Windows Shimcache Forensics

Find evidence of past and present executables on Windows systems and uncover malicious tools. Shimcache evidence can be crucial for Incident Response investigations, data spoliation… Read More

16 Lessons $59.00
View Details

Memory Analysis 3

This class has been taken offline temporarily while it is being updated A system’s memory contains an assortment of valuable forensic data. A computer analyst… Read More

47 Lessons
View Details

Memory Analysis 2

This class has been taken offline temporarily while it is being updated A system’s memory contains an assortment of valuable forensic data. A computer analyst… Read More

31 Lessons
View Details

Memory Analysis 1

This class has been taken offline temporarily while it is being updated A system’s memory contains an assortment of valuable forensic data. A computer analyst… Read More

33 Lessons
View Details

Volume Shadow Copy

Learn manual volume shadow disk imaging. Time travel anyone? Well, sort of… By creating computer forensic images from volume shadow copies you are able to… Read More

5 Lessons $19.00
View Details