Items related to Windows Registry Forensics: Advanced Digital Forensic...

Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry - Softcover

  • 4.18 out of 5 stars
    44 ratings by Goodreads
 
9781597495806: Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry

Synopsis

Harlan Carvey brings readers an advanced book on Windows Registry. The first book of its kind EVER -- Windows Registry Forensics provides the background of the Registry to help develop an understanding of the binary structure of Registry hive files. Approaches to live response and analysis are included, and tools and techniques for postmortem analysis are discussed at length. Tools and techniques will be presented that take the analyst beyond the current use of viewers and into real analysis of data contained in the Registry.




  • Packed with real-world examples using freely available open source tools

  • Deep explanation and understanding of the Windows Registry - the most difficult part of Windows to analyze forensically

  • Includes a CD containing code and author-created tools discussed in the book

"synopsis" may belong to another edition of this title.

About the Author

Mr. Carvey is a digital forensics and incident response analyst with past experience in vulnerability assessments, as well as some limited pen testing. He conducts research into digital forensic analysis of Window systems, identifying and parsing various digital artifacts from those systems, and has developed several innovative tools and investigative processes specific to the digital forensics analysis field. He is the developer of RegRipper, a widely-used tool for Windows Registry parsing and analysis. Mr. Carvey has developed and taught several courses, including Windows Forensics, Registry, and Timeline Analysis.

From the Back Cover

Harlan Carvey brings you an advanced book on just the Windows Registry – the most difficult part of Windows to analyze forensically. Windows Registry Forensics provides the background of the Registry to developing an understanding of the binary structure of Registry hive files. Approaches to live response and analysis are included and tools and techniques for post-mortem analysis are discussed at length.

Tools and techniques will be presented that take the analyst beyond the current use of viewers and into real analysis of data contained in the Registry, and demonstrate the forensic value of the Registry.

  • Packed with real-world examples using freely available tools
  • Deep explanation and understanding of the Windows Registry
  • Includes a CD containing code and author-created tools discussed in the book

"About this title" may belong to another edition of this title.

Buy Used

Condition: Good
Connecting readers with great books...
View this item

US$ 3.75 shipping within U.S.A.

Destination, rates & speeds

Search results for Windows Registry Forensics: Advanced Digital Forensic...

Stock Image

Carvey, Harlan
Published by Syngress, 2011
ISBN 10: 1597495808 ISBN 13: 9781597495806
Used Paperback

Seller: HPB-Red, Dallas, TX, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Paperback. Condition: Good. Connecting readers with great books since 1972! Used textbooks may not include companion materials such as access codes, etc. May have some wear or writing/highlighting. We ship orders daily and Customer Service is our top priority! Seller Inventory # S_346703270

Contact seller

Buy Used

US$ 11.67
Convert currency
Shipping: US$ 3.75
Within U.S.A.
Destination, rates & speeds

Quantity: 1 available

Add to basket

Stock Image

Harlan Carvey
Published by Syngress, 2011
ISBN 10: 1597495808 ISBN 13: 9781597495806
Used Paperback

Seller: ThriftBooks-Atlanta, AUSTELL, GA, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Paperback. Condition: Very Good. No Jacket. May have limited writing in cover pages. Pages are unmarked. ~ ThriftBooks: Read More, Spend Less 1.75. Seller Inventory # G1597495808I4N00

Contact seller

Buy Used

US$ 15.66
Convert currency
Shipping: FREE
Within U.S.A.
Destination, rates & speeds

Quantity: 1 available

Add to basket

Stock Image

Harlan Carvey
Published by Syngress, 2011
ISBN 10: 1597495808 ISBN 13: 9781597495806
Used Paperback

Seller: ThriftBooks-Atlanta, AUSTELL, GA, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Paperback. Condition: Fair. No Jacket. Readable copy. Pages may have considerable notes/highlighting. ~ ThriftBooks: Read More, Spend Less 1.75. Seller Inventory # G1597495808I5N00

Contact seller

Buy Used

US$ 15.66
Convert currency
Shipping: FREE
Within U.S.A.
Destination, rates & speeds

Quantity: 1 available

Add to basket

Stock Image

Carvey, Harlan
Published by Syngress, 2011
ISBN 10: 1597495808 ISBN 13: 9781597495806
Used paperback

Seller: Patrico Books, Apollo Beach, FL, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

paperback. Condition: Good. Ships Out Tomorrow! Seller Inventory # 231124052

Contact seller

Buy Used

US$ 13.74
Convert currency
Shipping: US$ 3.99
Within U.S.A.
Destination, rates & speeds

Quantity: 1 available

Add to basket

Seller Image

Harlan Carvey
Published by Syngress Press, 2011
ISBN 10: 1597495808 ISBN 13: 9781597495806
Used Softcover

Seller: Bookbot, Prague, Czech Republic

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Condition: As New. Leichte Abnutzungen. A guide to the Windows Registry cover such topics as Registry structure, live analysis, security, system hive, and tracking user activity. Seller Inventory # 56fe89de-4d6c-477f-ae54-b9e22c20b976

Contact seller

Buy Used

US$ 14.27
Convert currency
Shipping: US$ 15.00
From Czech Republic to U.S.A.
Destination, rates & speeds

Quantity: 1 available

Add to basket

Stock Image

Carvey, Harlan
Published by Syngress, 2011
ISBN 10: 1597495808 ISBN 13: 9781597495806
New Paperback

Seller: Toscana Books, AUSTIN, TX, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Paperback. Condition: new. Excellent Condition.Excels in customer satisfaction, prompt replies, and quality checks. Seller Inventory # Scanned1597495808

Contact seller

Buy New

US$ 54.82
Convert currency
Shipping: US$ 4.30
Within U.S.A.
Destination, rates & speeds

Quantity: 1 available

Add to basket

Stock Image

Carvey, Harlan
Published by Syngress, 2011
ISBN 10: 1597495808 ISBN 13: 9781597495806
New Softcover

Seller: KuleliBooks, Phoenix, AZ, U.S.A.

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Condition: New. Fast Shipping - Safe and secure Mailer. Seller Inventory # 521X7W000OCT

Contact seller

Buy New

US$ 67.74
Convert currency
Shipping: US$ 4.21
Within U.S.A.
Destination, rates & speeds

Quantity: 1 available

Add to basket

Seller Image

Harlan Carvey
Published by Syngress Media Apr 2011, 2011
ISBN 10: 1597495808 ISBN 13: 9781597495806
New Taschenbuch
Print on Demand

Seller: BuchWeltWeit Ludwig Meier e.K., Bergisch Gladbach, Germany

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Taschenbuch. Condition: Neu. This item is printed on demand - it takes 3-4 days longer - Neuware -Harlan Carvey brings readers an advanced book on Windows Registry - the most difficult part of Windows to analyze in forensics! Windows Registry Forensics provides the background of the Registry to help develop an understanding of the binary structure of Registry hive files. Approaches to live response and analysis are included, and tools and techniques for postmortem analysis are discussed at length. Tools and techniques will be presented that take the analyst beyond the current use of viewers and into real analysis of data contained in the Registry. This book also has a DVD containing tools, instructions and videos. 248 pp. Englisch. Seller Inventory # 9781597495806

Contact seller

Buy New

US$ 79.47
Convert currency
Shipping: US$ 26.57
From Germany to U.S.A.
Destination, rates & speeds

Quantity: 2 available

Add to basket

Stock Image

Carvey, Harlan
Published by Syngress Media Inc, 2011
ISBN 10: 1597495808 ISBN 13: 9781597495806
New Paperback

Seller: Revaluation Books, Exeter, United Kingdom

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Paperback. Condition: Brand New. 1st edition. 248 pages. 9.20x7.50x0.80 inches. In Stock. Seller Inventory # 1597495808

Contact seller

Buy New

US$ 99.12
Convert currency
Shipping: US$ 13.35
From United Kingdom to U.S.A.
Destination, rates & speeds

Quantity: 1 available

Add to basket

Seller Image

Harlan Carvey
Published by Syngress Media, 2011
ISBN 10: 1597495808 ISBN 13: 9781597495806
New Taschenbuch
Print on Demand

Seller: AHA-BUCH GmbH, Einbeck, Germany

Seller rating 5 out of 5 stars 5-star rating, Learn more about seller ratings

Taschenbuch. Condition: Neu. nach der Bestellung gedruckt Neuware - Printed after ordering - Harlan Carvey brings readers an advanced book on Windows Registry - the most difficult part of Windows to analyze in forensics! Windows Registry Forensics provides the background of the Registry to help develop an understanding of the binary structure of Registry hive files. Approaches to live response and analysis are included, and tools and techniques for postmortem analysis are discussed at length. Tools and techniques will be presented that take the analyst beyond the current use of viewers and into real analysis of data contained in the Registry. This book also has a DVD containing tools, instructions and videos. Seller Inventory # 9781597495806

Contact seller

Buy New

US$ 85.35
Convert currency
Shipping: US$ 35.23
From Germany to U.S.A.
Destination, rates & speeds

Quantity: 2 available

Add to basket

There are 3 more copies of this book

View all search results for this book