Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry / Edition 2

Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry / Edition 2

by Harlan Carvey
ISBN-10:
012803291X
ISBN-13:
9780128032916
Pub. Date:
03/25/2016
Publisher:
Elsevier Science
ISBN-10:
012803291X
ISBN-13:
9780128032916
Pub. Date:
03/25/2016
Publisher:
Elsevier Science
Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry / Edition 2

Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry / Edition 2

by Harlan Carvey
$69.95
Current price is , Original price is $69.95. You
$69.95 
  • SHIP THIS ITEM
    Qualifies for Free Shipping
  • PICK UP IN STORE
    Check Availability at Nearby Stores

Overview

Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry, Second Edition, provides the most in-depth guide to forensic investigations involving Windows Registry. This book is one-of-a-kind, giving the background of the Registry to help users develop an understanding of the structure of registry hive files, as well as information stored within keys and values that can have a significant impact on forensic investigations. Tools and techniques for post mortem analysis are discussed at length to take users beyond the current use of viewers and into real analysis of data contained in the Registry. This second edition continues a ground-up approach to understanding so that the treasure trove of the Registry can be mined on a regular and continuing basis.


Product Details

ISBN-13: 9780128032916
Publisher: Elsevier Science
Publication date: 03/25/2016
Edition description: 2nd ed.
Pages: 216
Sales rank: 526,392
Product dimensions: 7.40(w) x 9.10(h) x 0.50(d)

About the Author

Mr. Carvey is a digital forensics and incident response analyst with past experience in vulnerability assessments, as well as some limited pen testing. He conducts research into digital forensic analysis of Window systems, identifying and parsing various digital artifacts from those systems, and has developed several innovative tools and investigative processes specific to the digital forensics analysis field. He is the developer of RegRipper, a widely-used tool for Windows Registry parsing and analysis. Mr. Carvey has developed and taught several courses, including Windows Forensics, Registry, and Timeline Analysis.

Table of Contents

1. Registry Analysis 2. Processes and Tools 3. Case Studies: The System 4. Case Studies: Tracking User Activity 5. RegRipper

What People are Saying About This

From the Publisher

The second edition of this go-to reference provides readers with the information, tools, and processes needed to find and analyze forensic evidence using Windows Registry. Tools and techniques for post mortem analysis are discussed at length to take users beyond the current use of viewers and into real analysis of data contained in the Registry

From the B&N Reads Blog

Customer Reviews