Sample viewer

vx.netlux.org/Virus.DOS.LittBrother.341

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:06:40.32407577Z 42 PC: 12b89 | Get date 0x12b89: mov al, dl
0x12b8b: cwde
0x12b8c: ret
0x12b8d: mov ah, 0x2a
0x12b8f: int 0x21
0x12b91: mov al, dh
0x12b93: cwde
0x12b94: ret
0x12b95: add ax, 0xd20b
0x12b98: jne 0x12b74
0x12b9a: stc
0x12b9b: pushf
0x12b9c: mov ah, 0x3e
0x12b9e: int 0x21
0x12ba0: popf
0x12ba1: mov di, dx
0x12ba3: jmp 0x12bad
0x12ba5: mov di, word ptr es:[di]
0x12ba8: or di, di
0x12baa: jne 0x12bad
2018-12-17T22:06:40.33732663Z 37 PC: 12a81 | Set interrupt vector (Interrupt = '33' AKA 'Random read')