Computer forensics and digital investigation with EnCase Forensic v7
Material type: TextPublication details: New York : McGraw-Hill Education, 2014.Description: 426 PISBN:- 9780071807920
- 0071807926
- 363.25968 WIDÂ
Item type | Current library | Collection | Call number | Status | Date due | Barcode | |
---|---|---|---|---|---|---|---|
Books | Botho University Botswana Open Shelves | Information Technology | 363.259680 WID (Browse shelf(Opens below)) | Available | BU-LIB23373 | ||
Books | Botho University Botswana Open Shelves | 363.259680 (Browse shelf(Opens below)) | Available | BU-LIB23372 | |||
Books | Botho University eSwatini Open Shelves | Information Technology | 363.25968 WID (Browse shelf(Opens below)) | Available | BU-LIB23371 |
Browsing Botho University Botswana shelves, Shelving location: Open Shelves Close shelf browser (Hides shelf browser)
This book reveals, step by step, how to detect illicit activity, capture and verify evidence, recover deleted and encrypted artifacts, prepare court-ready documents, and ensure legal and regulatory compliance. It illustrates each concept using downloadable evidence from the National Institute of Standards and Technology CFReDS. Customizable sample procedures are included throughout this practical guide. You will learn how to: install EnCase Forensic v7 and customize the user interface; prepare your investigation and set up a new case; collect and verify evidence from suspect computers and networks; use the EnCase Evidence Processor and Case Analyzer; uncover clues using keyword searches and filter results through GREP; work with bookmarks, timelines, hash sets, and libraries; handle case closure, final disposition, and evidence destruction; carry out field investigations using EnCase Portable; learn to program in EnCase EnScript. -- Edited summary from book.
There are no comments on this title.