Showing posts with label windows security. Show all posts
Showing posts with label windows security. Show all posts

Windows Forensic Analysis DVD Toolkit, Second Edition Review

Windows Forensic Analysis DVD Toolkit, Second Edition
Average Reviews:

(More customer reviews)
Are you looking to buy Windows Forensic Analysis DVD Toolkit, Second Edition? Here is the right place to find the great deals. we can offer discounts of up to 90% on Windows Forensic Analysis DVD Toolkit, Second Edition. Check out the link below:

>> Click Here to See Compare Prices and Get the Best Offers

Windows Forensic Analysis DVD Toolkit, Second Edition ReviewThe second edition of Harlan's book nicely complements the first and is essential reading for practitioners at all levels. For those of us who primarily engage in exams of acquired images, the chapters on Registry Analysis, File Analysis, Executable Analysis, and Rootkit Detection provide and build upon basic concepts that go beyond what is taught in beginning and intermediate computer forensics courses.
The registry analysis chapter is particularly valuable and one that I draw on repeatedly. The accompanying DVD, with its scripts, not only provides tools to gather the data that Harlan describes, but provides a means to learn while you read by taking a hands on approach to registry analysis.
The chapter on file analysis teaches fundamentals of system files and logs that can provide key evidence in an exam. It explains not only what may be found, but how to get it and why it got there. These are the types of issues that can aid immeasurably when it comes to report writing and courtroom testimony. Similarly, the discussions on malware, rootkits, and executables provide guidance and solutions to considerations of whether an uninvited influence played a role in data arriving on, or departing from, a system.
For those who don't engage in incident or live response at the moment, the time is fast approaching when that aspect forensics is going to be vital to us all. Harlan explains what information is available, and he describes the methods and tools with which we can acquire volatile data and access information that's gone once the plug is pulled. Harlan brings together this area of his book with a discussion of analyzing the data.
In sum, this is a great work that is suited to those who have had basic computer forensics training as well as examiners who have been practicing for a long time. Things change every day, and WFA II provides a means to keep pace.
Windows Forensic Analysis DVD Toolkit, Second Edition Overview

Want to learn more information about Windows Forensic Analysis DVD Toolkit, Second Edition?

>> Click Here to See All Customer Reviews & Ratings Now
Read More...