Jump to content
Nytro

Windows Artifact Analysis: Evidence of...

Recommended Posts

Posted

Windows Artifact Analysis: Evidence of...

Created for FOR408 – Windows Forensics – SANS

Digital Forensics and Incident Response faculty

created the “Evidence of...” categories to map a

specific artifact to the analysis question that it

will help to answer. Use this poster as a cheat-

sheet to help you remember where you can

discover key items to an activity for Microsoft

Windows systems for intrusions, intellectual

property theft, or common cyber-crimes.

Download:

https://blogs.sans.org/computer-forensics/files/2012/06/SANS-Digital-Forensics-and-Incident-Response-Poster-2012.pdf

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...