Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry 1st edition by Harlan Carvey – Ebook PDF Instant Download/Delivery. 1597495808, 978-1597495806
Full download Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry 1st Edition after payment
Product details:
ISBN 10: 1597495808
ISBN 13: 978-1597495806
Author: Harlan Carvey
Harlan Carvey brings readers an advanced book on Windows Registry. The first book of its kind EVER — Windows Registry Forensics provides the background of the Registry to help develop an understanding of the binary structure of Registry hive files. Approaches to live response and analysis are included, and tools and techniques for postmortem analysis are discussed at length. Tools and techniques will be presented that take the analyst beyond the current use of viewers and into real analysis of data contained in the Registry.
- Packed with real-world examples using freely available open source tools
- Deep explanation and understanding of the Windows Registry – the most difficult part of Windows to analyze forensically
- Includes a CD containing code and author-created tools discussed in the book
Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry 1st Table of contents:
Chapter 1: Registry Analysis
- Introduction to the Windows Registry
- Understanding the Role of the Registry in System Operations
- Techniques for Analyzing Registry Keys and Values
- Tools and Methods for Registry Data Collection
- Interpreting Registry Artifacts for Forensic Investigation
- Case Examples of Registry Analysis
Chapter 2: Tools
- Overview of Forensic Tools for Registry Analysis
- Popular Tools for System Analysis and Forensics
- Registry Editors
- Log Analysis Tools
- Data Recovery and File Integrity Tools
- Selecting the Right Tools for Different Scenarios
- Configuring and Using Tools for Optimal Performance
- Advanced Tool Features and Customization
Chapter 3: Case Studies: The System
- Forensic Analysis of a Compromised System
- Identifying Artifacts from Intrusion and Malicious Activity
- Detailed Examination of System Logs and File Systems
- Analyzing System Configuration and Network Traffic
- Building a Timeline of Events from System Artifacts
- Practical Case Study: Investigating a System Breach
Chapter 4: Case Studies: Tracking User Activity
- Investigating User Activity Through System Artifacts
- User Activity in the Registry: What to Look For
- Analyzing Browser History, Login Credentials, and Recent Files
- Tracking User Interactions with the Operating System
- Building a Timeline of User Actions
- Case Examples of Tracing User Activity in Forensics
People also search for Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry 1st:
harlan carvey windows registry forensics
windows registry forensics cheat sheet
windows registry forensics 2nd edition pdf
what is windows registry and how does it work
registry forensics tools