Sample viewer

vx.netlux.org/Trojan.DOS.Smile.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:05:23.197918289Z 42 PC: 12c3a | Get date 0x12c3a: sub ax, bx
0x12c3c: call 0x12ccd
0x12c3f: sub al, ch
0x12c41: mov ah, 0x2c
0x12c43: int 0x21
0x12c45: call 0x12c5d
0x12c48: add ax, 0x20ba
0x12c4b: cmc
0x12c4c: cmp ax, 0xf2a6
0x12c4f: cmp ax, 0x5d3c
0x12c52: adc cx, bx
0x12c54: stc
0x12c55: std
0x12c56: cmc
0x12c58: ret
0x12c59: or ch, byte ptr [bp + si]
0x12c5b: clc
0x12c5c: scasb al, byte ptr es:[di]
0x12c5d: mul cl
0x12c5f: add ax, 0x7c6e
2018-12-17T23:05:23.20221606Z 44 PC: 12c45 | Get time 0x12c45: call 0x12c5d
0x12c48: add ax, 0x20ba
0x12c4b: cmc
0x12c4c: cmp ax, 0xf2a6
0x12c4f: cmp ax, 0x5d3c
0x12c52: adc cx, bx
0x12c54: stc
0x12c55: std
0x12c56: cmc
0x12c58: ret
0x12c59: or ch, byte ptr [bp + si]
0x12c5b: clc
0x12c5c: scasb al, byte ptr es:[di]
0x12c5d: mul cl
0x12c5f: add ax, 0x7c6e
0x12c62: xchg ax, cx
0x12c63: sbb al, 0x55
0x12c65: nop
0x12c66: rol bx, 1
0x12c68: xor dh, dh
2018-12-17T23:05:23.204336056Z 82 PC: 12c83 | Get DOS internal pointers (SYSVARS)
2018-12-17T23:05:23.205517347Z 77 PC: 12dca | Get program return code