Behaviors
List of software behaviors discovered with static code analysis.
Retrieves the name of the user associated with the process. (x2)
search
Decodes data using the Base64 algorithm. (x5)
packer
Encodes data using the Base64 algorithm. (x5)
packer
Tampers with user/account privileges. (x2)
permissions
Compresses or decompresses data using the Deflate algorithm. (x1)
packer
Compresses or decompresses data using the GZip algorithm. (x1)
packer
Connects through HTTP. (x10)
network
Detects presence of debuggers. (x3)
evasion
Contains reference to advapi32.dll which is Advanced Windows 32 Base API. (x1)
execution
Contains reference to ntdll.dll which is NT Layer DLL. (x1)
execution