arrow
Return

Binary-Code Obfuscations in Prevalent Packer Tools

delete2013-07-11
delete93
delete
OA
AI
K
Kevin Roundy *
B
Barton P. Miller
DOI:10.1145/2522968.2522972delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
The first steps in analyzing defensive malware are understanding what obfuscations are present in real-world malware binaries, how these obfuscations hinder analysis, and how they can be overcome. While some obfuscations have been reported independently, this survey consolidates the discussion while adding substantial depth and breadth to it. This survey also quantifies the relative prevalence of these obfuscations by using the Dyninst binary analysis and instrumentation tool that was recently extended for defensive malware analysis. The goal of this survey is to encourage analysts to focus on resolving the obfuscations that are most prevalent in real-world malware.
Keywords:
Security
Malware
obfuscation
program binary analysis
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

ACM Computing Surveys cover
ACM Computing Surveys
IF:
28
Papers:
2.4K
Citations:
3.5W

Organization

S
symantec
Scholars:
18
Papers: 13
Citations: 0