Pluralsight – Specialized DFIR – Windows Registry Forensics

Pluralsight – Specialized DFIR – Windows Registry Forensics
English | Tutorial | Size: 249.81 MB


The Windows registry is a valuable source of information during a forensic investigation. This course will teach you how to investigate the registry to obtain evidence of malicious execution and persistence.

SANS FOR500 Windows Forensics Analysis Class – version 2022 PDF

SANS FOR500 version 2022 PDF
English | Tutorial | Size: 303.29 MB


FOR500 builds comprehensive digital forensics knowledge of Microsoft Windows operating systems providing the means to recover, analyze, and authenticate forensic data, track user activity on the network, and organize findings for use in incident response, internal investigations, intellectual property theft inquiries, and civil or criminal litigation.