Invoke-IR
Wednesday, March 5, 2014

Windows 8 Prefetch 101

›
In preparation for my presentation on the Windows Prefetch this Friday I made this poster to help understand the Prefetch file structure. ...
Sunday, November 17, 2013

Presenting at SANS Institute's DFIRCON!

›
I am pleased to announce that I will be presenting my research on the Windows 8 Prefetch at SANS Institute's DFIRCON.  The conference ...
Sunday, October 27, 2013

malsysproc

›
This weekend I was working on some memory analysis using Volatility, and I came across a sample that had a malicious process named svchost.e...
2 comments:
‹
›
Home
View web version
Powered by Blogger.