Index
Page numbers followed by f indicates a figure and t indicates a table.
A
ABA, See American Bar Association (ABA)
AccessData FTK Enterprise, 175f
Active network connections, 15–16
Active system monitoring, 371–379
CurrProcess, 372
DirMon, 373
Explorer Suite/Task Explorer, 372
File Monitor, 372
MiTec Process Viewer, 372
process activity monitoring, 371f
Process Hacker, 372
Tiny Watcher, 373
Address Resolution Protocol (ARP), 17
ARP cache, 17
American Bar Association (ABA), 207
American Recovery and Reinvestment Act (ARRA), 215
AnalogX ...
Get Malware Forensics Field Guide for Windows Systems now with O’Reilly online learning.
O’Reilly members experience live online training, plus books, videos, and digital content from 200+ publishers.