Behaviors
List of software behaviors discovered with static code analysis.
Retrieves the local computer name. (x1)
search
Writes to files in Windows system directories. (x1)
file
Enumerates system information. (x5)
search
Modifies the timestamp of a file. (x4)
file
Terminates a process/thread. (x8)
execution
Detects presence of debuggers. (x8)
evasion
Tampers with system environment variables. (x5)
settings
Delays execution. (x1)
execution
Tampers with module search locations. (x1)
execution
Contains reference to kernel32.dll which is Windows NT BASE API Client DLL. (x5)
execution