home > paid book/ebook

Windows Forensic Analysis DVD Toolkit, Second Edition

Customer Reviews:

Essential reading

By Jimmy Weg "CFCE" - June 7, 2009

The second edition of Harlan's book nicely complements the first and is essential reading for practitioners at all levels. For those of us who primarily engage in exams of acquired images, the chapters on Registry Analysis, File Analysis, Executable Analysis, and Rootkit Detection provide and build upon basic concepts that go beyond what is taught in beginning and intermediate computer forensics courses.

The registry analysis chapter is particularly valuable and one that I draw on repeatedly. The accompanying DVD, with its scripts, not only provides tools to gather the data that Harlan describes, but provides a means to learn while you read by taking a hands on approach to registry analysis.

The chapter on file analysis teaches fundamentals of system files and logs that can provide key evidence in an exam. It explains not only what may be found, but how to get it and why it got there. These are the types of issues that can aid immeasurably when it comes to report... read more

Even better than the first edition

By hogfly "hogfly" - June 21, 2009

In ancient times, when philosophers and scientists gathered to discuss and debate important topics, people would travel for weeks and months to arrive, just to hear the debates. To listen to the great minds of the time, to learn from them, and on occasion ask questions. In 2009 that trend continues though in a different fashion.

In the case of Windows Forensic Analysis we are fortunate enough to have Harlan Carvey. He has a deep well of knowledge to pull from and he continues to pull buckets of information out of the well to keep us all well hydrated. I was honored to read this book, and it's my privilege to write a review. It's the least I could do.

It's a text book, it's a field manual, it's reference material. This is Windows Forensic Analysis Second Edition and it's the best damn book on the planet for Windows Forensics. I thought I liked the first edition and then I read the second.

It's been updated to be sure, but it's also been expanded... read more

If you buy one book on Windows forensics, this should be it

By Jennifer Kolde - July 23, 2009

For several years, Harlan Carvey has led the field in sharing and publishing his extensive knowledge of Windows forensics. The latest edition of Harlan's book does not disappoint, and this updated and revised copy remains THE Windows forensics reference book to have on your shelf. Harlan draws on both his in-depth knowledge of the Windows operating system and his extensive experience in real-world incident response to successfully bridge what is often a gap between the world of the first responder and the world of the forensic analyst. This is particularly appropriate at a time when those roles continue to converge. If there is information to be found on a Windows system (and I think Harlan knows and has documented the Windows registry better than anyone at Microsoft), Harlan will tell you not only where, but also how to find it. But he doesn't stop there; Harlan also provides several open-source (Perl-based) tools on the accompanying DVD to allow you to extract a variety of... read more

Use coupon below to get discount at eCampus.com!

SHADES
$3 off textbook orders over $75

SUNBLOCK
$4 off textbook orders over $90

SUNSHINE
$5 off textbook orders over $100

Copy the coupon code before clicking the button!

AVAILABILITY
MerchantFormatPrice
Amazon USPaperback$50.00 - $69.95
eBooks.comDigital (PDF)$69.95
eCampusPaperback$61.38 discount!
PREVIEW
Related Documents
MCSA/MCSE Self-Paced Training Kit (Exam 70-290): Managing and Maintaining a Microsoft® Windows Server(TM) 2003 Environment, Second Edition

MCSA/MCSE Self-Paced Training Kit (Exam 70-290): Managing and Maintaining a Microsoft® Windows…

$2.03 - $79.81

Announcing an all-new MCSA/MCSE Training Kit designed to help maximize your performance on Exam 70-290, a core exam for the new Windows Server 2003 certification. This kit packs the tools and ...

Tensor Analysis for Physicists, Second Edition

Tensor Analysis for Physicists, Second Edition

$3.21 - $19.95

This rigorous and advanced mathematical explanation of classic tensor analysis was written by one of the founders of tensor calculus. Its concise exposition of the mathematical basis ...

MCTS: Microsoft Windows 7 Configuration Study Guide, Second Edition (Exam 70-680)

MCTS: Microsoft Windows 7 Configuration Study Guide, Second Edition (Exam 70-680)

$27.11 - $59.99

A fully updated study guide for MCTS exam 70-680Demand for experienced, qualified Windows 7 administrators remains high. IT professionals seeking certification in Windows 7 administration ...

HPLC of Peptides and Proteins: Separation, Analysis, and Conformation, Second Edition

HPLC of Peptides and Proteins: Separation, Analysis, and Conformation, Second Edition

$185.20

HPLC of Peptides and Proteins: Separation, Analysis, and Conformation, Second Edition

ALS Microsoft Windows 2000 Network Infrastructure Administration, Second Edition Lab Manual

ALS Microsoft Windows 2000 Network Infrastructure Administration, Second Edition Lab Manual

$35.05

ALS Microsoft Windows 2000 Network Infrastructure Administration, Second Edition Lab Manual

Microsoft® Windows® XP Inside Out, Second Edition (Bpg-Inside Out)

Microsoft® Windows® XP Inside Out, Second Edition (Bpg-Inside Out)

$0.22 - $44.99

Microsoft® Windows® XP Inside Out, Second Edition (Bpg-Inside Out)

Digital Integrated Circuits: Analysis and Design, Second Edition

Digital Integrated Circuits: Analysis and Design, Second Edition

$111.10

Digital Integrated Circuits: Analysis and Design, Second Edition

Real Analysis and Foundations, Second Edition

Real Analysis and Foundations, Second Edition

$10.00 - $127.03

Real Analysis and Foundations, Second Edition

Exploratory Data Analysis with MATLAB, Second Edition

Exploratory Data Analysis with MATLAB, Second Edition

$68.75 - $91.60

Since the publication of the bestselling first edition, many advances have been made in exploratory data analysis (EDA). Covering innovative approaches for dimensionality reduction, clustering, ...

Chromatographic Analysis of Pharmaceuticals, Second Edition

Chromatographic Analysis of Pharmaceuticals, Second Edition

$272.95

Chromatographic Analysis of Pharmaceuticals, Second Edition

loading