Windows Forensic Analysis

This course builds in-depth and comprehensive digital forensics knowledge of Microsoft Windows operating systems by analyzing and authenticating forensic data as well as track detailed user activity and organize findings. It teaches students to apply digital forensic methodologies to a variety of case types and situations, allowing them to apply in the real world the right methodology to achieve the best outcome.

Course syllabus:

  1. Windows Digital Forensics and Advanced Data Triage

  2. Core Windows Forensics Part 1: Windows Registry Forensics and Analysis

  3. Core Windows Forensics Part 2: USB Devices and Shell Items

  4. Core Windows Forensics Part 3: Email, Key Additional Artifacts and Event

  5. Core Windows Forensics Part 4: Web Browser Forensics for Firefox, Internet Explorer and Chrome

  6. Windows Forensics Challenge