August 2018
Beginner to intermediate
136 pages
3h 54m
English
There are times when we will receive more than just an image for analysis; we may get logs associated with the incident, and we may have other data available that we can incorporate into the investigation, as well. Many times, these additional and/or external sources of data can be used to significantly improve the context and granularity of your analysis.
Intrusion; compromise; web server; memory dump; volatility
Investigating Windows systems is not always just about analyzing an image ...
Read now
Unlock full access