Jun 5 2008 9:11AM GMT
Posted by: Jessica Scarpati
Threat Monitor
Threat Monitor: Windows registry forensics guide — Investigating hacker activities
Posted by: Jessica Scarpati
The Windows registry can be used as a helpful tool for professionals looking to investigate employee activity or track the whereabouts of important corporate files. In this tip, contributor Ed Skoudis unveils several commands and explains how investigators and administrators can interact with the registry to analyze a compromised system.





