p.828
p.835
p.841
p.847
p.852
p.856
p.860
p.865
p.873
A New Disassembly Approach for Binary Code Using Dynamic Multiple-Path Exploration and Static Disassembly
Abstract:
We present a new approach for disassembling executables with self-modifying code. Self-modifying code is very common in malware. Conventional static or dynamic approaches cannot handle self-modifying code very well. We combine static and dynamic analysis to fight against self-modifying code with the multiple-path exploration technique. The evaluation results indicate that our approach works well in disassembling executables with self-modifying code with high precision and code coverage compared with the state-of-art disassembler.
Info:
Periodical:
Pages:
852-855
Citation:
Online since:
July 2014
Authors:
Price:
Сopyright:
© 2014 Trans Tech Publications Ltd. All Rights Reserved
Share:
Citation: