Behaviors
List of software behaviors discovered with static code analysis.
Uses a Python script interpreter. (x2)
execution
Decrypts data using the Windows Cryptography API. (x1)
packer
Opens a TCP connection to a remote server. (x1)
network
Opens a UDP connection to a remote server. (x2)
network
Writes to files in Windows system directories. (x1)
file
Enumerates system information. (x1)
search
Converts binary data to its string representation, commonly used in obfuscation. (x5)
packer
Issues DNS queries. (x1)
network
Terminates a process/thread. (x2)
execution
Detects presence of debuggers. (x2)
evasion