In association with heise online

26 May 2009, 14:30

Virus authors frequently pack their malware using run-time packers such as UPX, PECompact and Upack in order to evade anti-virus software. When the malware is unpacked, various functions intended to impede analysis, or to make it more difficult to find entry points into the malware, are executed. Piotr Bania has presented a concept which allows these evasive measures to be circumvented in a manner more or less independent of the algorithm used and entry points for further analysis to be found.

Poitr Bana: Generic Unpacking of Self-modifying, Aggressive, Packed Binary ProgramsPDF

  • Share this article
  • Twitter
  • Facebook
  • digg this
  • submit to slashdot
  • post to delicious
  • StumbleUpon
  • submit to reddit







The H open source

The H Security

The H Internet Toolkit