Region: Worldwide excl. Europe   Change Region
Home   |   About Us   |   Contact Us   |  

Home > Digital Forensics > Windows Registry Forensics

Windows Registry Forensics

ISBN: 9781597495806
Pages: 248
Trim: 7.5 in x 9.25 in
Publication Date: Feb 2011

Region: Worldwide excl. Europe - $USD
Change Region »

$ 69.95 USD Buy Now

or buy from
Amazon.com
BN.com

Windows Registry Forensics

By Harlan Carvey

Description

Harlan Carvey brings readers an advanced book on Windows Registry. The first book of its kind EVER -- Windows Registry Forensics provides the background of the Registry to help develop an understanding of the binary structure of Registry hive files. Approaches to live response and analysis are included, and tools and techniques for postmortem analysis are discussed at length. Tools and techniques will be presented that take the analyst beyond the current use of viewers and into real analysis of data contained in the Registry.



  • Packed with real-world examples using freely available open source tools
  • Deep explanation and understanding of the Windows Registry - the most difficult part of Windows to analyze forensically
  • Includes a CD containing code and author-created tools discussed in the book

About the Authors

Harlan Carvey
(CISSP) Vice President of Advanced Security Projects with Terremark Worldwide, Inc., which is headquartered in Miami, FL. Harlan has provided forensic analysis services for the hospitality industry, financial institutions, as well as federal government and law enforcement agencies. Harlan resides in Northern Virginia with his family.

Contents

  • Chapter 1. Registry Analysis Chapter 2. Tools Chapter 3. Case Studies: The System Chapter 4. Case Studies: Tracking User Activity