Tuesday 18 February 2014

PDF⋙ Windows Forensics by Dr. Philip Polstra

Windows Forensics by Dr. Philip Polstra

Windows Forensics

Windows Forensics by Dr. Philip Polstra PDF, ePub eBook D0wnl0ad

Windows Forensics is the most comprehensive and up-to-date resource for those wishing to leverage the power of Linux and free software in order to quickly and efficiently perform forensics on Windows systems. It is also a great asset for anyone that would like to better understand Windows internals.

Windows Forensics will guide you step by step through the process of investigating a computer running Windows. Whatever the reason for performing forensics on a Windows system, be it incident response, a criminal investigation, suspected data ex-filtration, or data recovery, this book will tell you what you need to know in order to perform the vast majority of investigations. All of the tools discussed in this book are free and most are also open source.

Dr. Philip Polstra shows how to leverage numerous tools such as Python, shell scripting, and MySQL to quickly, easily, and accurately analyze Windows systems. While readers will have a strong grasp of Python and shell scripting by the time they complete this book, no prior knowledge of either of these scripting languages is assumed. Windows Forensics begins by showing you how to determine if there was an incident with minimally invasive techniques. Once it appears likely that an incident has occurred, Dr. Polstra shows you how to collect data from a live system before shutting it down for the creation of filesystem images.

Windows Forensics contains extensive coverage of Windows FAT and NTFS filesystems. A large collection of Python and shell scripts for creating, mounting, and analyzing filesystem images are presented in this book. The treasure trove of data found in the Windows Registry and other artifacts are discussed in detail. Dr. Polstra introduces readers to the exciting new field of memory analysis using the Volatility framework. Discussion of malware analysis rounds out the book.

Book Highlights

  • 554 pages in large, easy-to-read 8.5 x 11 inch format

  • Over 11,000 lines of Python scripts with explanations

  • Over 500 lines of shell and command scripts with explanations

  • A 96 page chapter covering the FAT filesystem in detail

  • A 164 page chapter on NTFS filesystems

  • Multiple scenarios described in detail with images available from the book website

  • All scripts and other support files are available from the book website



From reader reviews:

Walter Miller:

A lot of people always spent their particular free time to vacation or perhaps go to the outside with them household or their friend. Are you aware? Many a lot of people spent many people free time just watching TV, as well as playing video games all day long. If you would like try to find a new activity here is look different you can read the book. It is really fun for yourself. If you enjoy the book that you read you can spent the whole day to reading a guide. The book Windows Forensics it is quite good to read. There are a lot of folks that recommended this book. These were enjoying reading this book. If you did not have enough space to develop this book you can buy the e-book. You can m0ore very easily to read this book out of your smart phone. The price is not to cover but this book features high quality.


Christopher Jones:

Do you have something that you prefer such as book? The guide lovers usually prefer to choose book like comic, brief story and the biggest an example may be novel. Now, why not hoping Windows Forensics that give your pleasure preference will be satisfied by means of reading this book. Reading practice all over the world can be said as the means for people to know world a great deal better then how they react to the world. It can't be mentioned constantly that reading behavior only for the geeky particular person but for all of you who wants to end up being success person. So , for all you who want to start examining as your good habit, you could pick Windows Forensics become your starter.


Miguel Sherman:

Are you kind of occupied person, only have 10 or even 15 minute in your morning to upgrading your mind talent or thinking skill even analytical thinking? Then you are having problem with the book compared to can satisfy your small amount of time to read it because all this time you only find e-book that need more time to be read. Windows Forensics can be your answer given it can be read by anyone who have those short free time problems.




Read Windows Forensics by Dr. Philip Polstra for online ebook

Windows Forensics by Dr. Philip Polstra Free PDF d0wnl0ad, audio books, books to read, good books to read, cheap books, good books, online books, books online, book reviews epub, read books online, books to read online, online library, greatbooks to read, PDF best books to read, top books to read Windows Forensics by Dr. Philip Polstra books to read online.

Windows Forensics by Dr. Philip Polstra Doc

Windows Forensics by Dr. Philip Polstra Mobipocket
Windows Forensics by Dr. Philip Polstra EPub

No comments:

Post a Comment