Sample viewer

vx.netlux.org/Virus.DOS.Kohntark.K-CMOS.931

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:52:32.614303604Z 26 PC: 12a81 | Set disk transfer address
2018-12-17T22:52:32.615994701Z 78 PC: 12d42 | Find first file
2018-12-17T22:52:32.623773555Z 67 PC: 12b19 | Get or set file attributes
2018-12-17T22:52:32.641175259Z 61 PC: 12b20 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:52:32.648864484Z 63 PC: 12b2e | Read file or device (Read 28 bytes on handle 5)
2018-12-17T22:52:32.657512662Z 66 PC: 12b8b | Move file pointer
2018-12-17T22:52:32.659420985Z 64 PC: 12c34 | Write file or device (Write 16 bytes on handle 5)
2018-12-17T22:52:32.663023675Z 64 PC: 12c57 | Write file or device (Write 915 bytes on handle 5)
2018-12-17T22:52:32.673680948Z 66 PC: 12c62 | Move file pointer
2018-12-17T22:52:32.675721765Z 64 PC: 12c88 | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:52:32.68389034Z 87 PC: 12c9b | Get or set file date and time
2018-12-17T22:52:32.68616042Z 62 PC: 12ca0 | Close file
2018-12-17T22:52:32.695278017Z 67 PC: 12caf | Get or set file attributes
2018-12-17T22:52:32.706313941Z 78 PC: 12d42 | Find first file
2018-12-17T22:52:32.714002415Z 78 PC: 12d42 | Find first file
2018-12-17T22:52:32.728060937Z 67 PC: 12b19 | Get or set file attributes
2018-12-17T22:52:33.070018509Z 61 PC: 12b20 | Open file (Filename = 'C:\DOS\ATTRIB.EXE')
2018-12-17T22:52:33.079471815Z 63 PC: 12b2e | Read file or device (Read 28 bytes on handle 5)
2018-12-17T22:52:33.087441035Z 66 PC: 12b8b | Move file pointer
2018-12-17T22:52:33.08972929Z 64 PC: 12c34 | Write file or device (Write 16 bytes on handle 5)
2018-12-17T22:52:33.097161501Z 64 PC: 12c57 | Write file or device (Write 915 bytes on handle 5)
2018-12-17T22:52:33.106766345Z 66 PC: 12c62 | Move file pointer
2018-12-17T22:52:33.108814378Z 64 PC: 12c88 | Write file or device (Write 28 bytes on handle 5)
2018-12-17T22:52:33.112751208Z 87 PC: 12c9b | Get or set file date and time
2018-12-17T22:52:33.115232613Z 62 PC: 12ca0 | Close file
2018-12-17T22:52:33.129411162Z 67 PC: 12caf | Get or set file attributes
2018-12-17T22:52:33.140645118Z 26 PC: 12a9e | Set disk transfer address
2018-12-17T22:52:33.142738274Z 76 PC: 12a4d | Terminate with return code (Return code = '0')