Home~IS 236 Computer Forensics 2

Next Offering: Winter 2009, 5:30 — 8:00pm, Mondays and Wednesdays

In this class, we will continue learning digital forensics techniques. We will continue to use AccessData software (Forensics Toolkit) while adding experience working with EnCase. The main emphasis of this class will be aquisition methods and the analysis of acquired images.

Course Outline Winter 2008

Week 1: No Class

Week 2: Intro to Class, Computer Hardware, and File Allocation Systems

Week 3: Computer Hardware and File Allocation Systems

Week 4: Acquiring digital evidence

Week 5: Acquiring digital evidence

Week 6: EnCase Concepts

Week 7: EnCase Environment

Week 8: Understanding, Searching for, and Bookmarking Data

Week 9: File Signature Analysis and Hash Analysis

Week 10: Windows Operating Systems Artifacts

Week 11: Advanced EnCase