Behaviors
List of software behaviors discovered with static code analysis.
Retrieves the name of the user associated with the process. (x8)
search
Contains URLs that link to interesting file formats. (x1)
network
Tampers with user/account privileges. (x8)
permissions
Enumerates user groups. (x8)
search
Enumerates user/account privilege information. (x3)
permissions
Contains reference to kernel32.dll which is Windows NT BASE API Client DLL. (x3)
execution
Contains reference to ntdll.dll which is NT Layer DLL. (x3)
execution
Contains reference to shell32.dll which is Windows Shell Common Dll. (x2)
execution
Contains reference to bcrypt.dll which is Windows Cryptographic Primitives Library (Wow64). (x3)
execution
Contains reference to advapi32.dll which is Advanced Windows 32 Base API. (x3)
execution