Buchdetails
Beschreibung
The book covers:
• Traditional forensics theory and methods
• Incident response
• Basic malware forensics – showing the use of typical tools through the classic stages
• A set of PowerShell tools – The PoShFoto toolkit available on “packetstorm”.
• An end-to-end worked example covering the analysis of a common malware attack – the components written by the author are fully available so you use them for practice or in your own basic training course.
• A programmer’s side view of the malware used in the tutorial. This will allow you build your own training exercise using the components written by the author.