摘要
通过对PE(portable executable)文件格式的了解,编写PE分析工具对文件内部结构进行分析。详细介绍了对PE可执行文件加壳的全过程,在此过程中巧妙地使用MD5、CRC32等成熟的hash算法及防API断点跟踪等多种反破解技术,并采用自动隐藏加密方案,大大地提高了软件的保护力度。
Wrote an analysis tool at the base of understanding the portable executable file format. It presented the whole processes of the encrypting on the PE file in detail. In these processes, used variety anti-crack techniques such as MD5, CRC32 algorithms of mature hash as well as anti-track from the interrupt of API functions, and also used some methods of automatic hiding and encrypting. The result is that the protection strength of the software is enhanced.
出处
《计算机应用研究》
CSCD
北大核心
2009年第1期337-338,341,共3页
Application Research of Computers
基金
国家自然科学基金委员会重点资助项目(10635090)