.
Time | Syscall Op | Syscall Name |
---|---|---|
2018-12-17T22:48:52.95936271Z | 78 | PC: 13232 | Find first file |
2018-12-17T22:48:52.966823698Z | 67 | PC: 1323f | Get or set file attributes |
2018-12-17T22:48:52.972195401Z | 61 | PC: 13244 | Open file (Filename = 'SLEEP.COM') |
2018-12-17T22:48:52.991595211Z | 87 | PC: 132a9 | Get or set file date and time |
2018-12-17T22:48:52.999652931Z | 87 | PC: 132b7 | Get or set file date and time |
2018-12-17T22:48:53.003138971Z | 63 | PC: 132c3 | Read file or device (Read 3 bytes on handle 5) |
2018-12-17T22:48:53.01186679Z | 66 | PC: 132cc | Move file pointer |
2018-12-17T22:48:53.013763774Z | 66 | PC: 132e3 | Move file pointer |
2018-12-17T22:48:53.016712204Z | 64 | PC: 132ef | Write file or device (Write 3 bytes on handle 5) |
2018-12-17T22:48:53.019644393Z | 66 | PC: 132f8 | Move file pointer |
2018-12-17T22:48:53.025671447Z | 64 | PC: 13301 | Write file or device (Write 246 bytes on handle 5) |
2018-12-17T22:48:53.044398905Z | 62 | PC: 13305 | Close file |
2018-12-17T22:48:53.054294327Z | 79 | PC: 1324f | Find next file |
2018-12-17T22:48:53.057545505Z | 67 | PC: 1325c | Get or set file attributes |
2018-12-17T22:48:53.06894807Z | 61 | PC: 13261 | Open file (Filename = 'PRINT.COM') |
2018-12-17T22:48:53.077420258Z | 87 | PC: 132a9 | Get or set file date and time |
2018-12-17T22:48:53.078949842Z | 87 | PC: 132b7 | Get or set file date and time |
2018-12-17T22:48:53.080555649Z | 63 | PC: 132c3 | Read file or device (Read 3 bytes on handle 5) |
2018-12-17T22:48:53.088417631Z | 66 | PC: 132cc | Move file pointer |
2018-12-17T22:48:53.090259912Z | 66 | PC: 132e3 | Move file pointer |
2018-12-17T22:48:53.092088478Z | 64 | PC: 132ef | Write file or device (Write 3 bytes on handle 5) |
2018-12-17T22:48:53.096214681Z | 66 | PC: 132f8 | Move file pointer |
2018-12-17T22:48:53.09858279Z | 64 | PC: 13301 | Write file or device (Write 246 bytes on handle 5) |
2018-12-17T22:48:53.101993249Z | 62 | PC: 13305 | Close file |
2018-12-17T22:48:53.11159025Z | 79 | PC: 1324f | Find next file |
2018-12-17T22:48:53.114707677Z | 67 | PC: 1325c | Get or set file attributes |
2018-12-17T22:48:53.125266326Z | 61 | PC: 13261 | Open file (Filename = 'HELLO.COM') |
2018-12-17T22:48:53.133862107Z | 87 | PC: 132a9 | Get or set file date and time |
2018-12-17T22:48:53.136204397Z | 87 | PC: 132b7 | Get or set file date and time |
2018-12-17T22:48:53.138324351Z | 63 | PC: 132c3 | Read file or device (Read 3 bytes on handle 5) |
2018-12-17T22:48:53.146098938Z | 66 | PC: 132cc | Move file pointer |
2018-12-17T22:48:53.14855305Z | 66 | PC: 132e3 | Move file pointer |
2018-12-17T22:48:53.150575389Z | 64 | PC: 132ef | Write file or device (Write 3 bytes on handle 5) |
2018-12-17T22:48:53.153509011Z | 66 | PC: 132f8 | Move file pointer |
2018-12-17T22:48:53.156174039Z | 64 | PC: 13301 | Write file or device (Write 246 bytes on handle 5) |
2018-12-17T22:48:53.159412353Z | 62 | PC: 13305 | Close file |
2018-12-17T22:48:53.16833645Z | 79 | PC: 1324f | Find next file |
2018-12-17T22:48:53.172392201Z | 67 | PC: 1325c | Get or set file attributes |
2018-12-17T22:48:53.182940851Z | 61 | PC: 13261 | Open file (Filename = 'PHANG.COM') |
2018-12-17T22:48:53.190402791Z | 87 | PC: 132a9 | Get or set file date and time |
2018-12-17T22:48:53.193144343Z | 87 | PC: 132b7 | Get or set file date and time |
2018-12-17T22:48:53.195318788Z | 63 | PC: 132c3 | Read file or device (Read 3 bytes on handle 5) |
2018-12-17T22:48:53.203041879Z | 66 | PC: 132cc | Move file pointer |
2018-12-17T22:48:53.20576778Z | 66 | PC: 132e3 | Move file pointer |
2018-12-17T22:48:53.208165566Z | 64 | PC: 132ef | Write file or device (Write 3 bytes on handle 5) |
2018-12-17T22:48:53.211302389Z | 66 | PC: 132f8 | Move file pointer |
2018-12-17T22:48:53.214717266Z | 64 | PC: 13301 | Write file or device (Write 246 bytes on handle 5) |
2018-12-17T22:48:53.218273307Z | 62 | PC: 13305 | Close file |
2018-12-17T22:48:53.226848719Z | 79 | PC: 1324f | Find next file |
2018-12-17T22:48:53.229928356Z | 67 | PC: 1325c | Get or set file attributes |
2018-12-17T22:48:53.242359473Z | 61 | PC: 13261 | Open file (Filename = 'PRINTA~1.COM') |
2018-12-17T22:48:53.249871557Z | 87 | PC: 132a9 | Get or set file date and time |
2018-12-17T22:48:53.251691296Z | 87 | PC: 132b7 | Get or set file date and time |
2018-12-17T22:48:53.254645637Z | 63 | PC: 132c3 | Read file or device (Read 3 bytes on handle 5) |
2018-12-17T22:48:53.261742281Z | 66 | PC: 132cc | Move file pointer |
2018-12-17T22:48:53.263347557Z | 66 | PC: 132e3 | Move file pointer |
2018-12-17T22:48:53.26557371Z | 64 | PC: 132ef | Write file or device (Write 3 bytes on handle 5) |
2018-12-17T22:48:53.268721003Z | 66 | PC: 132f8 | Move file pointer |
2018-12-17T22:48:53.27023611Z | 64 | PC: 13301 | Write file or device (Write 246 bytes on handle 5) |
2018-12-17T22:48:53.274091113Z | 62 | PC: 13305 | Close file |
2018-12-17T22:48:53.282426224Z | 79 | PC: 1324f | Find next file |
2018-12-17T22:48:53.286240951Z | 67 | PC: 1325c | Get or set file attributes |
2018-12-17T22:48:53.297606937Z | 61 | PC: 13261 | Open file (Filename = 'MANDEL.COM') |
2018-12-17T22:48:53.305322874Z | 87 | PC: 132a9 | Get or set file date and time |
2018-12-17T22:48:53.307068143Z | 87 | PC: 132b7 | Get or set file date and time |
2018-12-17T22:48:53.308690862Z | 63 | PC: 132c3 | Read file or device (Read 3 bytes on handle 5) |
2018-12-17T22:48:53.317703095Z | 66 | PC: 132cc | Move file pointer |
2018-12-17T22:48:53.319636067Z | 66 | PC: 132e3 | Move file pointer |
2018-12-17T22:48:53.321495641Z | 64 | PC: 132ef | Write file or device (Write 3 bytes on handle 5) |
2018-12-17T22:48:53.325504313Z | 66 | PC: 132f8 | Move file pointer |
2018-12-17T22:48:53.327374567Z | 64 | PC: 13301 | Write file or device (Write 246 bytes on handle 5) |
2018-12-17T22:48:53.337002086Z | 62 | PC: 13305 | Close file |
2018-12-17T22:48:53.346942062Z | 79 | PC: 1324f | Find next file |
2018-12-17T22:48:53.349991051Z | 67 | PC: 1325c | Get or set file attributes |
2018-12-17T22:48:53.361342209Z | 61 | PC: 13261 | Open file (Filename = 'PAH.COM') |
2018-12-17T22:48:53.369332231Z | 87 | PC: 132a9 | Get or set file date and time |
2018-12-17T22:48:53.371434962Z | 87 | PC: 132b7 | Get or set file date and time |
2018-12-17T22:48:53.373428287Z | 63 | PC: 132c3 | Read file or device (Read 3 bytes on handle 5) |
2018-12-17T22:48:53.381424411Z | 66 | PC: 132cc | Move file pointer |
2018-12-17T22:48:53.383090782Z | 66 | PC: 132e3 | Move file pointer |
2018-12-17T22:48:53.384506162Z | 64 | PC: 132ef | Write file or device (Write 3 bytes on handle 5) |
2018-12-17T22:48:53.387522298Z | 66 | PC: 132f8 | Move file pointer |
2018-12-17T22:48:53.389470218Z | 64 | PC: 13301 | Write file or device (Write 246 bytes on handle 5) |
2018-12-17T22:48:53.392661635Z | 62 | PC: 13305 | Close file |
2018-12-17T22:48:53.400957272Z | 79 | PC: 1324f | Find next file |
2018-12-17T22:48:53.404741842Z | 67 | PC: 1325c | Get or set file attributes |
2018-12-17T22:48:53.415737142Z | 61 | PC: 13261 | Open file (Filename = 'TEST.COM') |
2018-12-17T22:48:53.424130782Z | 87 | PC: 132a9 | Get or set file date and time |
2018-12-17T22:48:53.42662027Z | 87 | PC: 132b7 | Get or set file date and time |
2018-12-17T22:48:53.428274608Z | 63 | PC: 132c3 | Read file or device (Read 3 bytes on handle 5) |
2018-12-17T22:48:53.435206112Z | 66 | PC: 132cc | Move file pointer |
2018-12-17T22:48:53.437789386Z | 66 | PC: 132e3 | Move file pointer |
2018-12-17T22:48:53.439363313Z | 64 | PC: 132ef | Write file or device (Write 3 bytes on handle 5) |
2018-12-17T22:48:53.44220923Z | 66 | PC: 132f8 | Move file pointer |
2018-12-17T22:48:53.446001736Z | 64 | PC: 13301 | Write file or device (Write 246 bytes on handle 5) |
2018-12-17T22:48:53.454208736Z | 62 | PC: 13305 | Close file |
2018-12-17T22:48:53.463346976Z | 79 | PC: 1324f | Find next file |
2018-12-17T22:48:53.466423666Z | 9 | PC: 12b36 | Display string (String= ' YOU HAVE JUST RELEASED A VIRUS! Entry=3h, Size=2000, Stack=0, Overlay(0)=0 not loaded, Fill=FFFF* COM file, code at start, JMP at start, SS:SP != CS:IP ') |
2018-12-17T22:48:53.478482835Z | 76 | PC: 12b3a | Terminate with return code (Return code = '36') |