Accelerated Windows Memory Dump Analysis, Sixth Edition, Part 1, Process User Space

Accelerated Windows Memory Dump Analysis, Sixth Edition, Part 1, Process User Space Training Course Transcript and WinDbg Practice Exercises With Notes - Windows Internals Supplements

6th ed.

Paperback (27 Jan 2024)

Save $3.96

  • RRP $101.21
  • $97.25
Add to basket

Includes delivery to the United States

10+ copies available online - Usually dispatched within 7 days

Publisher's Synopsis

This book is a full-color transcript of Software Diagnostics Services training sessions with 22 step-by-step exercises, notes, source code of specially created modeling applications, and more than 70 questions and answers. Covers more than 50 crash dump analysis patterns from x86 and x64 process memory dumps. Learn how to analyze application and service crashes and freezes, navigate through process user space, and diagnose heap corruption, memory and handle leaks, CPU spikes, blocked threads, deadlocks, wait chains, and many more patterns of abnormal software behavior with WinDbg debugger. The training uses a unique and innovative pattern-oriented analysis approach developed by the Software Diagnostics Institute to speed up the learning curve. Prerequisites: Basic Windows troubleshooting. Audience: Software technical support and escalation engineers, system administrators, security researchers, reverse engineers, malware and memory forensics analysts, software developers and quality assurance engineers, and site reliability engineers. The 6th edition was fully reworked for the latest WinDbg version and includes additional Windows 11 memory dumps, relevant x64 assembly language review, and a Rust memory dump analysis example.

Book information

ISBN: 9781912636921
Publisher: Opentask
Imprint: Opentask
Pub date:
Edition: 6th ed.
Language: English
Number of pages: 356
Weight: 1143g
Height: 279mm
Width: 216mm
Spine width: 23mm