ForensicsWiki will continue to operate as it has before and will not be shutting down. Thank you for your continued support of ForensicsWiki.

Difference between revisions of "Analyzing Program Execution"

From ForensicsWiki
Jump to: navigation, search
(Windows)
(Windows)
Line 33: Line 33:
 
* [[Windows Memory Analysis]]
 
* [[Windows Memory Analysis]]
 
* Windows PC Accelerators
 
* Windows PC Accelerators
* [[Prefetch]]
+
** [[Prefetch]]
* [[ReadyBoot]]
+
** [[ReadyBoot]]
* [[ReadyBoost]]
+
** [[ReadyBoost]]
* [[ReadyDrive]]
+
** [[ReadyDrive]]
* [[SuperFetch]]
+
** [[SuperFetch]]
 
* [[Windows Registry#Run/RunOnce|Run/RunOnce Registry keys]] (and equivalents)
 
* [[Windows Registry#Run/RunOnce|Run/RunOnce Registry keys]] (and equivalents)
 
* Windows Task Scheduler
 
* Windows Task Scheduler

Revision as of 04:56, 9 July 2014

Information icon.png

Please help to improve this article by expanding it.
Further information might be found on the discussion page.

This article is intended to give a high-level overview of analyzing program execution on the various operating systems.

Linux

Mac OS X

Windows

See Also

Linux

Mac OS X

Windows

External Links

Windows