Pentester Academy - Windows Forensics
- Category Other
- Type Tutorials
- Language English
- Total size 1.3 GB
- Uploaded By xPaco1337
- Downloads 2013
- Last checked 1 week ago
- Date uploaded 8 years ago
- Seeders 3
- Leechers 1
Infohash : 1A79F74D1D187D73EBAEE39C21C48DA4B8F6022E
This course will familiarize students with all aspects of Windows forensics.By the end of this course students will be able to perform live analysis, capture volatile data, make images of media, analyze filesystems, analyze network traffic, analyze files, perform memory analysis, and analyze malware for a Windows subject on a Linux system with readily available free and open source tools. Students will also gain an in-depth understanding of how Windows works under the covers.
Files:
Pentester Academy – Windows Forensics- 044-windows044.pdf (46.0 KB)
- 039-FAT-part12B-Introduction-to-Autopsy.mp4 (23.1 MB)
- 045-File-forensics-part2A-using-Active-Disk-Editor.mp4 (39.9 MB)
- 035-FAT-part10A-Using-Python-to-interpret-directories.mp4 (33.2 MB)
- 013-windows013.pdf (49.5 KB)
- 011-Collecting-volatile-data-part4.mp4 (27.4 MB)
- 003-Gathering-materials.mp4 (17.6 MB)
- 025-Automating-image-mounting-with-Python-part4-mounting-GPT-partitions.mp4 (27.0 MB)
- 026-FAT-part1-FAT-basics.mp4 (16.8 MB)
- 016-Software-writeblocking-with-udev-rules.mp4 (28.3 MB)
- 049-File-forensics-part5-finding-files-with-a-Python-script.mp4 (36.9 MB)
- 010-Collecting-volatile-data-part3.mp4 (31.9 MB)
- 002-forensic-basics.mp4 (13.0 MB)
- 032-FAT-part7-Using-Python-to-interpret-the-FAT.mp4 (41.9 MB)
- 018-windows018.pdf (61.8 KB)
- 009-Collecting-volatile-data-part2.mp4 (16.1 MB)
- 048.zip (0.6 KB)
- 019-Mounting-images-part2-mounting-MBR-partitions-on-Linux.mp4 (24.2 MB)
- 028-FAT-part3-Volume-boot-records.mp4 (23.1 MB)
- 004-Starting-an-investigation.mp4 (14.9 MB)
- 015-Creating-filesystem-images-part3-virtual-machines.mp4 (10.2 MB)
- 037-FAT-part11-Introduction-to-The-Sleuth-Kit.mp4 (28.4 MB)
- 038-FAT-part12A-Introduction-to-Autopsy.mp4 (27.6 MB)
- 027-FAT-part2-Using-Active-Disk-Editor-to-view-an-image.mp4 (30.2 MB)
- 012-Collecting-volatile-data-part5-RAM-dump.mp4 (17.7 MB)
- 018-Mounting-images-part1-MBR-basics.mp4 (16.0 MB)
- 021-Automating-image-mounting-with-Python-part1A-MBR-partitions.mp4 (32.6 MB)
- 001-windows001.pdf (61.3 KB)
- 003-install-dfir.zip (1.4 KB)
- 023-mount-image-extpart.zip (1.9 KB)
- 042-FAT-part15A-Deleted-files-and-Python.mp4 (27.0 MB)
- 044-File-forensics-part1.mp4 (13.6 MB)
- 005-Using-netcat.mp4 (16.5 MB)
- 014-Creating-filesystem-images-part2-live-capture.mp4 (16.7 MB)
- 007-setup-client.zip (1.1 KB)
- 024-windows024.pdf (245.4 KB)
- 025-mount-image-gpt.zip (3.0 KB)
- 022-Automating-image-mounting-with-Python-part1B-MBR-partitions.mp4 (32.1 MB)
- 016-4deck-1.1.zip (9.3 KB)
- 035-directory.zip (3.5 KB)
- 043-FAT-part15B-Deleted-files-and-Python.mp4 (35.1 MB)
- 029-FAT-part4-Using-Active-Disk-Editor-to-examine-the-VBR.mp4 (31.5 MB)
- 033-windows033.pdf (65.4 KB)
- 022-mount-image.zip (1.7 KB)
- 033-FAT-part8-Directory-entries.mp4 (23.3 MB)
- 049.zip (1.7 KB)
- 042.zip (12.6 KB)
- 026-windows026.pdf (53.1 KB)
- 030-FAT-part5-Using-Python-to-examine-the-VBR.mp4 (28.4 MB)
- 040-FAT-part13-Deleted-file-basics.mp4 (22.1 MB)
- 034-FAT-part9-Looking-at-directories-in-Active-Disk-Editor.mp4 (57.7 MB)
- 032-mbr.zip (5.6 KB)
- 002-windows002.pdf (222.1 KB)
- 048-File-forensics-part4-finding-mismatched-files-with-a-shell-script.mp4 (29.0 MB)
- 036-FAT-part10B-Using-Python-to-interpret-directories.mp4 (31.9 MB)
- 020-Mounting-images-part3-mounting-extended-partitions-on-Linux.mp4 (17.5 MB)
- 017-Making-images-from-a-physical-disk.mp4 (30.4 MB)
- 028-windows028.pdf (69.6 KB)
- 006-start-case.zip (1.3 KB)
- 024-Automating-image-mounting-with-Python-part3-GPT-basics.mp4 (16.5 MB)
- 013-Creating-filesystem-images-part1-basics.mp4 (22.3 MB)
- 003-windows003.pdf (50.0 KB)
- 041-FAT-part14-Deleted-files-and-Active-Disk-Editor.mp4 (50.9 MB)
- 030-vbr.zip (2.1 KB)
- 008-Collecting-volatile-data-part1.mp4 (15.3 MB)
- 001-Introduction.mp4 (22.9 MB)
- 020-windows020.pdf (62.0 KB)
- 031-FAT-part6-Using-Active-Disk-Editor-to-examine-the-FAT.mp4 (47.4 MB)
- 023-Automating-image-mounting-with-Python-part2-extended-partitions.mp4 (19.0 MB)
- 007-Automating-the-netcat-client.mp4 (13.6 MB)
- 046-File-forensics-part2B-using-Active-Disk-Editor.mp4 (32.1 MB)
- 047-File-forensics-part3-using-the file-utility.mp4 (42.1 MB)
- 021-mount-image.zip (1.7 KB)
- 004-windows004.pdf (50.9 KB)
- 008-windows008.pdf (47.0 KB)
- 040-windows040.pdf (40.0 KB)
- 006-Automating-the-netcat-server.mp4 (17.7 MB)
There are currently no comments. Feel free to leave one :)
Code:
- http://bt4.t-ru.org/ann
- http://retracker.local/announce