000 02667cam a2200361 i 4500
001 18076494
003 OSt
005 20220527085229.0
008 140321s2014 ne 001 0 eng
010 _a 2014003508
020 _a9780124171572 (paperback)
040 _aDLC
_beng
_cDLC
_erda
_dDLC
042 _apcc
043 _an-us---
050 0 0 _aHV8079.C65
_bC3726 2014
082 0 0 _a363.25/968
_223
100 1 _aCarvey, Harlan A.
245 1 0 _aWindows forensic analysis toolkit :
_badvanced analysis techniques for Windows 8 /
_cHarlan Carvey.
250 _aFourth edition.
300 _axxi, 321 pages ;
_c24 cm
500 _aRevised edition of the author's Windows forensic analysis toolkit : advanced analysis techniques for Windows 7, 3rd ed.
500 _aIncludes index.
505 8 _aMachine generated contents note: Analysis Concepts Immediate Response Volume Shadow Copies File Analysis Registry Analysis Malware Detection Timeline Analysis Application Analysis Reporting .
520 _a"When I sat down to update the material for this edition, I wanted to not only include new information that I'd found or developed since the third edition was published, but I also wanted to try to include as much information as possible regarding Windows 8 and 8.1. With Windows 8.1 becoming available while I was updating the book, the inevitable questions were being asked, and invariably it won't be long before we start seeing the systems appear on analyst's workbenches. As such, I've tried to provide as much information as I could with respect to newer versions of Windows (i.e., 8 and 8.1), either by writing it directly into the book or linking to the sources of information on the Internet, when attempting to summarize it would simply not do the content justice. Keep in mind, however, that new information is being discovered and developed all the time, and at some point, I needed to stop writing and submit the book for final review and publishing. I'm sure that even more information will become available during the time between when the book goes to the printer, and when it actually comes out on the shelves at bookstores"--
630 0 0 _aMicrosoft Windows (Computer file)
_xSecurity measures.
650 0 _aComputer crimes
_xInvestigation
_zUnited States
_xMethodology.
650 0 _aComputer networks
_xSecurity measures.
650 0 _aInternet
_xSecurity measures.
650 0 _aComputer security.
906 _a7
_bcbc
_corignew
_d1
_eecip
_f20
_gy-gencatlg
942 _2ddc
_cBK
999 _c9469
_d9469