000 02913cam a2200421 i 4500
999 _c527331
_d527331
001 18076494
003 NUST
005 20190725071940.0
008 140321s2014 ne 001 0 eng
010 _a 2014003508
020 _a9780124171572 (paperback)
038 _aM. Shaban
040 _aDLC
_beng
_cDLC
_erda
_dDLC
042 _apcc
043 _an-us---
050 0 0 _aHV8079.C65
_bC3726 2014
082 0 0 _a363.25968
_bCAR
100 1 _aCarvey, Harlan A.
_918516
245 1 0 _aWindows forensic analysis toolkit :
_badvanced analysis techniques for Windows 8 /
_cHarlan Carvey.
250 _a4th ed.
264 1 _aAmsterdam ; Boston :
_bSyngress,
_c[2014]
300 _axxi, 321 pages ;
_c24 cm
336 _atext
_2rdacontent
337 _aunmediated
_2rdamedia
338 _avolume
_2rdacarrier
500 _aRevised edition of the author's Windows forensic analysis toolkit : advanced analysis techniques for Windows 7, 3rd ed.
500 _aIncludes index.
505 8 _aMachine generated contents note: Analysis Concepts Immediate Response Volume Shadow Copies File Analysis Registry Analysis Malware Detection Timeline Analysis Application Analysis Reporting .
520 _a"When I sat down to update the material for this edition, I wanted to not only include new information that I'd found or developed since the third edition was published, but I also wanted to try to include as much information as possible regarding Windows 8 and 8.1. With Windows 8.1 becoming available while I was updating the book, the inevitable questions were being asked, and invariably it won't be long before we start seeing the systems appear on analyst's workbenches. As such, I've tried to provide as much information as I could with respect to newer versions of Windows (i.e., 8 and 8.1), either by writing it directly into the book or linking to the sources of information on the Internet, when attempting to summarize it would simply not do the content justice. Keep in mind, however, that new information is being discovered and developed all the time, and at some point, I needed to stop writing and submit the book for final review and publishing. I'm sure that even more information will become available during the time between when the book goes to the printer, and when it actually comes out on the shelves at bookstores"--
_cProvided by publisher.
630 0 0 _aMicrosoft Windows (Computer file)
_xSecurity measures.
_918517
650 0 _aComputer crimes
_xInvestigation
_zUnited States
_xMethodology.
_918518
650 0 _aComputer networks
_xSecurity measures.
_9466
650 0 _aInternet
_xSecurity measures.
_916792
650 0 _aComputer security.
_9570
906 _a7
_bcbc
_corignew
_d1
_eecip
_f20
_gy-gencatlg
942 _2ddc
_cBK