Featured Evasion API List

The feature you are currently using is in beta, which means it is still being tested and improved upon. The caution level (low, medium, high) may not be definitive and may be adjusted as we gather more data. We are constantly working to improve the precision of our feature and welcome any suggestions or feedback you may have to help us do so. Thank you for your patience and understanding as we work to bring you the best possible experience.

API Name Library Technique Count Level
OpenProcess Kernel32.dll 25 Medium
OpenProcessToken advapi32.dll 1 High
OpenThread Kernel32.dll 6 Medium
Pie gdi32.dll 1 Low
Process32First Kernel32.dll 7 Medium
Process32Next Kernel32.dll 7 Medium
QueueUserAPC Kernel32.dll 3 Medium
RaiseException Kernel32.dll 2 Low
ReadFile Kernel32.dll 6 Low
ReadProcessMemory Kernel32.dll 12 Medium
RegCloseKey advapi32.dll 8 Medium
RegEnumKeyExW advapi32.dll 1 Medium
RegEnumValueW advapi32.dll 1 Medium
RegOpenKeyExW advapi32.dll 4 Medium
RegQueryInfoKeyW advapi32.dll 1 Medium
RegQueryValueExW advapi32.dll 1 Medium
RegSetValueExW advapi32.dll 2 Medium
ResumeThread Kernel32.dll 7 Medium
RtlIpv4StringToAddressA NTDLL.DLL 1 Medium
RtlIpv4StringToAddressW NTDLL.DLL 1 Medium
SetEvent Kernel32.dll 1 Low
SetForegroundWindow user32.dll 1 Low
SetLastError Kernel32.dll 5 Low
ShellExecuteW shell32.dll 2 Low
ShowWindow user32.dll 4 Low
SizeofResource Kernel32.dll 1 Medium
Sleep Kernel32.dll 11 Low
SuspendThread Kernel32.dll 4 High
SysFreeString oleaut32.dll 1 Low
TerminateThread Kernel32.dll 1 Low
Thread32First Kernel32.dll 6 Medium
Thread32Next Kernel32.dll 6 Medium
TranslateMessage user32.dll 1 Low
UnhandledExceptionFilter Kernel32.dll 1 Medium
UnhookWindowsHookEx user32.dll 1 High
VirtualAlloc Kernel32.dll 26 Medium
VirtualAllocEx Kernel32.dll 19 High
VirtualAllocExNuma Kernel32.dll 2 High
VirtualFree Kernel32.dll 14 Low
VirtualQuery Kernel32.dll 1 Medium
WNetEnumResourceA Mpr.dll 1 Medium
WNetEnumResourceW Mpr.dll 1 Medium
WNetGetProviderNameA Mpr.dll 1 Medium
WNetGetProviderNameW Mpr.dll 1 Medium
WNetOpenEnumA Mpr.dll 1 Medium
WNetOpenEnumW Mpr.dll 1 Medium
WaitForSingleObject Kernel32.dll 5 Low
WriteFile Kernel32.dll 7 Low
WriteProcessMemory Kernel32.dll 21 High
isalpha msvcrt.dll 1 Low
memchr msvcrt.dll 1 Low
memcmp msvcrt.dll 3 Low
memcpy msvcrt.dll 6 Low
memset msvcrt.dll 4 Low

Filter