{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:28:40Z","timestamp":1750307320768,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":24,"publisher":"ACM","license":[{"start":{"date-parts":[[2011,4,10]],"date-time":"2011-04-10T00:00:00Z","timestamp":1302393600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/501100004963","name":"Seventh Framework Programme","doi-asserted-by":"publisher","award":["257007"],"award-info":[{"award-number":["257007"]}],"id":[{"id":"10.13039\/501100004963","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2011,4,10]]},"DOI":"10.1145\/1972551.1972556","type":"proceedings-article","created":{"date-parts":[[2011,5,3]],"date-time":"2011-05-03T12:48:54Z","timestamp":1304426934000},"page":"1-6","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":7,"title":["Thwarting real-time dynamic unpacking"],"prefix":"10.1145","author":[{"given":"Leyla","family":"Bilge","sequence":"first","affiliation":[{"name":"Institute Eurecom, Sophia Antipolis"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Andrea","family":"Lanzi","sequence":"additional","affiliation":[{"name":"Institute Eurecom, Sophia Antipolis"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Davide","family":"Balzarotti","sequence":"additional","affiliation":[{"name":"Institute Eurecom, Sophia Antipolis"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2011,4,10]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"Working Conference on Verified Software: Theories, Tools","author":"Balakrishnan G.","year":"2005","unstructured":"G. Balakrishnan , T. Reps , D. Melski , and T. Teitelbaum . WYSINWYX: What You See Is Not What You eXecute . In Working Conference on Verified Software: Theories, Tools , Experiments, Zurich, Switzerland , Oct. 2005 . G. Balakrishnan, T. Reps, D. Melski, and T. Teitelbaum. WYSINWYX: What You See Is Not What You eXecute. In Working Conference on Verified Software: Theories, Tools, Experiments, Zurich, Switzerland, Oct. 2005."},{"key":"e_1_3_2_1_2_1","volume-title":"http:\/\/www.bitsum.com\/pecompact.php","author":"Technologies Bitsum","year":"2009","unstructured":"Bitsum Technologies . PECompact. http:\/\/www.bitsum.com\/pecompact.php , 2009 . Bitsum Technologies. PECompact. http:\/\/www.bitsum.com\/pecompact.php, 2009."},{"key":"e_1_3_2_1_4_1","volume-title":"http:\/\/yodap.sourceforge.net","author":"Bzdok Danilo","year":"2010","unstructured":"Danilo Bzdok . Yoda's Crypter . http:\/\/yodap.sourceforge.net , 2010 . Danilo Bzdok. Yoda's Crypter. http:\/\/yodap.sourceforge.net, 2010."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_5_1","DOI":"10.1145\/1476589.1476705"},{"volume-title":"http:\/\/dwing.cjb.net","year":"2010","unstructured":"Dwing. UPack. http:\/\/dwing.cjb.net , 2010 . Dwing. UPack. http:\/\/dwing.cjb.net, 2010.","key":"e_1_3_2_1_6_1"},{"key":"e_1_3_2_1_7_1","volume-title":"http:\/\/www.woodmann.com\/collaborative\/tools\/index.php\/FSG","author":"Fast Small","year":"2009","unstructured":"Fast Small Good (FSG). http:\/\/www.woodmann.com\/collaborative\/tools\/index.php\/FSG , 2009 . Fast Small Good (FSG). http:\/\/www.woodmann.com\/collaborative\/tools\/index.php\/FSG, 2009."},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_8_1","DOI":"10.1007\/978-3-540-87403-4_6"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_9_1","DOI":"10.1145\/1314389.1314399"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_10_1","DOI":"10.5555\/977395.977673"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_11_1","DOI":"10.1145\/948109.948149"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_12_1","DOI":"10.1145\/1065010.1065034"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_13_1","DOI":"10.1109\/ACSAC.2007.15"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_14_1","DOI":"10.1109\/SP.2007.17"},{"key":"e_1_3_2_1_15_1","volume-title":"http:\/\/www.nsdsn.com\/eng\/index.htm","author":"Software North Star","year":"2009","unstructured":"North Star Software . NsPack. http:\/\/www.nsdsn.com\/eng\/index.htm , 2009 . North Star Software. NsPack. http:\/\/www.nsdsn.com\/eng\/index.htm, 2009."},{"key":"e_1_3_2_1_16_1","volume-title":"http:\/\/nsis.sourceforge.net","author":"Nullsoft Inc. NSIS.","year":"2009","unstructured":"Nullsoft Inc. NSIS. http:\/\/nsis.sourceforge.net , 2009 . Nullsoft Inc. NSIS. http:\/\/nsis.sourceforge.net, 2009."},{"unstructured":"M. Oberhumer. UPX 2010.  M. Oberhumer. UPX 2010.","key":"e_1_3_2_1_17_1"},{"key":"e_1_3_2_1_18_1","volume-title":"http:\/\/www.pandasecurity.com\/homeusers\/media\/press-releases\/viewnews?noticia=8612","author":"Security Panda","year":"2007","unstructured":"Panda Security . http:\/\/www.pandasecurity.com\/homeusers\/media\/press-releases\/viewnews?noticia=8612 , 2007 . Panda Security. http:\/\/www.pandasecurity.com\/homeusers\/media\/press-releases\/viewnews?noticia=8612, 2007."},{"unstructured":"S. Realms. SoftwarePassport: Armadillo. http:\/\/www.siliconrealms.com\/software-passport-armadillo.html 2010.  S. Realms. SoftwarePassport: Armadillo. http:\/\/www.siliconrealms.com\/software-passport-armadillo.html 2010.","key":"e_1_3_2_1_19_1"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_20_1","DOI":"10.1109\/ACSAC.2006.38"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_21_1","DOI":"10.1109\/SP.2009.27"},{"key":"e_1_3_2_1_22_1","volume-title":"Proceedings of the 15th Annual Network and Distributed System Security Symposium","author":"Sharif M.","year":"2008","unstructured":"M. Sharif , A. Lanzi , J. Giffin , and W. Lee . Impeding Malware Analysis Using Conditional Code Obfuscation . In Proceedings of the 15th Annual Network and Distributed System Security Symposium , 2008 . M. Sharif, A. Lanzi, J. Giffin, and W. Lee. Impeding Malware Analysis Using Conditional Code Obfuscation. In Proceedings of the 15th Annual Network and Distributed System Security Symposium, 2008."},{"volume-title":"http:\/\/www.aspack.com\/","year":"2009","unstructured":"StarForce. ASPack. http:\/\/www.aspack.com\/ , 2009 . StarForce. ASPack. http:\/\/www.aspack.com\/, 2009.","key":"e_1_3_2_1_23_1"},{"unstructured":"O. Technology. Themida: Advanced Windows Software Protection System. http:\/\/www.oreans.com\/ 2008.  O. Technology. Themida: Advanced Windows Software Protection System. http:\/\/www.oreans.com\/ 2008.","key":"e_1_3_2_1_24_1"},{"unstructured":"The EGOiSTE\/TMG. tElock. http:\/\/programmerstools.org\/node\/164 2009.  The EGOiSTE\/TMG. tElock. http:\/\/programmerstools.org\/node\/164 2009.","key":"e_1_3_2_1_25_1"}],"event":{"sponsor":["SIGOPS ACM Special Interest Group on Operating Systems"],"acronym":"EuroSys '11","name":"EuroSys '11: Sixth EuroSys Conference 2011","location":"Salzburg Austria"},"container-title":["Proceedings of the Fourth European Workshop on System Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1972551.1972556","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1972551.1972556","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T11:05:54Z","timestamp":1750244754000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1972551.1972556"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011,4,10]]},"references-count":24,"alternative-id":["10.1145\/1972551.1972556","10.1145\/1972551"],"URL":"https:\/\/doi.org\/10.1145\/1972551.1972556","relation":{},"subject":[],"published":{"date-parts":[[2011,4,10]]},"assertion":[{"value":"2011-04-10","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}