Behaviors
List of software behaviors discovered with static code analysis.
The software package impersonates a popular package from a public package repository. (x1)
anomaly
Contains potentially obfuscated code or data. (x4)
packer
Contains URLs that link to raw files on GitHub. (x2)
network
Executes files during installation or upon launch. (x1)
execution
Contains URLs that reside in regions sanctioned by the European Union. (x1)
network
Calculates the MD5 hash of data. (x4)
file
Sets a JavaScript interval, which repeatedly executes code. (x5)
execution
Queries the value of an environment variable. (x25)
search
Enumerates files in a given directory. (x2)
search
Converts binary data to its string representation, commonly used in obfuscation. (x10)
packer