{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,16]],"date-time":"2026-02-16T02:52:12Z","timestamp":1771210332930,"version":"3.50.1"},"publisher-location":"Berlin, Heidelberg","reference-count":22,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783642292798","type":"print"},{"value":"9783642292804","type":"electronic"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2012]]},"DOI":"10.1007\/978-3-642-29280-4_28","type":"book-chapter","created":{"date-parts":[[2012,4,2]],"date-time":"2012-04-02T07:12:18Z","timestamp":1333350738000},"page":"237-243","source":"Crossref","is-referenced-by-count":10,"title":["PEAL\u2014Packed Executable AnaLysis"],"prefix":"10.1007","author":[{"given":"Vijay","family":"Laxmi","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Manoj Singh","family":"Gaur","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Parvez","family":"Faruki","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Smita","family":"Naval","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"28_CR1","doi-asserted-by":"crossref","unstructured":"Lyda, R., Hamrock, J.: Using Entropy Analysis to Find Encrypted and Packed Malware. IEEE Security and Privacy, 40\u201345 (2007)","DOI":"10.1109\/MSP.2007.48"},{"key":"28_CR2","unstructured":"VX Heavens, http:\/\/vx.netlux.org\/lib"},{"key":"28_CR3","unstructured":"Perdisci, R., Lanzi, A., Lee, W.: McBoost. In: Proceedings of the 24th ACSAC Anaheim (2008)"},{"key":"28_CR4","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"230","DOI":"10.1007\/978-3-642-21323-6_29","volume-title":"Computational Intelligence in Security for Information Systems","author":"X. Ugarte-Pedrero","year":"2011","unstructured":"Ugarte-Pedrero, X., Santos, I., Bringas, P.: Structural Feature Based Anomaly Detection for Packed Executable Identification. In: Herrero, \u00c1., Corchado, E. (eds.) CISIS 2011. LNCS, vol.\u00a06694, pp. 230\u2013237. Springer, Heidelberg (2011)"},{"key":"28_CR5","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"98","DOI":"10.1007\/978-3-540-87403-4_6","volume-title":"Recent Advances in Intrusion Detection","author":"F. Guo","year":"2008","unstructured":"Guo, F., Ferrie, P., Chiueh, T.-c.: A Study of the Packer Problem and Its Solutions. In: Lippmann, R., Kirda, E., Trachtenberg, A. (eds.) RAID 2008. LNCS, vol.\u00a05230, pp. 98\u2013115. Springer, Heidelberg (2008)"},{"key":"28_CR6","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"121","DOI":"10.1007\/978-3-642-04342-0_7","volume-title":"RAID","author":"M.Z. Shafiq","year":"2009","unstructured":"Shafiq, M.Z., Tabish, S.M., Mirza, F., Farooq, M.: PE-Miner: Mining Structural Information to Detect Malicious Executables in Realtime. In: Balzarotti, D. (ed.) RAID 2009. LNCS, vol.\u00a05758, pp. 121\u2013141. Springer, Heidelberg (2009)"},{"key":"28_CR7","doi-asserted-by":"crossref","unstructured":"Dai, J., Guha, R., Lee, J.: Feature Set Selection in Data Mining Techniques for Unknown Virus\u2013Detection. In: A Comparison Study (CSIIRW), pp. 13\u201315 (2009)","DOI":"10.1145\/1558607.1558672"},{"key":"28_CR8","unstructured":"Kohavi, R.: A Study of Cross\u2013Validation and Bootstrap for Accuracy Estimation and Model Selection, pp. 1137\u20131143. Morgan Kaufmann (1995)"},{"key":"28_CR9","unstructured":"Ether-Xen Hypervisor, http:\/\/ether.gtisc.gatech.edu\/source.html"},{"key":"28_CR10","unstructured":"OBJdump a PE Dumping Tool, http:\/\/sourceforge.net\/projects\/objdump"},{"key":"28_CR11","unstructured":"Symantec Threat Report (2011), http:\/\/www.symantec.com\/business\/threatreport\/"},{"key":"28_CR12","unstructured":"Virustotal, http:\/\/www.virustotal.com\/stats.html"},{"key":"28_CR13","doi-asserted-by":"crossref","unstructured":"Refaeilzadeh, P., Tang, L., Liu, H.: Cross\u2013Validation. Encyclopedia of Database Systems, 532\u2013538 (2009)","DOI":"10.1007\/978-0-387-39940-9_565"},{"key":"28_CR14","unstructured":"WEKA, www.cs.waikato.ac.nz\/ml\/weka\/"},{"key":"28_CR15","unstructured":"PEiD, www.peid.info"},{"key":"28_CR16","unstructured":"Yang-seo C., Ik\u2013kyun K., Oh J., Ryou, J.-c.: PE File Header Analysis\u2013Based Packed PE File Detection Technique (PHAD). In: ISCSA, pp. 28\u201331 (2008)"},{"key":"28_CR17","doi-asserted-by":"crossref","unstructured":"Treadwell, S., Zhou, M.: A Heuristic Approach for Detection of Obfuscated Malware. In: Proceedings of ISI, pp. 291\u2013299. IEEE (2009)","DOI":"10.1109\/ISI.2009.5137328"},{"key":"28_CR18","unstructured":"ExeInfoPE, http:\/\/www.softpedia.com\/get\/Programming\/Packerscryptersprotectors\/"},{"key":"28_CR19","unstructured":"UPX: Ultimate Executable Packer, http:\/\/upx.sourceforge.net"},{"key":"28_CR20","unstructured":"Aspack: Executable Packer, http:\/\/www.aspack.com"},{"key":"28_CR21","unstructured":"PECompact: Executable Packer, http:\/\/www.pecompact.com"},{"key":"28_CR22","unstructured":"NSPack: Executable Packer, http:\/\/nspack.lastdownload.com"}],"container-title":["Lecture Notes in Computer Science","Advanced Computing, Networking and Security"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-29280-4_28.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,5,4]],"date-time":"2021-05-04T11:34:15Z","timestamp":1620128055000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-29280-4_28"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2012]]},"ISBN":["9783642292798","9783642292804"],"references-count":22,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-29280-4_28","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2012]]}}}