Behaviors
List of software behaviors discovered with static code analysis.
Contains URLs that link to raw files on GitHub. (x1)
network
Writes to other process' memory. (x9)
memory
Reads from other process' memory. (x9)
memory
Detects/enumerates running processes. (x3)
monitor
Terminates a process/thread. (x3)
execution
Detects presence of debuggers. (x6)
evasion
Tampers with module search locations. (x3)
execution
Delays execution. (x6)
execution
Contains reference to ntdll.dll which is NT Layer DLL. (x3)
execution
Contains a reference to a common dynamic library or an executable file. (x42)
execution