Windows Forensic Analysis Toolkit, Third Edition: Advanced Analysis Techniques for Windows 7

4,39 valoración promedio
( 23 valoraciones por Goodreads )
 
9781597497275: Windows Forensic Analysis Toolkit, Third Edition: Advanced Analysis Techniques for Windows 7

Windows Forensic Analysis Toolkit: Advanced Analysis Techniques for Windows 7 provides an overview of live and postmortem response collection and analysis methodologies for Windows 7. It considers the core investigative and analysis concepts that are critical to the work of professionals within the digital forensic analysis community, as well as the need for immediate response once an incident has been identified.
Organized into eight chapters, the book discusses Volume Shadow Copies (VSCs) in the context of digital forensics and explains how analysts can access the wealth of information available in VSCs without interacting with the live system or purchasing expensive solutions. It also describes files and data structures that are new to Windows 7 (or Vista), Windows Registry Forensics, how the presence of malware within an image acquired from a Windows system can be detected, the idea of timeline analysis as applied to digital forensic analysis, and concepts and techniques that are often associated with dynamic malware analysis. Also included are several tools written in the Perl scripting language, accompanied by Windows executables.
This book will prove useful to digital forensic analysts, incident responders, law enforcement officers, students, researchers, system administrators, hobbyists, or anyone with an interest in digital forensic analysis of Windows 7 systems.

  • Timely 3e of a Syngress digital forensic bestseller
  • Updated to cover Windows 7 systems, the newest Windows version
  • New online companion website houses checklists, cheat sheets, free tools, and demos

"Sinopsis" puede pertenecer a otra edición de este libro.

Review:

Amazon Exclusive: A Letter from Harlan Carvey, author of Windows Forensic Analysis Toolkit, 3rd Edition
Harlan Carvey

Dear Amazon Readers,

I am not an expert. I really, enthusiastically enjoy performing digital forensic analysis of Windows systems and will get up early (for me..."early" is a relative term) to work on an examination. I enjoy not just finding new things in my analysis, but finding new combinations of things, looking for those hidden patterns to jump out of the data. I enjoy writing code to parse the binary contents of a file so that I can then see how the various teeth of the operating system and application gears mesh together, and in seeing what primary, secondary, and tertiary artifacts are left by various events that occur on a system.

When I first started writing books, I did so because I could not find something that would fit what I saw as my needs. Sure, there were books available that covered some aspects of digital forensic analysis of Windows systems, but there wasn't anything available that really went into depth on analyzing Windows as a system of interconnected components. There were books that covered some of the really obvious indications of an intrusion or malware infection, but how often are our examinations really about finding the obvious artifacts? I knew I couldn't be the only one looking for something like this, and writing a book not only provided a reference for myself and others, but the act of writing required me to polish and hone my thoughts. I hope you enjoy the finished product, and that it leads you beyond the obvious.

I hope you find my attempt to contribute to the digital forensics analysis community to be useful and thought-provoking. Thank you.

--Harlan Carvey

From the Back Cover:

Now in its third edition, Harlan Carvey has updated Windows Forensic Analysis Toolkit to cover Windows 7 systems. The primary focus of this edition will be on analyzing Windows 7 systems and on processes using free and open-source tools. The book covers live response, file analysis, malware detection, timeline, and much more. The author presents real-life experiences from the trenches, making the material realistic and showing the why behind the how. New to this edition, the companion and toolkit materials are now hosted online. This material consists of electronic printable checklists, cheat sheets, free custom tools, and walk-through demos.

"Sobre este título" puede pertenecer a otra edición de este libro.

Los mejores resultados en AbeBooks

1.

Harlan Carvey
Editorial: Syngress (2012)
ISBN 10: 1597497274 ISBN 13: 9781597497275
Nuevos Paperback Cantidad: 1
Librería
Irish Booksellers
(Rumford, ME, Estados Unidos de America)
Valoración
[?]

Descripción Syngress, 2012. Paperback. Estado de conservación: New. book. Nº de ref. de la librería M1597497274

Más información sobre esta librería | Hacer una pregunta a la librería

Comprar nuevo
EUR 45,15
Convertir moneda

Añadir al carrito

Gastos de envío: GRATIS
A Estados Unidos de America
Destinos, gastos y plazos de envío

2.

Carvey, Harlan
Editorial: Syngress (2017)
ISBN 10: 1597497274 ISBN 13: 9781597497275
Nuevos Paperback Cantidad: 2
Impresión bajo demanda
Librería
Save With Sam
(North Miami, FL, Estados Unidos de America)
Valoración
[?]

Descripción Syngress, 2017. Paperback. Estado de conservación: New. Brand New! This item is printed on demand. Nº de ref. de la librería VIB1597497274

Más información sobre esta librería | Hacer una pregunta a la librería

Comprar nuevo
EUR 59,52
Convertir moneda

Añadir al carrito

Gastos de envío: EUR 2,53
A Estados Unidos de America
Destinos, gastos y plazos de envío

3.

Carvey, Harlan
Editorial: Syngress (2016)
ISBN 10: 1597497274 ISBN 13: 9781597497275
Nuevos Paperback Cantidad: 1
Impresión bajo demanda
Librería
Ria Christie Collections
(Uxbridge, Reino Unido)
Valoración
[?]

Descripción Syngress, 2016. Paperback. Estado de conservación: New. PRINT ON DEMAND Book; New; Publication Year 2016; Not Signed; Fast Shipping from the UK. No. book. Nº de ref. de la librería ria9781597497275_lsuk

Más información sobre esta librería | Hacer una pregunta a la librería

Comprar nuevo
EUR 57,73
Convertir moneda

Añadir al carrito

Gastos de envío: EUR 4,38
De Reino Unido a Estados Unidos de America
Destinos, gastos y plazos de envío

4.

Harlan Carvey
Editorial: Syngress Media,U.S., United States (2012)
ISBN 10: 1597497274 ISBN 13: 9781597497275
Nuevos Paperback Cantidad: 10
Impresión bajo demanda
Librería
The Book Depository
(London, Reino Unido)
Valoración
[?]

Descripción Syngress Media,U.S., United States, 2012. Paperback. Estado de conservación: New. 3rd edition. Language: English . Brand New Book ***** Print on Demand *****.Windows Forensic Analysis Toolkit: Advanced Analysis Techniques for Windows 7 provides an overview of live and postmortem response collection and analysis methodologies for Windows 7. It considers the core investigative and analysis concepts that are critical to the work of professionals within the digital forensic analysis community, as well as the need for immediate response once an incident has been identified. Organized into eight chapters, the book discusses Volume Shadow Copies (VSCs) in the context of digital forensics and explains how analysts can access the wealth of information available in VSCs without interacting with the live system or purchasing expensive solutions. It also describes files and data structures that are new to Windows 7 (or Vista), Windows Registry Forensics, how the presence of malware within an image acquired from a Windows system can be detected, the idea of timeline analysis as applied to digital forensic analysis, and concepts and techniques that are often associated with dynamic malware analysis. Also included are several tools written in the Perl scripting language, accompanied by Windows executables. This book will prove useful to digital forensic analysts, incident responders, law enforcement officers, students, researchers, system administrators, hobbyists, or anyone with an interest in digital forensic analysis of Windows 7 systems. Nº de ref. de la librería AAV9781597497275

Más información sobre esta librería | Hacer una pregunta a la librería

Comprar nuevo
EUR 63,23
Convertir moneda

Añadir al carrito

Gastos de envío: GRATIS
De Reino Unido a Estados Unidos de America
Destinos, gastos y plazos de envío

5.

Harlan Carvey
Editorial: Syngress Media,U.S., United States (2012)
ISBN 10: 1597497274 ISBN 13: 9781597497275
Nuevos Paperback Cantidad: 10
Impresión bajo demanda
Librería
The Book Depository US
(London, Reino Unido)
Valoración
[?]

Descripción Syngress Media,U.S., United States, 2012. Paperback. Estado de conservación: New. 3rd edition. Language: English . Brand New Book ***** Print on Demand *****. Windows Forensic Analysis Toolkit: Advanced Analysis Techniques for Windows 7 provides an overview of live and postmortem response collection and analysis methodologies for Windows 7. It considers the core investigative and analysis concepts that are critical to the work of professionals within the digital forensic analysis community, as well as the need for immediate response once an incident has been identified. Organized into eight chapters, the book discusses Volume Shadow Copies (VSCs) in the context of digital forensics and explains how analysts can access the wealth of information available in VSCs without interacting with the live system or purchasing expensive solutions. It also describes files and data structures that are new to Windows 7 (or Vista), Windows Registry Forensics, how the presence of malware within an image acquired from a Windows system can be detected, the idea of timeline analysis as applied to digital forensic analysis, and concepts and techniques that are often associated with dynamic malware analysis. Also included are several tools written in the Perl scripting language, accompanied by Windows executables. This book will prove useful to digital forensic analysts, incident responders, law enforcement officers, students, researchers, system administrators, hobbyists, or anyone with an interest in digital forensic analysis of Windows 7 systems. Nº de ref. de la librería AAV9781597497275

Más información sobre esta librería | Hacer una pregunta a la librería

Comprar nuevo
EUR 63,26
Convertir moneda

Añadir al carrito

Gastos de envío: GRATIS
De Reino Unido a Estados Unidos de America
Destinos, gastos y plazos de envío

6.

Harlan Carvey
Editorial: Syngress (2012)
ISBN 10: 1597497274 ISBN 13: 9781597497275
Nuevos Cantidad: > 20
Impresión bajo demanda
Librería
Pbshop
(Wood Dale, IL, Estados Unidos de America)
Valoración
[?]

Descripción Syngress, 2012. PAP. Estado de conservación: New. New Book. Shipped from US within 10 to 14 business days. THIS BOOK IS PRINTED ON DEMAND. Established seller since 2000. Nº de ref. de la librería IQ-9781597497275

Más información sobre esta librería | Hacer una pregunta a la librería

Comprar nuevo
EUR 60,34
Convertir moneda

Añadir al carrito

Gastos de envío: EUR 3,37
A Estados Unidos de America
Destinos, gastos y plazos de envío

7.

Harlan Carvey
Editorial: Syngress (2012)
ISBN 10: 1597497274 ISBN 13: 9781597497275
Nuevos Cantidad: > 20
Impresión bajo demanda
Librería
Books2Anywhere
(Fairford, GLOS, Reino Unido)
Valoración
[?]

Descripción Syngress, 2012. PAP. Estado de conservación: New. New Book. Delivered from our UK warehouse in 4 to 14 business days. THIS BOOK IS PRINTED ON DEMAND. Established seller since 2000. Nº de ref. de la librería LQ-9781597497275

Más información sobre esta librería | Hacer una pregunta a la librería

Comprar nuevo
EUR 57,19
Convertir moneda

Añadir al carrito

Gastos de envío: EUR 10,20
De Reino Unido a Estados Unidos de America
Destinos, gastos y plazos de envío

8.

Carvey, Harlan
Editorial: Syngress (2012)
ISBN 10: 1597497274 ISBN 13: 9781597497275
Nuevos Paperback Cantidad: 10
Librería
Ergodebooks
(RICHMOND, TX, Estados Unidos de America)
Valoración
[?]

Descripción Syngress, 2012. Paperback. Estado de conservación: New. Nº de ref. de la librería INGM9781597497275

Más información sobre esta librería | Hacer una pregunta a la librería

Comprar nuevo
EUR 66,95
Convertir moneda

Añadir al carrito

Gastos de envío: EUR 4,22
A Estados Unidos de America
Destinos, gastos y plazos de envío

9.

Carvey, Harlan
Editorial: Syngress (2017)
ISBN 10: 1597497274 ISBN 13: 9781597497275
Nuevos Paperback Cantidad: > 20
Impresión bajo demanda
Librería
Murray Media
(North Miami Beach, FL, Estados Unidos de America)
Valoración
[?]

Descripción Syngress, 2017. Paperback. Estado de conservación: New. Never used! This item is printed on demand. Nº de ref. de la librería 1597497274

Más información sobre esta librería | Hacer una pregunta a la librería

Comprar nuevo
EUR 77,00
Convertir moneda

Añadir al carrito

Gastos de envío: EUR 1,68
A Estados Unidos de America
Destinos, gastos y plazos de envío

10.

Harlan Carvey
Editorial: Syngress Publishing
ISBN 10: 1597497274 ISBN 13: 9781597497275
Nuevos Paperback Cantidad: > 20
Librería
BuySomeBooks
(Las Vegas, NV, Estados Unidos de America)
Valoración
[?]

Descripción Syngress Publishing. Paperback. Estado de conservación: New. 296 pages. Dimensions: 9.1in. x 7.4in. x 0.9in.Windows is the largest operating system on desktops and servers worldwide, which means more intrusions, malware infections, and cybercrime happen on these systems. Author Harlan Carvey has brought his bestselling book up-to-date by covering the newest version of Windows, Windows 7. Windows Forensic Analysis Toolkit, 3e, covers live and postmortem response collection and analysis methodologies, addressing material that is applicable to law enforcement, the federal government, students, and consultants. The book is also accessible to system administrators, who are often the frontline when an incident occurs, but due to staffing and budget constraints do not have the necessary knowledge to respond effectively. Now the companion material is hosted online as opposed to a DVD, making the material accessible from any location and in any book format. Timely 3e of a Syngress digital forensic bestsellerUpdated to cover Windows 7 systems, the newest Windows versionNew online companion website houses checklists, cheat sheets, free tools, and demos This item ships from multiple locations. Your book may arrive from Roseburg,OR, La Vergne,TN. Paperback. Nº de ref. de la librería 9781597497275

Más información sobre esta librería | Hacer una pregunta a la librería

Comprar nuevo
EUR 91,03
Convertir moneda

Añadir al carrito

Gastos de envío: GRATIS
A Estados Unidos de America
Destinos, gastos y plazos de envío

Existen otras copia(s) de este libro

Ver todos los resultados de su búsqueda