Spectra Assure
Community
Docs

Behaviors

List of software behaviors discovered with static code analysis.

Retrieves the name of the user associated with the process. (x1)
search
Modifies file/directory permissions. (x5)
permissions
Sends data on a connected TCP socket. (x7)
network
Receives data from a connected TCP socket. (x4)
network
Permits an incoming connection on a TCP socket. (x2)
network
Opens a socket listening for an incoming connection. (x3)
network
Changes file ownership. (x4)
file
Detects generic virtualized environments. (x1)
evasion
Might contain potentially obfuscated code or data. (x8)
anomaly
Queries the passwd database entry for a given user ID. (x2)
steal