Nicolas Brulez Websense
In order to stay up to date with the bad guys producing malicious tools for the masses we always are on the look out for brand new tools and tricks. This presentation will cover a malicious packer found on a Chinese underground website. As the call for last-minute papers is about to close, files wrapped by this software are still undetected by most AV products (if not all). Every feature of this malicious packer will be dissected at the assembly level, with a lot of detail.
Ultimately, a live unpacking demo will demonstrate how it can be defeated.