Windows Forensics Cookbook
上QQ阅读APP看书,第一时间看更新

Getting ready

You can download Windows binaries from The Sleuth Kit's official website. Go to The Sleuth Kit section and click on the Download hyperlink. Now, click on Windows Binaries and the downloading will start. At the time of writing, the most recent version of The Sleuth Kit is 4.4.0, so the archive we downloaded has the name: sleuthkit-4.4.0.tar.gz. So, now all you need to do is to unpack it and you are ready to go.