A recent blog of McAfee, Malware Packers Use Various Tricks to Avoid Detection, Analysis, highlighted the use of different packers as an effective way to decrease detection and slow down the analysis by anti malware products. As an engineer with a keen interest in malware virus, we are quite familiar with packers and the conclusion from that particular blog that manual analysis usually gets defeats. Manual analysis can take some extra time. Something which seems to be in short supply as of late. We have found a product of McAfee – McAfee Advanced Threat Defense (ATD)- which takes care of the packing issue for us, saving lots of time and a few major headaches too. Let us explain: First, what is a packer? A packer is basically a tool that can be utilized to encrypt, compress, or modify the format of a respective file. By packing a single file, the authors of malware can complicate all the content and disrupt analysis by various tools of threat detection. This particular techn...
Comments
Post a Comment