Rob Lee and the SANS DFIR Faculty created this handy poster full of forensic exam cheats where you can discover key items to an activity for Microsoft Windows systems for intrusions, intellectual property theft, or common cyber-crimes. You can find the Windows Artifacts Analysis poster here.
Blog Stats
- 16,963 hits
-
Recent Posts
Past Posts
- June 2012 (4)
- May 2012 (2)
- April 2012 (5)
Tags
Android forensics Artifacts biometric forensics container.dat File History Services Forensic science George Washington University Google IE History immersive index.dat Internet History Intro Kindle Fire forensics MBR Metro Microsoft Microsoft Windows Operating system Refresh Points Registry Restore Points System Reset Travel Logs TypedURLs TypedURLsTime User interface Windows Windows 7 editions Windows 8 Windows 8 Forensic Guide Windows Registry Windows VistaPropeller Head Forensics
propellerhead4n6
- Care to know what #Google knows about you? #Privacy #Takeout... fb.me/1lf4R2w1x 10 months ago
- I'm going! Who else will be attending? sans.org/forensics-prag… #SANS... fb.me/1PIErkqMG 10 months ago
- And another post - a handy Windows forensic cheat poster!... fb.me/1K5gqwhKl 1 year ago
- #SANSforensiccheats wp.me/p2mESD-2o 1 year ago
- New blog post! Learn about changes that are made to your hard drive when you enable these features:... fb.me/1b0VypSFL 1 year ago
Great catch!.. Rob Lee and the Sans folks put out some very nice tools and educational materials. I may look into getting this printed poster size..!! Thanks! Rob