1. /
  2. Security Response/
  3. Kaos4.697


Risk Level 1: Very Low

February 13, 2007 11:48:32 AM

Upon execution of an infected file, the virus searches out and infects the first non-infected .COM file and the first non-infected .EXE file that it finds within the current working directory.

If the virus does not find an uninfected .EXE or .COM file within the current working directory, it will search through the directories listed in the system’s PATH=statement, looking for such a file to infect.

Infected files contain the following ASCII strings:

KAOS4 / Köhntark

Antivirus Protection Dates

  • Initial Rapid Release version December 20, 2000
  • Latest Rapid Release version December 20, 2000
  • Initial Daily Certified version December 20, 2000
  • Latest Daily Certified version December 20, 2000
  • Initial Weekly Certified release date pending
Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.

Threat Assessment


  • Wild Level: Low
  • Number of Infections: 0 - 49
  • Number of Sites: 0 - 2
  • Geographical Distribution: Low
  • Threat Containment: Easy
  • Removal: Easy


  • Damage Level: Low


  • Distribution Level: Low
Note: On May 14, 2015, modifications will be made to the threat write-ups to streamline the content. The Threat Assessment section will no longer be published as this section is no longer relevant to today's threat landscape. The Risk Level will continue to be the main threat risk assessment indicator.

Search Threats

Search by name
Example: W32.Beagle.AG@mm
STAR Antimalware Protection Technologies
Internet Security Threat Report