Labeling of copies, 397, 628
Language of computer crime investigation, 30–9
Last Hotsync, 347
Law, technology and, 41–5
European perspective, 65
US perspective, 41–62
Law enforcement officers, 386
Lazarus, 307
Learned behaviors, 150
Legal expert advice, 6, 12–13, 35
Levin, Vladimir, 162
Libpcap filter syntax, 434
Linux, 261, 289, 327, 417
as digital evidence examination platform, 28
Disk Editor, 302
as forensic analysis platform, 301
stat command, 300
utilities for, 297
Little-endian systems, 198, 299
Lloyd case, 543
Locard's Exchange Principle, 96, 98, 111, 113, 133, 517, 553, 610, 661
Locating confidential and/or illicit materials, 151
Log files, 271–2
as source of behavioral evidence, 415
Logicube, 227
Lopatka, Sharon, 11, 485, 490
Lostpassword.com, 270
Low risk victim, 661
LPRng printer daemon, 405
lsass.exe, 530