Sample viewer

vx.netlux.org/Virus.DOS.LittBrother.398

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:15:55.096405244Z 42 PC: 12bcd | Get date 0x12bcd: ret
0x12bce: mov bl, ch
0x12bd0: shr bl, 1
0x12bd2: xor bh, bh
0x12bd4: mov ax, 0x5803
0x12bd7: int 0x21
0x12bd9: retf
0x12bda: add byte ptr [bx + si], al
0x12bdc: add byte ptr [bx + si], al
0x12bde: add byte ptr [bx + si], al
0x12be0: mov sp, 0x60a
0x12be3: mov ah, 0x50
0x12be5: mov bx, es
0x12be7: int 0x21
0x12be9: mov ax, 0x3000
0x12bec: int 0x21
0x12bee: cmp ax, 0x1606
0x12bf1: je 0x12c04
0x12bf3: mov dx, 0x2253
0x12bf6: call 0x22a54
2018-12-17T23:15:55.098394964Z 37 PC: 12ab6 | Set interrupt vector (Interrupt = '33' AKA 'Random read')