DocumentCode :
883029
Title :
Revealing Packed Malware
Author :
Yan, Wei ; Zhang, Zheng ; Ansari, Nirwan
Author_Institution :
Trend Micro, Tokyo
Volume :
6
Issue :
5
fYear :
2008
Firstpage :
65
Lastpage :
69
Abstract :
To evade malicious content detection, malware authors use packers, binary tools that instigate code obfuscation. By using executable packers, modern malware can completely bypass personal firewalls and antivirus (AV) scanners.Reverse engineering (RE) has become an important approach to analyzing a program´s logic flow and internal data structures, such as system call functions. Security researchers and AV products must be able to unpack and inspect the payloads hidden within the packed programs using RE tools.
Keywords :
data privacy; invasive software; reverse engineering; antivirus scanners; code obfuscation; malicious content detection; packed Malware; personal firewalls; reverse engineering; software programs; Application software; Cryptography; Data security; Filters; Logic; Payloads; Protection; Reverse engineering; Space technology; Viruses (medical); anti-virus; basic training; malware; packer;
fLanguage :
English
Journal_Title :
Security & Privacy, IEEE
Publisher :
ieee
ISSN :
1540-7993
Type :
jour
DOI :
10.1109/MSP.2008.126
Filename :
4639028
Link To Document :
بازگشت