Behaviors
List of software behaviors discovered with static code analysis.
Retrieves the name of the user associated with the process. (x1)
search
Deletes files in Windows system directories. (x1)
file
Decrypts data using the Windows Cryptography API. (x1)
packer
Creates a new process which executes a shell. (x1)
execution
Detects presence of debuggers. (x6)
evasion
Enumerates registry keys. (x1)
registry
Enumerates the values of a registry key. (x1)
registry
Opens registry keys. (x1)
registry
Creates a custom Agent object for managing HTTP or HTTPS connection persistence. (x4)
network
Contains URLs that use non-standard ports. (x1)
network