Spectra Assure
Community
Docs

Behaviors

List of software behaviors discovered with static code analysis.

Retrieves the name of the user associated with the process. (x1)
search
Permits an incoming connection on a TCP socket. (x1)
network
Opens a socket listening for an incoming connection. (x1)
network
Deletes files in Windows system directories. (x1)
file
Detects VMWare related virtualized environments. (x2)
evasion
Tampers with autorun registry keys. (x1)
autostart
Decodes data using the Base64 algorithm. (x3)
packer
Encodes data using the Base64 algorithm. (x2)
packer
Decrypts data using the Windows Cryptography API. (x1)
packer
Downloads files through the command line. (x1)
network