Sample viewer

vx.netlux.org/Virus.DOS.Kohntark.K-CMOS.935

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:47:54.958782551Z 26 PC: 12a81 | Set disk transfer address
2018-12-17T22:47:54.960696027Z 78 PC: 12d48 | Find first file
2018-12-17T22:47:54.968944026Z 67 PC: 12b19 | Get or set file attributes
2018-12-17T22:47:54.986514211Z 61 PC: 12b20 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:47:54.993805833Z 63 PC: 12b2e | Read file or device (Read 28 bytes on handle 5)
2018-12-17T22:47:55.001256663Z 66 PC: 12b8d | Move file pointer
2018-12-17T22:47:55.0028458Z 64 PC: 12c39 | Write file or device (Write 16 bytes on handle 5)
2018-12-17T22:47:55.005979278Z 64 PC: 12c5c | Write file or device (Write 919 bytes on handle 5)
2018-12-17T22:47:55.015613231Z 66 PC: 12c67 | Move file pointer
2018-12-17T22:47:55.01739551Z 64 PC: 12c8d | Write file or device (Write 4 bytes on handle 5)
2018-12-17T22:47:55.024800615Z 87 PC: 12ca0 | Get or set file date and time
2018-12-17T22:47:55.027159467Z 62 PC: 12ca5 | Close file
2018-12-17T22:47:55.035597493Z 67 PC: 12cb4 | Get or set file attributes
2018-12-17T22:47:55.04636189Z 78 PC: 12d48 | Find first file
2018-12-17T22:47:55.053574213Z 78 PC: 12d48 | Find first file
2018-12-17T22:47:55.06341258Z 67 PC: 12b19 | Get or set file attributes
2018-12-17T22:47:55.407533681Z 61 PC: 12b20 | Open file (Filename = 'C:\DOS\ATTRIB.EXE')
2018-12-17T22:47:55.415373422Z 63 PC: 12b2e | Read file or device (Read 28 bytes on handle 5)
2018-12-17T22:47:55.422718364Z 66 PC: 12b8d | Move file pointer
2018-12-17T22:47:55.42475465Z 64 PC: 12c39 | Write file or device (Write 16 bytes on handle 5)
2018-12-17T22:47:55.431428611Z 64 PC: 12c5c | Write file or device (Write 919 bytes on handle 5)
2018-12-17T22:47:55.439461987Z 66 PC: 12c67 | Move file pointer
2018-12-17T22:47:55.441096648Z 64 PC: 12c8d | Write file or device (Write 28 bytes on handle 5)
2018-12-17T22:47:55.444126401Z 87 PC: 12ca0 | Get or set file date and time
2018-12-17T22:47:55.446996284Z 62 PC: 12ca5 | Close file
2018-12-17T22:47:55.454600774Z 67 PC: 12cb4 | Get or set file attributes
2018-12-17T22:47:55.464936285Z 26 PC: 12a9e | Set disk transfer address
2018-12-17T22:47:55.467727981Z 76 PC: 12a4d | Terminate with return code (Return code = '0')