You are browsing the archive for GoodWare.

Not installing the installers, part 2

May 22, 2022 in Archaeology, Batch Analysis, Clustering, EDR, Forensic Analysis, GoodWare, Sandboxing

In the last post I described how we can pull some interesting metadata from decompiled installers. Today I want to discuss one practical example of how this data can enrich […]

Not installing the installers

May 21, 2022 in Batch Analysis, Clustering, Forensic Analysis, GoodWare

Looking at installers of goodware is quite boring. They do the right thing, at least most of the time, and there is not much to see there. However, if you […]