A good malware analyst has to know how to embed shellcode payload into an executable in just a few minutes, which is the best way to recognize it during analysis.
Trojans or, more generally, some malware often embed shellcode within their code, in pa...