What people are saying - Write a reviewUser Review - Flag as inappropriate Book no.1 - To read... Digiital Forensics Related books
Other editions - View all
Common terms and phrasesactivities application artifacts authentication backup bytes chapter client computer forensics configuration connected contain copy created custodian d/drwx database date-time stamps default deleted files deleted-realloc digital evidence digital forensic digital investigators disk documents e-discovery e-mail electronic discovery embedded systems encrypted entries event logs example extract file system file’s flash memory folder forensic analysis forensic examiners forensic tools format hard drive hash identify inode interception interface Internet intrusion investigation investigation scenario IP address keyword Linux log files Mac OS X malware memory messages metadata Microsoft mobile device mobile phone NetFlow network traffic NTFS operating system packet password praCtItIoner’s tIp preservation protocol record registry router server shown in Figure Skype specific Splunk SQLite storage stored target tcpdump timestamps tion Unix updated user account user’s Vista Windows Windows Vista Wireshark wtmp Bibliographic information |