×

System and method for unpacking packed executables for malware evaluation

  • US 20050172337A1
  • Filed: 01/30/2004
  • Published: 08/04/2005
  • Est. Priority Date: 01/30/2004
  • Status: Active Grant
First Claim
Patent Images

1. A system for determining whether a packed executable is malware, the system comprising:

  • a malware evaluator for determining whether incoming data is malware; and

    an unpacking module that receives a packed executable from the malware evaluator and returns an unpacked executable corresponding to the packed executable;

    wherein the malware evaluator, upon receiving incoming data, determines whether the incoming data is a packed executable, and if so, provides the packed executable to the unpacking module and receives from the unpacking module an unpacked executable, and determines whether the unpacked executable is malware.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×