Event Type:
Monday Jun 21, 2021 - 11:00am EDT to Thursday Jun 24, 2021 - 07:00pm EDT
Event Description:
This course covers the identification and extraction of artifacts associated with the Microsoft Windows operating system. Topics include the Change Journal, BitLocker, and a detailed examination of the various artifacts found in each of the Registry hive files. Students also examine Event Logs, Volume Shadow Copies, link files, and thumbnails. This course uses a mixture of lecture, discussion, demonstration, and hands-on exercises.
Location:
See map: Google Maps
Event URL:
Amount | Description |
---|---|
$0.00 | Free |
Space Available:
Yes
Category:
Program Areas: