Previous Articles     Next Articles

Research of Malicious Code in Automatic Unpacking

PENG Xiao-xiang%HU Zhen-jiang%GONG Tao%SHU Hui   

  • About author:解放军信息工程大学网络空间安全学院,河南郑州,450000

Abstract: Malware often use some advanced software protection techniques to evade detection, and the complex packing techniques is one of the typical, you must unpack the malware ifrst, then you can analysis them in detail. This paper studied based on analysis of sample program packed characteristics, automatically extracted hidden code and data from packers, and propose the automatic unpacking system design based on the dynamic analysis platform. The test results show that this system can deal with common packed type, on one hand it improve the degree of automation techniques, on the other hand greatly enhances the versatility of unpacking technology.