Kayaker
March 17th, 2008, 10:22
A couple of recent malware analysis articles of general interest..
Packer Detection and Generic Unpacking Techniques
http://www.websense.com/securitylabs/blog/blog.php?BlogID=176
Unscrambling Custom obfuscation and Executable "infection"
http://www.websense.com/securitylabs/blog/blog.php?BlogID=178
Packer Detection and Generic Unpacking Techniques
http://www.websense.com/securitylabs/blog/blog.php?BlogID=176
Unscrambling Custom obfuscation and Executable "infection"
http://www.websense.com/securitylabs/blog/blog.php?BlogID=178


. You're correct in that the main goal was to have folks understand what they are doing instead of falling into a pattern. What specific registers are generally used for, purposes of the different breakpoints, etc.