Spectra Assure
Community
Docs

Behaviors

List of software behaviors discovered with static code analysis.

Permits an incoming connection on a TCP socket. (x1)
network
Opens a socket listening for an incoming connection. (x3)
network
Creates a process. (x3)
execution
Deletes a file/directory. (x1)
file
Loads the kernel32.dll dynamic link library. (x1)
execution
Executes an expression. (x1)
execution
Enumerates system information. (x1)
search
Loads additional libraries. (x1)
execution
Queries the value of an environment variable. (x2)
search
Converts binary data to its string representation, commonly used in obfuscation. (x1)
packer