Computer Forensics and Digital Investigation with EnCase Forensic v7 (Paperback)
暫譯: 使用 EnCase Forensic v7 的電腦取證與數位調查 (平裝本)
Suzanne Widup
- 出版商: McGraw-Hill Education
- 出版日期: 2014-05-28
- 定價: $1,650
- 售價: 6.0 折 $990
- 語言: 英文
- 頁數: 448
- 裝訂: Paperback
- ISBN: 0071807918
- ISBN-13: 9780071807913
立即出貨 (庫存=1)
買這商品的人也買了...
-
$880$695 -
$500$490 -
$580$458 -
$400$380 -
$450$356 -
$880$695 -
$650$514 -
$650$514 -
$880$695 -
$680$537 -
$490$387 -
$380$342 -
$650$514 -
$980$774 -
$260$234 -
$260$234 -
$350$277 -
$900$702 -
$580$452 -
$260$234 -
$560$442 -
$380$342 -
$260$234 -
$480$379 -
$520$406
相關主題
商品描述
Conduct repeatable, defensible investigations with EnCase Forensic v7
Maximize the powerful tools and features of the industry-leading digital investigation software. Computer Forensics and Digital Investigation with EnCase Forensic v7 reveals, step by step, how to detect illicit activity, capture and verify evidence, recover deleted and encrypted artifacts, prepare court-ready documents, and ensure legal and regulatory compliance. The book illustrates each concept using downloadable evidence from the National Institute of Standards and Technology CFReDS. Customizable sample procedures are included throughout this practical guide.
- Install EnCase Forensic v7 and customize the user interface
- Prepare your investigation and set up a new case
- Collect and verify evidence from suspect computers and networks
- Use the EnCase Evidence Processor and Case Analyzer
- Uncover clues using keyword searches and filter results through GREP
- Work with bookmarks, timelines, hash sets, and libraries
- Handle case closure, final disposition, and evidence destruction
- Carry out field investigations using EnCase Portable
- Learn to program in EnCase EnScript
商品描述(中文翻譯)
進行可重複且具防禦性的調查,使用 EnCase Forensic v7
最大化業界領先的數位調查軟體的強大工具和功能。《Computer Forensics and Digital Investigation with EnCase Forensic v7》逐步揭示如何檢測非法活動、捕捉和驗證證據、恢復已刪除和加密的資料、準備法庭所需的文件,以及確保法律和監管合規性。本書使用來自美國國家標準與技術研究所 (National Institute of Standards and Technology) 的 CFReDS 可下載證據來說明每個概念。這本實用指南中包含可自訂的範本程序。
- 安裝 EnCase Forensic v7 並自訂使用者介面
- 準備調查並設置新案件
- 從可疑電腦和網路收集和驗證證據
- 使用 EnCase Evidence Processor 和 Case Analyzer
- 使用關鍵字搜尋和透過 GREP 過濾結果來發現線索
- 使用書籤、時間線、雜湊集和資料庫進行工作
- 處理案件結案、最終處置和證據銷毀
- 使用 EnCase Portable 進行現場調查
- 學習在 EnCase EnScript 中編程