Chapter 8. System mechanisms Processor execution model Hardware side-channel vulnerabilities Side-channel mitigations in Windows Trap dispatching WoW64 (Windows-on-Windows) Object Manager Synchronization Advanced local procedure call Windows Notification Facility User-mode debugging Packaged applications Conclusion Chapter 9. Virtualization technologies The Windows hypervisor The virtualization stack Virtualization-based security (VBS) The Secure Kernel Isolated User Mode Conclusion Chapter 10. Management, diagnostics, and tracing The registry Windows services Task scheduling and UBPM Windows Management Instrumentation Event Tracing for Windows (ETW) Dynamic tracing (DTrace) Windows Error Reporting (WER) Global flags Kernel shims Conclusion Chapter 11. Caching and file systems Terminology Key features of the cache manager Cache virtual memory management Cache size Cache data structures File system interfaces Fast I/O Read-ahead and write-behind File systems The NT File System (NTFS) NTFS file system driver NTFS on-disk structure NTFS recovery support Encrypted file system Direct Access (DAX) disks Resilient File System (ReFS) ReFS advanced features Storage Spaces Conclusion Chapter 12. Startup and shutdown Boot process Conclusion