Windows Artifacts

WinArt covers the identification and extraction of artifacts associated with the current versions of Microsoft Windows operating systems (Vista through Windows 10) and the NT file system. Topics include the change journal, BitLocker, and a detailed examination of the various artifacts found in each of the registry hive files. Students examine event logs, volume shadow copies, link files, and thumbnails. WinArt uses a mixture of lecture, discussion, demonstration, and hands-on exercises. Detailed description seen here: http://www.nw3c.org/training/cybercrime/22

When Sep 12, 2017 08:00 AM
Sep 15, 2017 04:00 PM
Where GHRCFL
Add event to calendar vCal
iCal

Contact Monica via email (monica.woloszyn@ic.fbi.gov) or phone (713-934-5501).