What people are saying - Write a review
User Review - Flag as inappropriate
Does anyone know how not to catch zzzzzzzzz, when reading, say, I don't know, the first 4 pages. Some of the examples are long and it feels like it was taken down from a speech at the ELKS Club. Talk, talk, talk.
Review: File System Forensic AnalysisUser Review - Stephen Hargrove - Goodreads
This is more than anyone could ever possibly need or want to know about file systems. Ever. Read full review
ASCII bitmap block group block pointers boot code boot sector BSD partition Byte Range Description Chapter cluster conﬁguration contains created cylinder group DATA attribute data structures data unit deﬁned deleted ﬁles device directory entry disk image encrypted example Ext3 extended partition ExtX FAT ﬁle system ffff ffff ffff ﬁeld Figure File ﬁle name ﬁle or directory ﬁle system ﬁles and directories ﬁnal ﬁnd ﬁrst ﬁrst sector ﬂag fragments FreeBSD group descriptor hard disk hash header hexadecimal identiﬁes index entry inode inode table investigation layout Linux located logical volume MFT entry Microsoft Microsoft Windows node NTFS number of sectors offset OpenBSD operating system output partition system partition table RAID volume Range Description Essential root directory SCSI Solaris speciﬁc starting sector stored superblock UFS2 UFSI unallocated unused updated Windows