Windows Forensic Analysis Toolkit
Syngress Media,U.S. (Verlag)
978-0-12-417157-2 (ISBN)
The companion and toolkit materials are hosted online. This material consists of electronic printable checklists, cheat sheets, free custom tools, and walk-through demos. This edition complements Windows Forensic Analysis Toolkit, Second Edition, which focuses primarily on XP, and Windows Forensic Analysis Toolkit, Third Edition, which focuses primarily on Windows 7.
This new fourth edition provides expanded coverage of many topics beyond Windows 8 as well, including new cradle-to-grave case examples, USB device analysis, hacking and intrusion cases, and "how would I do this" from Harlan's personal case files and questions he has received from readers. The fourth edition also includes an all-new chapter on reporting.
Mr. Carvey is a digital forensics and incident response analyst with past experience in vulnerability assessments, as well as some limited pen testing. He conducts research into digital forensic analysis of Window systems, identifying and parsing various digital artifacts from those systems, and has developed several innovative tools and investigative processes specific to the digital forensics analysis field. He is the developer of RegRipper, a widely-used tool for Windows Registry parsing and analysis. Mr. Carvey has developed and taught several courses, including Windows Forensics, Registry, and Timeline Analysis.
Analysis Concepts
Immediate Response
Volume Shadow Copies
File Analysis
Registry Analysis
Malware Detection
Timeline Analysis
Application Analysis
Reporting
Erscheint lt. Verlag | 8.5.2014 |
---|---|
Zusatzinfo | 60 illustrations; Illustrations |
Verlagsort | Rockland, MA |
Sprache | englisch |
Maße | 191 x 235 mm |
Gewicht | 720 g |
Themenwelt | Informatik ► Betriebssysteme / Server ► Windows |
Informatik ► Netzwerke ► Sicherheit / Firewall | |
ISBN-10 | 0-12-417157-5 / 0124171575 |
ISBN-13 | 978-0-12-417157-2 / 9780124171572 |
Zustand | Neuware |
Haben Sie eine Frage zum Produkt? |
aus dem Bereich