Spectra Assure
Community
Docs

Behaviors

List of software behaviors discovered with static code analysis.

Permits an incoming connection on a TCP socket. (x1)
network
Opens a socket listening for an incoming connection. (x1)
network
Deletes files in Windows system directories. (x1)
file
Detects VMWare related virtualized environments. (x2)
evasion
Tampers with autorun registry keys. (x1)
autostart
Enumerates an environment variable that holds an Amazon Web Services (AWS) configuration location. (x1)
search
Decodes data using the Base64 algorithm. (x3)
packer
Encodes data using the Base64 algorithm. (x2)
packer
Decrypts data using the Windows Cryptography API. (x3)
packer
Encrypts or encodes network communications. (x1)
network