Spectra Assure
Community
Docs

Behaviors

List of software behaviors discovered with static code analysis.

Opens a socket listening for an incoming connection. (x1)
network
Permits an incoming connection on a TCP socket. (x1)
network
Deletes files in Windows system directories. (x1)
file
Detects VMWare related virtualized environments. (x2)
evasion
Tampers with autorun registry keys. (x1)
autostart
Enumerates an environment variable that holds an Amazon Web Services (AWS) configuration location. (x1)
search
Decrypts data using the Windows Cryptography API. (x3)
packer
Decodes data using the Base64 algorithm. (x3)
packer
Encodes data using the Base64 algorithm. (x2)
packer
Contains URLs that link to interesting file formats. (x5)
network