Matches in SemOpenAlex for { <https://semopenalex.org/work/W2602912125> ?p ?o ?g. }
Showing items 1 to 94 of
94
with 100 items per page.
- W2602912125 abstract "Reverse engineering packed binaries remain a tedious challenge as code packing is continuously being used by malware to hinder detection and analysis. The problem of automatically unpacking binaries has previously been investigated. However, current generic unpackers either do not offer any dump of the unpacked binary at all or produces a set of memory dumps that each lack several structures that make them well-suited for further analysis. In this paper, we present RePEconstruct, a tool that unpacks packed binaries and reconstructs them in a manner well suited for further analysis. RePEconstruct deploys a model of self-modifying code similar to previous work but goes the step further by also utilizing a novel, aggressive, approach to rebuilding the import address table. Our approach relies on both static and dynamic analysis. We build RePEconstruct as a DynamoRIO client and successfully evaluate it against a set of packed applications." @default.
- W2602912125 created "2017-04-07" @default.
- W2602912125 creator A5007877883 @default.
- W2602912125 date "2016-10-01" @default.
- W2602912125 modified "2023-10-16" @default.
- W2602912125 title "RePEconstruct: reconstructing binaries with self-modifying code and import address table destruction" @default.
- W2602912125 cites W1508225132 @default.
- W2602912125 cites W1544225867 @default.
- W2602912125 cites W1892063863 @default.
- W2602912125 cites W1966973702 @default.
- W2602912125 cites W1981033991 @default.
- W2602912125 cites W2012737144 @default.
- W2602912125 cites W2096921767 @default.
- W2602912125 cites W2114193033 @default.
- W2602912125 cites W2132874238 @default.
- W2602912125 cites W2133692747 @default.
- W2602912125 cites W2140807364 @default.
- W2602912125 cites W2149668077 @default.
- W2602912125 cites W2157768713 @default.
- W2602912125 cites W2159702664 @default.
- W2602912125 cites W2314464932 @default.
- W2602912125 cites W4239813889 @default.
- W2602912125 doi "https://doi.org/10.1109/malware.2016.7888727" @default.
- W2602912125 hasPublicationYear "2016" @default.
- W2602912125 type Work @default.
- W2602912125 sameAs 2602912125 @default.
- W2602912125 citedByCount "8" @default.
- W2602912125 countsByYear W26029121252017 @default.
- W2602912125 countsByYear W26029121252018 @default.
- W2602912125 countsByYear W26029121252020 @default.
- W2602912125 countsByYear W26029121252021 @default.
- W2602912125 countsByYear W26029121252022 @default.
- W2602912125 countsByYear W26029121252023 @default.
- W2602912125 crossrefType "proceedings-article" @default.
- W2602912125 hasAuthorship W2602912125A5007877883 @default.
- W2602912125 hasConcept C111919701 @default.
- W2602912125 hasConcept C127413603 @default.
- W2602912125 hasConcept C138885662 @default.
- W2602912125 hasConcept C173608175 @default.
- W2602912125 hasConcept C177264268 @default.
- W2602912125 hasConcept C18762648 @default.
- W2602912125 hasConcept C199360897 @default.
- W2602912125 hasConcept C207850805 @default.
- W2602912125 hasConcept C2776760102 @default.
- W2602912125 hasConcept C2777256151 @default.
- W2602912125 hasConcept C33923547 @default.
- W2602912125 hasConcept C41008148 @default.
- W2602912125 hasConcept C41895202 @default.
- W2602912125 hasConcept C45235069 @default.
- W2602912125 hasConcept C48372109 @default.
- W2602912125 hasConcept C541664917 @default.
- W2602912125 hasConcept C63435697 @default.
- W2602912125 hasConcept C77088390 @default.
- W2602912125 hasConcept C78519656 @default.
- W2602912125 hasConcept C94375191 @default.
- W2602912125 hasConcept C97686452 @default.
- W2602912125 hasConceptScore W2602912125C111919701 @default.
- W2602912125 hasConceptScore W2602912125C127413603 @default.
- W2602912125 hasConceptScore W2602912125C138885662 @default.
- W2602912125 hasConceptScore W2602912125C173608175 @default.
- W2602912125 hasConceptScore W2602912125C177264268 @default.
- W2602912125 hasConceptScore W2602912125C18762648 @default.
- W2602912125 hasConceptScore W2602912125C199360897 @default.
- W2602912125 hasConceptScore W2602912125C207850805 @default.
- W2602912125 hasConceptScore W2602912125C2776760102 @default.
- W2602912125 hasConceptScore W2602912125C2777256151 @default.
- W2602912125 hasConceptScore W2602912125C33923547 @default.
- W2602912125 hasConceptScore W2602912125C41008148 @default.
- W2602912125 hasConceptScore W2602912125C41895202 @default.
- W2602912125 hasConceptScore W2602912125C45235069 @default.
- W2602912125 hasConceptScore W2602912125C48372109 @default.
- W2602912125 hasConceptScore W2602912125C541664917 @default.
- W2602912125 hasConceptScore W2602912125C63435697 @default.
- W2602912125 hasConceptScore W2602912125C77088390 @default.
- W2602912125 hasConceptScore W2602912125C78519656 @default.
- W2602912125 hasConceptScore W2602912125C94375191 @default.
- W2602912125 hasConceptScore W2602912125C97686452 @default.
- W2602912125 hasLocation W26029121251 @default.
- W2602912125 hasOpenAccess W2602912125 @default.
- W2602912125 hasPrimaryLocation W26029121251 @default.
- W2602912125 hasRelatedWork W2012737144 @default.
- W2602912125 hasRelatedWork W2098492867 @default.
- W2602912125 hasRelatedWork W2155320991 @default.
- W2602912125 hasRelatedWork W2156056004 @default.
- W2602912125 hasRelatedWork W2350707283 @default.
- W2602912125 hasRelatedWork W2356370762 @default.
- W2602912125 hasRelatedWork W2776211301 @default.
- W2602912125 hasRelatedWork W2887670066 @default.
- W2602912125 hasRelatedWork W4210907385 @default.
- W2602912125 hasRelatedWork W4312434251 @default.
- W2602912125 isParatext "false" @default.
- W2602912125 isRetracted "false" @default.
- W2602912125 magId "2602912125" @default.
- W2602912125 workType "article" @default.