Search Books

The Art of Memory Forensics: Detecting Malware and Threats in Windows, Linux, and Mac Memory [Paperback]

Author Andrew Case, Jamie Levy, AAron Walters by Michael Hale Ligh
Publisher Wiley India
📄 Viewing lite version Full site ›
🌎 Shop on Amazon — choose country
Price not listed
🛒 Buy New on Amazon 🇺🇸 🏷 Buy Used — $44.51
Share:
Book Details
PublisherWiley India
ISBN / ASINB00RI5ZKCI
ISBN-13978B00RI5ZKC7
Sales Rank1,637,986
MarketplaceUnited States 🇺🇸

Description

Printed in Asia. Table of Contents: Introduction An Introduction to Memory Forensics • Systems Overview • Data Structures • The Volatility Framework • Memory Acquisition Windows Memory Forensics • Windows Objects and Pool Allocations • Processes, Handles and Tokens • Process Memory Internals • Hunting Malware in Process Memory • Event Logs • Registry in Memory • Networking • Windows Services • Kernel Forensics and Rootkits • Windows GUI Subsystem, Part I • Windows GUI Subsystem, Part II • Disk Artifacts in Memory • Event Reconstruction • Timelining Linux Memory Forensics • Linux Memory Acquisition • Linux Operating System • Processes and Process Memory • Networking Artifacts • Kernel Memory Artifacts • File Systems in Memory • User land Rootkits • Kernel Mode Rootkits • Case Study: Phalanx Mac Memory Forensics • Mac Acquisition and Internals • Mac Memory Overview • Malicious Code and Rootkits • Tracking User Activity Index