Видео: Windows Application Compatibility Forensics

02. Windows Application Compatibility Forensics - Windows Forensic | Xander Billa

You will learn how to recover, analyze, and authenticate forensic data on Windows systems, track particular user activity on your ...

Application Compatbility Toolkit

This video looks at the application compatibility toolkit. The tool kit help you get your legacy application to run in an enterprise ...

Case Study: Microsoft Windows 10 Application Compatibility in Health Care

Adventist Health System is upgrading 55000 devices to Microsoft Windows 10, citing strong Windows 10 application compatibility ...

70 688 Lab 2 Ex 2 1 Installing and Using Application Compatibility Tool ACT Kit

Microsoft Office Academic Course [MOAC], Supporting Windows 8.1, Lab Manual Walk-Thru - Lab 2: Supporting Desktop ...

Windows SRUM Forensics

As a continuation of the "Introduction to Windows Forensics" series, this video introduces the System Resource Utilization Monitor ...

NTFS Journal Forensics

As a continuation of the "Introduction to Windows Forensics" series, this episode covers file system journaling in NTFS. From a ...

Shellbag Forensics

As a continuation of the "Introduction to Windows Forensics" series, this video introduces Shellbags. Have you ever customized ...

DFIR in 120 Seconds - Shimcache

Further Reading: https://www.fireeye.com/blog/threat-research/2015/06/cach... ...

Introduction to EvtxECmd

As a continuation of the "Introduction to Windows Forensics" series, this episode covers an exciting new tool from Eric Zimmerman ...

SANS SIFT - Prefetch file Analysis

SANS SIFT - Prefetch Files Prefetch files are created by the Windows OS when an application is run from a particular location for ...

SDF: WINDOWS SHIMCACHE FORENSICS

Class Link: https://www.udemy.com/sdf-shimcache-forensics/?couponCode=PODCAST Podcast: ...

Creating and using a registry shim - VirtualRegistry

In this example we will redirect a registry key located in HKLM to HKCU when accessed by powershell. This can be used for just ...

Extracting Prefetch from Memory

This is an excerpt from the upcoming premiere of a new 13Cubed series called Deep Dives. In this episode, we'll take a look at ...

DFSP # 100 – B2B Shimcache

The Digital Forensic Survival Podcast on YouTube! Check out more Podcasts at ...

Run Act Software as an Administrator

How to Run Act Software as an Administrator.

Creating and using a file redirection shim - CorrectFilePaths

In this example we will redirect a file located in ProgramFile to the users Home Drive when accessed by Notepad++. This can be ...

Browse Volume Shadow Copies on a Live Windows System

This is a quick video to show you how to browse a volume shadow copy on a live Windows system using only built-in tools.

Опубликовано: 02 Май 2019

Случайные видео:

© 2020 | Главная | Связь