Compare prices and save on cheap textbooks at CheapestTextbooks.com
Compare prices and save on cheap textbooks at CheapestTextbooks.com HACKER SAFE certified sites prevent over 99.9% of hacker crime.
Bookmark and Share
CheapestCDPrice.comCheapestDVDPrice.comCheapestTextbooks.comGo to CheapestTextbooks USA!Go to CheapestTextbooks UK!
 
Multi-Store Textbook Search
  
(What's this?)

Selected Product:  

Windows Forensic Analysis DVD Toolkit, Second Edition,   ISBN:9781597494229

     
  Windows Forensic Analysis DVD Toolkit, Second Edition

 Quick Price Check:


From $46.44 Used
From $48.90 New


Make selection below
    
Binding: Paperback
Release Date: June 2009
Edition: 2
List Price: $69.95

Average Customer Rating:
Score = 5.0 Score = 5.0 Score = 5.0 Score = 5.0 Score = 5.0

ISBN-13: 9781597494229
ISBN-10: 1597494224
Author: Harlan Carvey
Publisher: Syngress
Bookmark and Share
      e-mail a friend these results and save them $$$
Select button not working?   Click Here

Price Comparisons: New & Used

Store Price  Condition  Free Shipping? Online Coupons and Deals
Coupon/Deal | Coupon Code | Restrictions
Amazon
 (Marketplace) 
$46.44
as of 11/22 1am EST
Used NO, $3.99 There are no current coupons/deals for this store in our database.
If you find one, please contact us.
Amazon
 (Marketplace) 
$48.90
as of 11/22 1am EST
New NO, $3.99 There are no current coupons/deals for this store in our database.
If you find one, please contact us.
Half.com
 (Marketplace) 
$52.00
as of 11/22 1am EST
Used NO, $3.49 to $3.99 Get $5 off a $50+ purchase. Click 'Select'
to show coupon
code HERE
New Users ONLY Click to view coupon instructions 
TextbookX
$59.02
as of 11/22 1am EST
New YES, spend $49+ Get FREE Shipping with a $49+ order. Click 'Select'
to show coupon
code HERE
See site for details.  
Half.com
 (Marketplace) 
$62.74
as of 11/22 1am EST
New NO, $3.49 to $3.99 Get $5 off a $50+ purchase. Click 'Select'
to show coupon
code HERE
New Users ONLY Click to view coupon instructions 
Amazon
$62.95
as of 11/22 1am EST
New YES, spend $25+ Get FREE Shipping with a $25+ puchase Click 'Select'
to show coupon
code HERE
Spend over $25, see Amazon for details. Click to view coupon instructions 

Price Comparisons: New Only

Store Price  Condition  Free Shipping? Online Coupons and Deals
Coupon/Deal | Coupon Code | Restrictions
Amazon
 (Marketplace) 
$48.90
as of 11/22 1am EST
New NO, $3.99 There are no current coupons/deals for this store in our database.
If you find one, please contact us.
TextbookX
$59.02
as of 11/22 1am EST
New YES, spend $49+ Get FREE Shipping with a $49+ order. Click 'Select'
to show coupon
code HERE
See site for details.  
Half.com
 (Marketplace) 
$62.74
as of 11/22 1am EST
New NO, $3.49 to $3.99 Get $5 off a $50+ purchase. Click 'Select'
to show coupon
code HERE
New Users ONLY Click to view coupon instructions 
Amazon
$62.95
as of 11/22 1am EST
New YES, spend $25+ Get FREE Shipping with a $25+ puchase Click 'Select'
to show coupon
code HERE
Spend over $25, see Amazon for details. Click to view coupon instructions 

Price Comparisons: Used Only

Store Price  Condition  Free Shipping? Online Coupons and Deals
Coupon/Deal | Coupon Code | Restrictions
Amazon
 (Marketplace) 
$46.44
as of 11/22 1am EST
Used NO, $3.99 There are no current coupons/deals for this store in our database.
If you find one, please contact us.
Half.com
 (Marketplace) 
$52.00
as of 11/22 1am EST
Used NO, $3.49 to $3.99 Get $5 off a $50+ purchase. Click 'Select'
to show coupon
code HERE
New Users ONLY Click to view coupon instructions 

Price Comparisons: Rental

Store Price  Condition  Free Shipping? Online Coupons and Deals
Coupon/Deal | Coupon Code | Restrictions
Chegg
$29.77
as of 11/22 1am EST
Summer Rental
(60 days)
NO, $3.99 There are no current coupons/deals for this store in our database.
If you find one, please contact us.
Chegg
$32.13
as of 11/22 1am EST
Quarter Rental
(85 days)
NO, $3.99 There are no current coupons/deals for this store in our database.
If you find one, please contact us.
Chegg
$34.49
as of 11/22 1am EST
Semester Rental
(125 days)
NO, $3.99 There are no current coupons/deals for this store in our database.
If you find one, please contact us.
Select button not working?   Click Here  

Summaries and Customer Reviews are supplied by Amazon.com

Summary:

"If your job requires investigating compromised Windows hosts, you must read Windows Forensic Analysis."
-Richard Bejtlich, Coauthor of Real Digital Forensics and Amazon.com Top 500 Book Reviewer


"The Registry Analysis chapter alone is worth the price of the book."
-Troy Larson, Senior Forensic Investigator of Microsoft's IT Security Group

"I also found that the entire book could have been written on just registry forensics. However, in order to create broad appeal, the registry section was probably shortened. You can tell Harlan has a lot more to tell."
-Rob Lee, Instructor and Fellow at the SANS Technology Institute, coauthor of Know Your Enemy: Learning About Security Threats, 2E


Author Harlan Carvey has brought his best-selling book up-to-date to give you: the responder, examiner, or analyst the must-have tool kit for your job. Windows is the largest operating system on desktops and servers worldwide, which mean more intrusions, malware infections, and cybercrime happen on these systems. Windows Forensic Analysis DVD Toolkit, 2E covers both live and post-mortem response collection and analysis methodologies, addressing material that is applicable to law enforcement, the federal government, students, and consultants. The book is also accessible to system administrators, who are often the frontline when an incident occurs, but due to staffing and budget constraints do not have the necessary knowledge to respond effectively. The book's companion DVD contains significant new and updated materials (movies, spreadsheet, code, etc.) not available any place else, because they are created and maintained by the author.




  • Best-Selling Windows Digital Forensic book completely updated in this 2nd Edition

  • Learn how to Analyze Data During Live and Post-Mortem Investigations

  • DVD Includes Custom Tools, Updated Code, Movies, and Spreadsheets!

Customer Reviews:

Average Customer Rating: Score = 5.0 Score = 5.0 Score = 5.0 Score = 5.0 Score = 5.0

There is no substitute for this book
Customer Rating:  Score = 5 Score = 5 Score = 5 Score = 5 Score = 5

I read and reviewed the 1st Ed of this book in July 2007, and I just finished reading Windows Forensic Analysis 2nd Ed (WFA2E) this weekend. If your job involves investigating Windows systems, you must read this book. It's as simple as that. There is no substitute for this book. It also perfectly complements other solid forensics works already published.

The three main reasons why I liked the 1st Ed hold for the 2nd Ed. The subject matter is exactly what I wanted to read. WFA2E introduces a vast number of tools to help investigators implement the concepts explained by the author. Harlan brings a lot of experience to WFA. Of these three, I really appreciate Harlan's experience. He is constantly "in the fight" so he knows what works and what doesn't. He's been around so long that he knows what he's talking about. If he encounters a problem, he can either try fixing it himself or he is friends with someone who can work the issue. All of these characteristics shine in WFA2E.

I expect to see a 3rd Ed of this book in a few years, incorporating more Windows Vista and Windows 7 material. It might also be helpful to consider techniques for Windows Server and Mobile platforms in the 3rd Ed. Regardless, I will look forward to that book when it arrives because I enjoyed WFA1E and WFA2E so much.

The best forensic book currently available
Customer Rating:  Score = 5 Score = 5 Score = 5 Score = 5 Score = 5

I've started reading or read a number of forensic books in the past two years. Though I have yet to read a specific Operating System forensic book, most have generally focused on Windows as the choice for forensic analysis. Of all the books that I have read, I would have to say that by far Windows Forensic Analysis DVD Toolkit second edition is the best.
The author is very thorough without beating a single tool to death. The author covers numerous tools, but continues to stress that having information from one tool does not give the investigator the `smoking gun' to solving the case. He stresses repeatedly that this is just adding another tool to the investigator's toolbox.
Many books are simply an attempt to sell their book by declaring that if you follow: step one, followed by step two, followed by step three etc. that you will suddenly be a master forensic investigator or incident handler. Harlan Carvery never says that reading this book will make you an expert, only that he hopes to enlighten the reader to new tools and techniques. The author makes it very clear that each tool is valuable, but the reader should find the tools that suite their own need and get the experience necessary to analyze the output.
The book jumps straight into the discussion of volatile data and the importance of capturing it as close to the instance of compromise as possible. I was pleased to see that the author made a point of emphasizing this. There is still a mindset in many situations that pulling the plug is the first thing to accomplish.
The first three chapters are a statement to the importance placed on collecting and analyzing the volatile portion of the incident. Though technically the first two chapters also cover information to tie in the remaining chapters there is always that focus of maintaining data as close to the point of compromise as possible.
The next three chapters cover the static files and registry that a Forensic Analyst will have to review and analyze. The author covers numerous tools as well as providing his tools and his preferences for use.
The last three chapters cover rootkits, tying it together with case studies and then finally Forensic Analysis on a budget.
Throughout the book the author makes references to papers, websites and other books that will provide a much more indepth discussion of the topics. In every chapter he provides a source for more up-to-date software than what is provided on the DVD.
The author includes numerous tools that are his personal scripts or scripts that he has modified for his use. For the most part his scripts are all Perl based, but again the author shows his flexibility and understanding when he explains why his tools are Perl and not something else. At no point does the author take a "this is the only right way to do it" attitude. It is refreshing to see an unbiased book that is primarily Windows oriented.
With all that being said I would say that grammatical editing could have been a little better. Even with these errors the book was definitely worth buying. We have a copy in our office and I am buying a copy for my own personal use. I would say that if you are doing Windows forensics or have an interest in learning about the current trends in Windows forensics you need to pick up a copy. It will be an invaluable resource.

Excellent text covers live response and traditional computer forensics
Customer Rating:  Score = 5 Score = 5 Score = 5 Score = 5 Score = 5

Harlan Carvey is one of the most prolific writers on compute forensics. He has a spare writing style that conveys information directly, without excursions. In short, he is a delight to read.

In this second edition of Windows Forensic Analysis, he broadens the territory to include live system response. His three chapters on the subject are interesting, but not of particular immediate interest to me since I have no call to do such. It is, however, helpful to have the information just in case and Carvey presents it in a coherent manner. His descriptions of the various available are quite good.

Harlan's chapters on Registry and File Analysis are worth far more than the price of the bok. He is one of the masters of the arcane innards of the Windows Registry and has written a power and useful tool, RegRipper, to make registry analysis far easier and more productive. These two chapters alone make this book a must-have for the active computer forensics examiner.

The chapters on Executable File Analysis and Rootkits, like the earlier chapters on live response will have limited application for many examiners. However, once again Carvey's writing style makes the information highly accessible and the chapters are worth reading solely to put their contents in your own memory.

Harlan is quite am accomplished Perl scripter and the accompanying DVD is crammed with useful Perl scripts he has written. As a courtesy, he has also included the scripts from the first edition of his book, which is very nice of him.

Harlan writes for the person with some experience in the field. For those people, Windows Forensic Analysis 2nd. Ed. Serves not only as a text, but as a quotable reference as well. There are actually very few solid texts on computer forensics. This is one of them.

Jerry


Required Reading
Customer Rating:  Score = 5 Score = 5 Score = 5 Score = 5 Score = 5

As practicing investigators, we have seen the tide shift over the last few years - from a concentration on traditional disk acquisition and file analysis to a multifaceted practice that now includes techniques such as registry, memory, and binary analysis. The content within WFE 2E embraces this new wave of IR & forensics methodology and reflects Harlan's gift of presenting content in a meaningful and interesting way. As others have stated, WFE 2E is required reading for anyone in the IR & forensic field or those interested in breaking into this profession. We are lucky to have Harlan publishing quality content, such as Windows Forensic Analysis 2E.

Must have book for IR/CFE's
Customer Rating:  Score = 5 Score = 5 Score = 5 Score = 5 Score = 5

This is a book that anyone in the Incident Response or Computer Forensic arena HAS to have on their bookshelf. The breakdown of the chapters makes it a great reference book even after you've read it cover to cover. Harlan knows his Windows. :)

I had pre-ordered this book months before it even had a release date, and I bought a second copy just to keep at the office. IT IS JUST THAT GOOD!

And as soon as it's released for the Kindle, I'll be buying that version as well.

Bookmark and Share | Suggestions | Textbook Store Reviews | Site Map | Textbook Reviews | Contact Us | Links
Cheap Textbook Search | Used Textbooks | Discount Textbooks | Buy College Textbooks
© 2008 . All rights reserved. Privacy Statement and Disclaimer
web site design and support by Crystal Solutions