Pentester Academy - Windows Forensics
- CategoryOther
- TypeTutorials
- LanguageEnglish
- Total size1.3 GB
- Uploaded ByxPaco1337
- Downloads994
- Last checkedJun. 15th '18
- Date uploadedJun. 20th '17
- Seeders 3
- Leechers1
This course will familiarize students with all aspects of Windows forensics.By the end of this course students will be able to perform live analysis, capture volatile data, make images of media, analyze filesystems, analyze network traffic, analyze files, perform memory analysis, and analyze malware for a Windows subject on a Linux system with readily available free and open source tools. Students will also gain an in-depth understanding of how Windows works under the covers.
Files:
Pentester Academy – Windows Forensics- 044-windows044.pdf (46.0 KB)
- 039-FAT-part12B-Introduction-to-Autopsy.mp4 (23.1 MB)
- 045-File-forensics-part2A-using-Active-Disk-Editor.mp4 (39.9 MB)
- 035-FAT-part10A-Using-Python-to-interpret-directories.mp4 (33.2 MB)
- 013-windows013.pdf (49.5 KB)
- 011-Collecting-volatile-data-part4.mp4 (27.4 MB)
- 003-Gathering-materials.mp4 (17.6 MB)
- 025-Automating-image-mounting-with-Python-part4-mounting-GPT-partitions.mp4 (27.0 MB)
- 026-FAT-part1-FAT-basics.mp4 (16.8 MB)
- 016-Software-writeblocking-with-udev-rules.mp4 (28.3 MB)
- 049-File-forensics-part5-finding-files-with-a-Python-script.mp4 (36.9 MB)
- 010-Collecting-volatile-data-part3.mp4 (31.9 MB)
- 002-forensic-basics.mp4 (13.0 MB)
- 032-FAT-part7-Using-Python-to-interpret-the-FAT.mp4 (41.9 MB)
- 018-windows018.pdf (61.8 KB)
- 009-Collecting-volatile-data-part2.mp4 (16.1 MB)
- 048.zip (0.6 KB)
- 019-Mounting-images-part2-mounting-MBR-partitions-on-Linux.mp4 (24.2 MB)
- 028-FAT-part3-Volume-boot-records.mp4 (23.1 MB)
- 004-Starting-an-investigation.mp4 (14.9 MB)
- 015-Creating-filesystem-images-part3-virtual-machines.mp4 (10.2 MB)
- 037-FAT-part11-Introduction-to-The-Sleuth-Kit.mp4 (28.4 MB)
- 038-FAT-part12A-Introduction-to-Autopsy.mp4 (27.6 MB)
- 027-FAT-part2-Using-Active-Disk-Editor-to-view-an-image.mp4 (30.2 MB)
- 012-Collecting-volatile-data-part5-RAM-dump.mp4 (17.7 MB)
- 018-Mounting-images-part1-MBR-basics.mp4 (16.0 MB)
- 021-Automating-image-mounting-with-Python-part1A-MBR-partitions.mp4 (32.6 MB)
- 001-windows001.pdf (61.3 KB)
- 003-install-dfir.zip (1.4 KB)
- 023-mount-image-extpart.zip (1.9 KB)
- 042-FAT-part15A-Deleted-files-and-Python.mp4 (27.0 MB)
- 044-File-forensics-part1.mp4 (13.6 MB)
- 005-Using-netcat.mp4 (16.5 MB)
- 014-Creating-filesystem-images-part2-live-capture.mp4 (16.7 MB)
- 007-setup-client.zip (1.1 KB)
- 024-windows024.pdf (245.4 KB)
- 025-mount-image-gpt.zip (3.0 KB)
- 022-Automating-image-mounting-with-Python-part1B-MBR-partitions.mp4 (32.1 MB)
- 016-4deck-1.1.zip (9.3 KB)
- 035-directory.zip (3.5 KB)
- 043-FAT-part15B-Deleted-files-and-Python.mp4 (35.1 MB)
- 029-FAT-part4-Using-Active-Disk-Editor-to-examine-the-VBR.mp4 (31.5 MB)
- 033-windows033.pdf (65.4 KB)
- 022-mount-image.zip (1.7 KB)
- 033-FAT-part8-Directory-entries.mp4 (23.3 MB)
- 049.zip (1.7 KB)
- 042.zip (12.6 KB)
- 026-windows026.pdf (53.1 KB)
- 030-FAT-part5-Using-Python-to-examine-the-VBR.mp4 (28.4 MB)
- 040-FAT-part13-Deleted-file-basics.mp4 (22.1 MB)
- 034-FAT-part9-Looking-at-directories-in-Active-Disk-Editor.mp4 (57.7 MB)
- 032-mbr.zip (5.6 KB)
- 002-windows002.pdf (222.1 KB)
- 048-File-forensics-part4-finding-mismatched-files-with-a-shell-script.mp4 (29.0 MB)
- 036-FAT-part10B-Using-Python-to-interpret-directories.mp4 (31.9 MB)
- 020-Mounting-images-part3-mounting-extended-partitions-on-Linux.mp4 (17.5 MB)
- 017-Making-images-from-a-physical-disk.mp4 (30.4 MB)
- 028-windows028.pdf (69.6 KB)
- 006-start-case.zip (1.3 KB)
- 024-Automating-image-mounting-with-Python-part3-GPT-basics.mp4 (16.5 MB)
- 013-Creating-filesystem-images-part1-basics.mp4 (22.3 MB)
- 003-windows003.pdf (50.0 KB)
- 041-FAT-part14-Deleted-files-and-Active-Disk-Editor.mp4 (50.9 MB)
- 030-vbr.zip (2.1 KB)
- 008-Collecting-volatile-data-part1.mp4 (15.3 MB)
- 001-Introduction.mp4 (22.9 MB)
- 020-windows020.pdf (62.0 KB)
- 031-FAT-part6-Using-Active-Disk-Editor-to-examine-the-FAT.mp4 (47.4 MB)
- 023-Automating-image-mounting-with-Python-part2-extended-partitions.mp4 (19.0 MB)
- 007-Automating-the-netcat-client.mp4 (13.6 MB)
- 046-File-forensics-part2B-using-Active-Disk-Editor.mp4 (32.1 MB)
- 047-File-forensics-part3-using-the file-utility.mp4 (42.1 MB)
- 021-mount-image.zip (1.7 KB)
- 004-windows004.pdf (50.9 KB)
- 008-windows008.pdf (47.0 KB)
- 040-windows040.pdf (40.0 KB)
- 006-Automating-the-netcat-server.mp4 (17.7 MB)
Code:
- http://bt4.t-ru.org/ann
- http://retracker.local/announce