Spectra Assure
Community
Docs

Behaviors

List of software behaviors discovered with static code analysis.

Retrieves the name of the user associated with the process. (x1)
search
Deletes files in Windows system directories. (x1)
file
Uses a Python script interpreter. (x1)
execution
Detects VMWare related virtualized environments. (x2)
evasion
Decodes data using the Base16 algorithm. (x1)
file
Encodes data using the Base16 algorithm. (x1)
file
Detects presence of debuggers. (x2)
evasion
Does process injection into the Windows Command Processor executable. (x1)
memory
Writes to files in Windows system directories. (x1)
file
Might monitor keystrokes. (x1)
steal