The Windows OS Forensics course covers windows file systems, Fat32, ExFat, and NTFS. You will learn how these systems store data, what happens when a file gets written to disc, what happens when a file gets deleted from disc, and how to recover deleted files. You will also learn how to correctly interpret the information in the file system data structures, giving the student a better understanding of how these file systems work. This knowledge will enable you to validate the information from multiple forensic tools properly.
提供方


課程信息
At least 2 years of technical cybersecurity experience.
對員工進行熱門技能培訓能否為您的公司帶來益處?
體驗 Coursera 企業版您將學到的內容有
The student will learn about the windows file systems, Fat32, ExFat, and NTFS.
Students will learn how these systems store data, what happens when a file gets written to disc, & what happens when a file gets deleted from disc.
Students will learn how to recover deleted files.
您將獲得的技能
- Data Recovery
- forensics
- windows os
At least 2 years of technical cybersecurity experience.
對員工進行熱門技能培訓能否為您的公司帶來益處?
體驗 Coursera 企業版提供方
授課大綱 - 您將從這門課程中學到什麼
Bits, Bytes and Endienness
Disk Partition Schema
The FAT File System
The NTFS File System
審閱
- 5 stars79.48%
- 4 stars17.94%
- 1 star2.56%
來自WINDOWS OS FORENSICS的熱門評論
Excellent Course with very clear cut explanations. Thank you !!!
It is a well written course for those starting out in Digital Forensics such as myself. Highly recommended for those who wish to understand the importance of file systems in Forensics
there are some mistakes (questions 4 and 45) in the final quiz.
A very good course. But need improvement, since it called Windows OS Forensics, it should cover more about Windows artifacts. But overall, great content. Thanks a lot.
關於 计算机取证 專項課程

常見問題
我什么时候能够访问课程视频和作业?
我订阅此专项课程后会得到什么?
有助学金吗?
還有其他問題嗎?請訪問 學生幫助中心。