Difference between revisions of "Analyzing Program Execution"

From ForensicsWiki
Jump to: navigation, search
(Windows)
(Windows)
Line 33: Line 33:
 
* [[Windows Memory Analysis]]
 
* [[Windows Memory Analysis]]
 
* Windows PC Accelerators
 
* Windows PC Accelerators
* [[Prefetch]]
+
** [[Prefetch]]
* [[ReadyBoot]]
+
** [[ReadyBoot]]
* [[ReadyBoost]]
+
** [[ReadyBoost]]
* [[ReadyDrive]]
+
** [[ReadyDrive]]
* [[SuperFetch]]
+
** [[SuperFetch]]
 
* [[Windows Registry#Run/RunOnce|Run/RunOnce Registry keys]] (and equivalents)
 
* [[Windows Registry#Run/RunOnce|Run/RunOnce Registry keys]] (and equivalents)
 
* Windows Task Scheduler
 
* Windows Task Scheduler

Revision as of 00:56, 9 July 2014

Information icon.png

Please help to improve this article by expanding it.
Further information might be found on the discussion page.

This article is intended to give a high-level overview of analyzing program execution on the various operating systems.

Linux

Mac OS X

Windows

See Also

Linux

Mac OS X

Windows

External Links

Windows