Computer forensics and digital investigation with EnCase Forensic v7

This book reveals, step by step, how to detect illicit activity, capture and verify evidence, recover deleted and encrypted artifacts, prepare court-ready documents, and ensure legal and regulatory compliance. It illustrates each concept using downloadable evidence from the National Institute of Sta...

Full description

Bibliographic Details
Main Author: Widup, Suzanne
Format: eBook
Language:English
Published: New York McGraw-Hill Education 2014
Subjects:
Online Access:
Collection: O'Reilly - Collection details see MPG.ReNa
Description
Summary:This book reveals, step by step, how to detect illicit activity, capture and verify evidence, recover deleted and encrypted artifacts, prepare court-ready documents, and ensure legal and regulatory compliance. It illustrates each concept using downloadable evidence from the National Institute of Standards and Technology CFReDS. Customizable sample procedures are included throughout this practical guide. You will learn how to: install EnCase Forensic v7 and customize the user interface; prepare your investigation and set up a new case; collect and verify evidence from suspect computers and networks; use the EnCase Evidence Processor and Case Analyzer; uncover clues using keyword searches and filter results through GREP; work with bookmarks, timelines, hash sets, and libraries; handle case closure, final disposition, and evidence destruction; carry out field investigations using EnCase Portable; learn to program in EnCase EnScript. --
Item Description:Includes index
Physical Description:1 volume illustrations
ISBN:9780071807920