TY - BOOK AU - Prosise,Chris AU - Mandia,Kevin TI - Incident response and computer forensics SN - 007222696X AV - HV6773 .P766 2003 PY - 2003/// CY - Berkeley, Calif., London PB - Osborne KW - Servicios de procesamiento de datos KW - Medidas de seguridad KW - Procesamiento electr?onico de datos KW - Computer security KW - Computer crimes KW - Investigation N1 - Real-world incidents -- Introduction to the incident response process -- Preparing for incident response -- After detection of an incident -- Live data collection from Windows systems -- Live data collection of Unix systems -- Forensic duplication -- Collecting network-based evidence -- Evidence handling -- Computer system storage fundamentals -- Data analysis techniques -- Investigating Windows systems -- Investigating Unix systems -- Analyzing network traffic -- Investigating hacker tools -- Investigating routers -- Writing computer forensic reports N2 - "An insider's look at the legal procedural and technical steps of computer forensics and analysis. Contains all-new forensics content and real-world scenarios."--Cover ER -