 0
0x12aa5: int 0x26
0x12aa7: mov bx, word ptr cs:[0x297]
0x12aac: dec bx
0x12aad: mov word ptr cs:[0x297], bx
0x12ab2: mov dl, byte ptr cs:[bx]
0x12ab5: jne 0x12aba
0x12ab7: jmp 0x12bb3
0x12aba: mov ah, 0xe
0x12abc: int 0x21
0x12abe: mov ah, 0x3b
0x12ac0: mov dx, 0x2ec
0x12ac3: int 0x21
0x12ac5: jmp 0x12b18
0x12ac7: nop
0x12ac8: mov ah, 0x17
2018-12-17T21:58:50.070225996Z 14 PC: 12abe | Set default drive (Drive = '@')
2018-12-17T21:58:50.071586279Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:50.075702319Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:50.082435455Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:50.088984302Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.0964158Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.098194699Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.100836692Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:50.105862957Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.109966506Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.111279434Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.113853413Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:50.120724429Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.126967851Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.129156405Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.132012553Z 61 PC: 12b36 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:50.139174721Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.145847098Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.147588058Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.150165869Z 61 PC: 12b36 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:58:50.156772083Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.163211235Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.166181354Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.168694547Z 61 PC: 12b36 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:58:50.174871674Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.181582978Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.183454239Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.1860709Z 61 PC: 12b36 | Open file (Filename = 'PAH.COM')
2018-12-17T21:58:50.190579614Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.196786745Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.198398431Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.201994636Z 61 PC: 12b36 | Open file (Filename = 'TEST.COM')
2018-12-17T21:58:50.208101228Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.214261243Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.215762643Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.217873733Z 79 PC: 12aef | Find next file
2018-12-17T21:58:50.220220845Z 23 PC: 12a8e | Rename file
2018-12-17T21:58:50.225835751Z 44 PC: 12a96 | Get time 0x12a96: mov bx, word ptr cs:[0x297]
0x12a9b: mov al, byte ptr cs:[bx]
0x12a9e: mov bx, dx
0x12aa0: mov cx, 2
0x12aa3: mov dh, 0
0x12aa5: int 0x26
0x12aa7: mov bx, word ptr cs:[0x297]
0x12aac: dec bx
0x12aad: mov word ptr cs:[0x297], bx
0x12ab2: mov dl, byte ptr cs:[bx]
0x12ab5: jne 0x12aba
0x12ab7: jmp 0x12bb3
0x12aba: mov ah, 0xe
0x12abc: int 0x21
0x12abe: mov ah, 0x3b
0x12ac0: mov dx, 0x2ec
0x12ac3: int 0x21
0x12ac5: jmp 0x12b18
0x12ac7: nop
0x12ac8: mov ah, 0x17
2018-12-17T21:58:50.22736512Z 14 PC: 12abe | Set default drive (Drive = 'D')
2018-12-17T21:58:50.228736791Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:50.231444407Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:50.23510599Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:50.246452318Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.252680847Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.254662188Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.257252135Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:50.268504096Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.27501782Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.283594285Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.286069605Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:50.292629123Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.298970778Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.300542144Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.314009929Z 61 PC: 12b36 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:50.335705322Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.343196851Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.345493075Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.348348598Z 61 PC: 12b36 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:58:50.355811379Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.362208114Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.36396725Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.367114988Z 61 PC: 12b36 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:58:50.37367856Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.38020559Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.382123424Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.384553895Z 61 PC: 12b36 | Open file (Filename = 'PAH.COM')
2018-12-17T21:58:50.392314261Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.398698783Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.400352407Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.403213107Z 61 PC: 12b36 | Open file (Filename = 'TEST.COM')
2018-12-17T21:58:50.410374484Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.417479931Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.420455448Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.42307701Z 79 PC: 12aef | Find next file
2018-12-17T21:58:50.425450492Z 23 PC: 12a8e | Rename file
2018-12-17T21:58:50.432147546Z 44 PC: 12a96 | Get time 0x12a96: mov bx, word ptr cs:[0x297]
0x12a9b: mov al, byte ptr cs:[bx]
0x12a9e: mov bx, dx
0x12aa0: mov cx, 2
0x12aa3: mov dh, 0
0x12aa5: int 0x26
0x12aa7: mov bx, word ptr cs:[0x297]
0x12aac: dec bx
0x12aad: mov word ptr cs:[0x297], bx
0x12ab2: mov dl, byte ptr cs:[bx]
0x12ab5: jne 0x12aba
0x12ab7: jmp 0x12bb3
0x12aba: mov ah, 0xe
0x12abc: int 0x21
0x12abe: mov ah, 0x3b
0x12ac0: mov dx, 0x2ec
0x12ac3: int 0x21
0x12ac5: jmp 0x12b18
0x12ac7: nop
0x12ac8: mov ah, 0x17
2018-12-17T21:58:50.434618562Z 14 PC: 12abe | Set default drive (Drive = 'C')
2018-12-17T21:58:50.435990396Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:50.439630336Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:50.444913967Z 61 PC: 12b36 | Open file (Filename = 'COMMAND.COM')
2018-12-17T21:58:50.451129651Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.457777954Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.459406149Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.46290262Z 79 PC: 12aef | Find next file
2018-12-17T21:58:50.465417611Z 23 PC: 12a8e | Rename file
2018-12-17T21:58:50.471280863Z 44 PC: 12a96 | Get time 0x12a96: mov bx, word ptr cs:[0x297]
0x12a9b: mov al, byte ptr cs:[bx]
0x12a9e: mov bx, dx
0x12aa0: mov cx, 2
0x12aa3: mov dh, 0
0x12aa5: int 0x26
0x12aa7: mov bx, word ptr cs:[0x297]
0x12aac: dec bx
0x12aad: mov word ptr cs:[0x297], bx
0x12ab2: mov dl, byte ptr cs:[bx]
0x12ab5: jne 0x12aba
0x12ab7: jmp 0x12bb3
0x12aba: mov ah, 0xe
0x12abc: int 0x21
0x12abe: mov ah, 0x3b
0x12ac0: mov dx, 0x2ec
0x12ac3: int 0x21
0x12ac5: jmp 0x12b18
0x12ac7: nop
0x12ac8: mov ah, 0x17
2018-12-17T21:58:50.474091579Z 14 PC: 12abe | Set default drive (Drive = 'A')
2018-12-17T21:58:50.475511495Z 59 PC: 12ac5 | Change current directory
2018-12-17T21:58:50.48099308Z 78 PC: 12b22 | Find first file
2018-12-17T21:58:50.487536166Z 61 PC: 12b36 | Open file (Filename = 'SLEEP.COM')
2018-12-17T21:58:50.494363004Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.50235416Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.50390942Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.506131628Z 61 PC: 12b36 | Open file (Filename = 'PRINT.COM')
2018-12-17T21:58:50.512895477Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.519413004Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.521155293Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.524440635Z 61 PC: 12b36 | Open file (Filename = 'HELLO.COM')
2018-12-17T21:58:50.53083121Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.537695655Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.539337181Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.541911483Z 61 PC: 12b36 | Open file (Filename = 'PHANG.COM')
2018-12-17T21:58:50.549186486Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.555916834Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.557915726Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.561409191Z 61 PC: 12b36 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T21:58:50.568014609Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.574482825Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.576879763Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.579377739Z 61 PC: 12b36 | Open file (Filename = 'MANDEL.COM')
2018-12-17T21:58:50.587114259Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.593989208Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.596041201Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.598935751Z 61 PC: 12b36 | Open file (Filename = 'PAH.COM')
2018-12-17T21:58:50.605076172Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.611185331Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.613629536Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.616136397Z 61 PC: 12b36 | Open file (Filename = 'TEST.COM')
2018-12-17T21:58:50.622617005Z 63 PC: 12b44 | Read file or device (Read 512 bytes on handle 5)
2018-12-17T21:58:50.628747896Z 62 PC: 12b48 | Close file
2018-12-17T21:58:50.630327397Z 79 PC: 12b2b | Find next file
2018-12-17T21:58:50.632975463Z 79 PC: 12aef | Find next file
2018-12-17T21:58:50.635140459Z 23 PC: 12a8e | Rename file
2018-12-17T21:58:50.640843136Z 44 PC: 12a96 | Get time 0x12a96: mov bx, word ptr cs:[0x297]
0x12a9b: mov al, byte ptr cs:[bx]
0x12a9e: mov bx, dx
0x12aa0: mov cx, 2
0x12aa3: mov dh, 0
0x12aa5: int 0x26
0x12aa7: mov bx, word ptr cs:[0x297]
0x12aac: dec bx
0x12aad: mov word ptr cs:[0x297], bx
0x12ab2: mov dl, byte ptr cs:[bx]
0x12ab5: jne 0x12aba
0x12ab7: jmp 0x12bb3
0x12aba: mov ah, 0xe
0x12abc: int 0x21
0x12abe: mov ah, 0x3b
0x12ac0: mov dx, 0x2ec
0x12ac3: int 0x21
0x12ac5: jmp 0x12b18
0x12ac7: nop
0x12ac8: mov ah, 0x17
2018-12-17T21:58:50.652031119Z 14 PC: 12abe | Set default drive (Drive = 'B')
2018-12-17T21:58:50.653445341Z 59 PC: 12ac5 | Change current directory