Sample viewer

vx.netlux.org/Virus.DOS.Kohntark.K-CMOS.937

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:45:50.40856912Z 26 PC: 12a81 | Set disk transfer address
2018-12-17T22:45:50.411451471Z 78 PC: 12d48 | Find first file
2018-12-17T22:45:50.417425306Z 67 PC: 12b19 | Get or set file attributes
2018-12-17T22:45:50.434015568Z 61 PC: 12b20 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:45:50.441713081Z 63 PC: 12b2e | Read file or device (Read 28 bytes on handle 5)
2018-12-17T22:45:50.448375162Z 66 PC: 12b8d | Move file pointer
2018-12-17T22:45:50.450108139Z 64 PC: 12c39 | Write file or device (Write 16 bytes on handle 5)
2018-12-17T22:45:50.453038033Z 64 PC: 12c5c | Write file or device (Write 921 bytes on handle 5)
2018-12-17T22:45:50.461531419Z 66 PC: 12c67 | Move file pointer
2018-12-17T22:45:50.463105552Z 64 PC: 12c8d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:45:50.469715168Z 87 PC: 12ca0 | Get or set file date and time
2018-12-17T22:45:50.472334214Z 62 PC: 12ca5 | Close file
2018-12-17T22:45:50.485680814Z 67 PC: 12cb4 | Get or set file attributes
2018-12-17T22:45:50.495695313Z 78 PC: 12d48 | Find first file
2018-12-17T22:45:50.502506061Z 78 PC: 12d48 | Find first file
2018-12-17T22:45:50.511236449Z 67 PC: 12b19 | Get or set file attributes
2018-12-17T22:45:50.867430037Z 61 PC: 12b20 | Open file (Filename = 'C:\DOS\ATTRIB.EXE')
2018-12-17T22:45:50.875851627Z 63 PC: 12b2e | Read file or device (Read 28 bytes on handle 5)
2018-12-17T22:45:50.882979336Z 66 PC: 12b8d | Move file pointer
2018-12-17T22:45:50.885001513Z 64 PC: 12c39 | Write file or device (Write 16 bytes on handle 5)
2018-12-17T22:45:50.89197375Z 64 PC: 12c5c | Write file or device (Write 921 bytes on handle 5)
2018-12-17T22:45:50.899892477Z 66 PC: 12c67 | Move file pointer
2018-12-17T22:45:50.901299027Z 64 PC: 12c8d | Write file or device (Write 28 bytes on handle 5)
2018-12-17T22:45:50.903284026Z 87 PC: 12ca0 | Get or set file date and time
2018-12-17T22:45:50.904878413Z 62 PC: 12ca5 | Close file
2018-12-17T22:45:50.909013678Z 67 PC: 12cb4 | Get or set file attributes
2018-12-17T22:45:50.918362666Z 26 PC: 12a9e | Set disk transfer address
2018-12-17T22:45:50.919902253Z 76 PC: 12a4d | Terminate with return code (Return code = '0')