Perl scripting for Windows security: live response, forensic analysis, and monitoring
Saved in:
Bibliographic Details
Main Author: Carvey, Harlan A. (Author)
Format: Electronic eBook
Language:English
Published: Burlington, Mass. Syngress Pub. c2007
Subjects:
Online Access:FAW01
FAW02
Volltext
Item Description:Title from title screen
Includes bibliographical references and index
pt. I. Perl scripting and live response -- Built-in functions -- Running processes -- Accessing the API -- WMI -- Accessing the registry -- ProScripts -- Final touches -- pt. II. Perl scripting and computer forensic analysis -- Log files -- Parsing binary files -- Registry -- Event logs -- Parsing RAM dumps -- ProScripts -- Parsing other data -- Final touches -- pt. III. Monitoring Windows applications with Perl -- Core application processes -- Core application dependencies -- Web services -- Building a monitoring system
"This book is intended for anyone who has an interest in useful Perl scripting, in particular on the Windows platform, for the purpose of incident response, and forensic analysis, and application monitoring. While a thorough grounding in scripting languages (or in Perl specifically) is not required, it is helpful in fully and more completely understanding the material and code presented in this book. This book contains information that is useful to consultants who perform incident response and computer forensics, specifically as those activities pertain to MS Windows systems (Windows 2000, XP, 2003, and some Vista). Not only will consultants find this material valuable, but so will system administrators, law enforcement officers, and students in undergraduate and graduate programs focusing on computer forensics."--Jacket
Physical Description:1 Online-Ressource (197 p.)
ISBN:0080555632
159749173X
9780080555638
9781597491730

There is no print copy available.

Interlibrary loan Place Request Caution: Not in THWS collection! Get full text