Home
Course Outlines
Course Schedules
Certification
Promotions
News
Learning With Us
Careers with Us
Contact Us
Information
Information
 Windows Forensics - Windows 7

Windows Forensics - Windows 7

 

Duration:                3 days.

 

Audience:               Forensic investigators with a basic working knowledge of Forensic Toolkit (FTK),

                                 Password Recovery Toolkit (PRTK) and Registry Viewer.

 

 

Pre-requisites:      Read and understand the English language

                                 AccessData Bootcamp or equivalent experience with FTK 3.x, FTK Imager and Registry Viewer

                                 Experience with Windows XP forensic analasys

                                 Familiarity with Windows NT file system (NTFS) mechanics

 

 

Topics Covered:     Introduction

                                 Windows 7 Overview

                                 BitLocker and BotLocker To Go

                                 GPT and File System Changes

                                 Recent Folder and Jump Lists

                                 Security

                                 Registry Introduction

                                 Registry Artifacts

                                 Tracking USB Devices

                                 Event Logs

                                 Libraries and Homegroups

                                 Recycle Bin

                                 Thumbcache

                                 Virtual Hard Drives and SSD Drives

                                 Superfetch and Prefetch

 

 

 

PDF Course Outline

 
For all enquiries call Australia 1300 65 19 17, New Zealand 0800 44 99 38, Singapore: +65 3158 1880, India: +91 9892 556 852, China: +86 21 6122 1335, Hong Kong: +852 2824 8796
© Copyright Red Education Pty Ltd 2010 All rights reserved.