کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
6885322 1444507 2018 22 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
AppSpear: Automating the hidden-code extraction and reassembling of packed android malware
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
پیش نمایش صفحه اول مقاله
AppSpear: Automating the hidden-code extraction and reassembling of packed android malware
چکیده انگلیسی
To address the unpacking challenge especially for Android packers with advanced code hiding strategies, in this paper we propose AppSpear, an automated unpacking system for both Dalvik and ART. AppSpear adopts a universal unpacking strategy that combines runtime instrumentation, interpreter-enforced execution, and executable reassembling to guarantee the hidden code is extracted and reconstructed as a complete executable. Our experimental evaluation with 530 packed samples shows that AppSpear is able to unpack protected code generated by latest versions of mainstream Android packers effectively.
ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Journal of Systems and Software - Volume 140, June 2018, Pages 3-16
نویسندگان
, , , , ,