Windows Registry Forensics: Advanced Digital Forensic Analysis of the Windows Registry, Second Edition, provides the most in-depth guide to forensic investigations using Windows Registry. This book is one of a kind, giving the background of the Registry to help users develop an understanding of the binary structure of registry hive files. . Approaches to live response and analysis are included, and tools and techniques for post mortem analysis are discussed at length. Tools and techniques are presented that take users beyond the current use of viewers and into real analysis of data contained in the Registry. This second edition presents a ground-up approach to understanding so that the treasure trove of the Registry is mined on a regular and continuing basis.