Behaviors
List of software behaviors discovered with static code analysis.
Deletes files in Windows system directories. (x2)
file
Reads data from files containing SSL certificates installed on the system. (x4)
steal
Queries the passwd database entry for a given user ID. (x6)
steal
Decrypts data using the Windows Cryptography API. (x2)
packer
Listens on incoming network connections. (x6)
network
Encrypts or encodes files and other data using the Windows Cryptography API. (x2)
file
Uses FTP communication protocol. (x2)
network
Receives data over the network. (x12)
network
Sends or exfiltrates data over the network. (x12)
network
Encrypts or encodes data in memory using the Windows Cryptography API. (x2)
file