第四章计算机证据-helixSysinternal.pptVIP

  • 7
  • 0
  • 约2.21千字
  • 约 21页
  • 2017-06-24 发布于湖北
  • 举报
第四章计算机证据-helix

Helix传统取证工具 Helix operates in two different modes – Windows and Linux. Helix is a forensically sound bootable Linux environment much like Knoppix, but a whole lot more. The “other side” of Helix, a Microsoft Windows executable feature, contains approximately 90 MB of incident response tools for Windows. Windows工具 Windows工具 Windows工具 Windows工具 Windows工具 Windows工具 Windows工具 Windows工具 Windows工具 WFT工具:综合取证 WFT工具:综合取证 WFT工具:综合取证 WFT工具:综合取证 Windows工具 Windows工具 Malware Hunting with the Sysinternals Tools This session provides an overview of several Sysinternals tools, including Process Monitor, Pr

文档评论(0)

1亿VIP精品文档

相关文档