Event Type:
Monday Feb 11, 2019 - 08:00am UTC to Thursday Feb 14, 2019 - 05:00pm UTC
Event Description:
This course covers the identification and extraction of artifacts associated with the Microsoft Windows operating system. Topics include the Change Journal, BitLocker, and a detailed examination of the various artifacts found in each of the Registry hive files. Students also examine Event Logs, Volume Shadow Copies, link files, and thumbnails. This course uses a mixture of lecture, discussion, demonstration, and hands-on exercises.
Location:
Real Time Crime Center
600 Jefferson Ave
Memphis, TN
38105
United States
See map: Google Maps
Amount | Description |
---|---|
$0.00 | Free |
Space Available:
Yes
Category:
Program Areas: