Skip to Content
Malware Forensics Field Guide for Windows Systems
book

Malware Forensics Field Guide for Windows Systems

by Cameron H. Malin, Eoghan Casey, James M. Aquilina
May 2012
Intermediate to advanced
560 pages
12h 55m
English
Syngress
Content preview from Malware Forensics Field Guide for Windows Systems
Index

Page numbers followed by f indicates a figure and t indicates a table.

A

AccessData FTK Enterprise, 175f
Active monitoring artifacts, 429, 429f
Active network connections, 15–16
Active system monitoring, 371–379
CurrProcess, 372
DirMon, 373
Explorer Suite/Task Explorer, 372
File Monitor, 372
file system monitoring, 372–373, 373f
MiTec Process Viewer, 372
process activity monitoring, 371f
Process Hacker, 372
ProcessActivityView, 372, 373
registry monitoring, 372, 374, 374f
Tiny Watcher, 373
Address Resolution Protocol (ARP), 17
ARP cache, 17
American Bar Association (ABA), 207
American Recovery and Reinvestment Act (ARRA), 215
American Standard Code for Information Interchange (ASCII), 32, 418
AnalogX ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Malware Forensics

Malware Forensics

Eoghan Casey, Cameron H. Malin, James M. Aquilina
Malware Forensics Field Guide for Linux Systems

Malware Forensics Field Guide for Linux Systems

Eoghan Casey, Cameron H. Malin, James M. Aquilina

Publisher Resources

ISBN: 9781597494724