Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\01 - Preparation in the key to success.mp4
[366119e033c5fe90]
|
13,359,108 |
7AE5B4FF |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\02 - Storage devices in Windows.srt |
8,088 |
DE10643D |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\03 - Installing FTK Imager.mp4
[b86d09e316967d16]
|
4,475,994 |
F8D16946 |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\04 - Installing DD for Windows.srt |
2,024 |
E21722A8 |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\07 - Validating our trusted tool kit.mp4
[1a8b43977e4fad9c]
|
14,457,864 |
026A5A45 |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\01 - Preparation in the key to success.srt |
11,285 |
0BDC83C1 |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\05 - Preparing your evidence collection drive.mp4
[dd144a7ba26f1a5a]
|
4,953,601 |
E94B02BC |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\03 - Installing FTK Imager.srt |
2,381 |
8D7743B5 |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\06 - Creating a USB drive with trusted tools.mp4
[8636b14753f0cd89]
|
26,667,009 |
B4732D7E |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\02 - Storage devices in Windows.mp4
[d7db4b787740d27f]
|
11,410,946 |
415029E3 |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\07 - Validating our trusted tool kit.srt |
6,824 |
647D4938 |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\06 - Creating a USB drive with trusted tools.srt |
14,636 |
9C214DD4 |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\04 - Installing DD for Windows.mp4
[37c38881641f2449]
|
5,138,682 |
A32AA78A |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response\05 - Preparing your evidence collection drive.srt |
4,879 |
9C0BDDBA |
Incident Response Evidence Collection in Windows\06 - Challenges with Encryption\01 - Encryption in Windows.srt |
3,174 |
F5CC1E00 |
Incident Response Evidence Collection in Windows\06 - Challenges with Encryption\04 - BitLocker implementation and recovery password.srt |
2,638 |
0FEAD592 |
Incident Response Evidence Collection in Windows\06 - Challenges with Encryption\02 - Determining if BitLocker is running.mp4
[97196e05c1ba76b5]
|
4,084,480 |
0B3BF937 |
Incident Response Evidence Collection in Windows\06 - Challenges with Encryption\03 - Securing a system with BitLocker.mp4
[f4b33b2aa0106184]
|
5,550,716 |
48AA0C82 |
Incident Response Evidence Collection in Windows\06 - Challenges with Encryption\01 - Encryption in Windows.mp4
[ea4c27fb0a34d0a5]
|
3,342,340 |
C8F3CB04 |
Incident Response Evidence Collection in Windows\06 - Challenges with Encryption\04 - BitLocker implementation and recovery password.mp4
[221a42bf2ae2bba4]
|
2,958,602 |
25003B71 |
Incident Response Evidence Collection in Windows\06 - Challenges with Encryption\02 - Determining if BitLocker is running.srt |
4,262 |
BA9CF44C |
Incident Response Evidence Collection in Windows\06 - Challenges with Encryption\03 - Securing a system with BitLocker.srt |
4,234 |
DCA41448 |
Incident Response Evidence Collection in Windows\05 - Acquiring Evidence from Storage Media\01 - Write blockers.mp4
[7ca4ffcb9f735546]
|
5,526,186 |
2D9F852B |
Incident Response Evidence Collection in Windows\05 - Acquiring Evidence from Storage Media\02 - Enabling a software write blocker in Windows.mp4
[116b94cf8f13b8a7]
|
9,280,514 |
588D33F4 |
Incident Response Evidence Collection in Windows\05 - Acquiring Evidence from Storage Media\04 - Imaging a drive with Forensic Imager.srt |
7,288 |
B095E52B |
Incident Response Evidence Collection in Windows\05 - Acquiring Evidence from Storage Media\03 - Imaging a drive with the FTK Imager.mp4
[4419379a6342dd8b]
|
15,255,632 |
3E990A0C |
Incident Response Evidence Collection in Windows\05 - Acquiring Evidence from Storage Media\01 - Write blockers.srt |
4,352 |
DE4E25CF |
Incident Response Evidence Collection in Windows\05 - Acquiring Evidence from Storage Media\04 - Imaging a drive with Forensic Imager.mp4
[14e0c4f5aae46a0c]
|
9,823,061 |
B09BC9DD |
Incident Response Evidence Collection in Windows\05 - Acquiring Evidence from Storage Media\02 - Enabling a software write blocker in Windows.srt |
6,302 |
A72E841A |
Incident Response Evidence Collection in Windows\05 - Acquiring Evidence from Storage Media\03 - Imaging a drive with the FTK Imager.srt |
9,674 |
A75924EC |
Incident Response Evidence Collection in Windows\08 - Conclusion\01 - Next steps.mp4
[feb6ed447f1a50f2]
|
4,722,521 |
93BFEED0 |
Incident Response Evidence Collection in Windows\08 - Conclusion\01 - Next steps.srt |
3,260 |
B2843FC5 |
Incident Response Evidence Collection in Windows\07 - Logging Your Evidence\01 - Creating a report.mp4
[63bf0c18ed82eda0]
|
6,205,785 |
9C2A308F |
Incident Response Evidence Collection in Windows\07 - Logging Your Evidence\02 - Example report.mp4
[c252d8fc50f3b8cc]
|
7,730,434 |
B9616181 |
Incident Response Evidence Collection in Windows\07 - Logging Your Evidence\02 - Example report.srt |
6,046 |
FE876270 |
Incident Response Evidence Collection in Windows\07 - Logging Your Evidence\01 - Creating a report.srt |
5,112 |
4EDBDAA5 |
Incident Response Evidence Collection in Windows\Exercise Files\Ex_Files_Incident_Response_Windows.zip |
45,775 |
2DC3216A |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\06 - Collecting the datatime of the victim.srt |
4,671 |
E8F96AA6 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\07 - Documenting the logged on users.srt |
2,113 |
8A6D076F |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\03 - Acquiring a memory image in Windows.mp4
[c2a42ece7fa26700]
|
6,786,734 |
3B639361 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\04 - Acquiring a memory image in Windows in DumpIt.srt |
3,440 |
2FC929A5 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\09 - Documenting the running processes.srt |
4,392 |
099B16ED |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\09 - Documenting the running processes.mp4
[be09d41aeb0e729]
|
5,672,110 |
564F6B82 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\07 - Documenting the logged on users.mp4
[16e214129993bbbf]
|
3,271,254 |
8D9F3802 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\02 - Volatile and nonvolatile data.mp4
[bcfa5569bc9ae6e6]
|
16,486,743 |
3CD63B7A |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\08 - Documenting open network connections.srt |
5,505 |
D0DD799B |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\04 - Acquiring a memory image in Windows in DumpIt.mp4
[2af8f8dcee2cbab9]
|
7,095,711 |
6470CAA8 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\05 - Using CryptCat and Tee.mp4
[e98f67cb0765108e]
|
5,864,449 |
8E339C87 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\10 - Documenting any shared files.mp4
[4127177bdebaddf4]
|
1,773,570 |
5D13E42A |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\10 - Documenting any shared files.srt |
2,127 |
327DDE16 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\02 - Volatile and nonvolatile data.srt |
10,698 |
C39644F8 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\01 - Evidence collection.srt |
4,177 |
BAD5E4A3 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\08 - Documenting open network connections.mp4
[74a6043680b8f9ed]
|
6,648,066 |
C85B6CB2 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\05 - Using CryptCat and Tee.srt |
6,986 |
FBEE3C3A |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\03 - Acquiring a memory image in Windows.srt |
4,415 |
0C33F405 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\06 - Collecting the datatime of the victim.mp4
[b2ea664ba49efa80]
|
7,372,547 |
CF0F73D0 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition\01 - Evidence collection.mp4
[a76b281888d4b8a7]
|
4,676,954 |
1905D219 |
Incident Response Evidence Collection in Windows\01 - Introduction\01 - You've been hacked.srt |
3,315 |
9252A4CB |
Incident Response Evidence Collection in Windows\01 - Introduction\02 - What you need to know before taking this course.srt |
3,566 |
F19560FD |
Incident Response Evidence Collection in Windows\01 - Introduction\01 - You've been hacked.mp4
[a190810bbd200582]
|
9,814,018 |
96F1C4B1 |
Incident Response Evidence Collection in Windows\01 - Introduction\03 - Conducting an incident response.srt |
8,326 |
5E90DD9E |
Incident Response Evidence Collection in Windows\01 - Introduction\03 - Conducting an incident response.mp4
[16561800ac6d5ca2]
|
10,059,399 |
DC163F68 |
Incident Response Evidence Collection in Windows\01 - Introduction\02 - What you need to know before taking this course.mp4
[32aa8df25637deee]
|
5,296,536 |
0B7C2745 |
Incident Response Evidence Collection in Windows\04 - Nonvolatile Data Acquisition\02 - Collecting disk attributes using Disk Map.mp4
[638704f96fc4f4fc]
|
5,506,306 |
301D40B8 |
Incident Response Evidence Collection in Windows\04 - Nonvolatile Data Acquisition\02 - Collecting disk attributes using Disk Map.srt |
5,850 |
3DB62306 |
Incident Response Evidence Collection in Windows\04 - Nonvolatile Data Acquisition\05 - Graceful shutdown.srt |
2,031 |
5AE53A9C |
Incident Response Evidence Collection in Windows\04 - Nonvolatile Data Acquisition\01 - Nonvolatile evidence collection.srt |
1,611 |
C55423AC |
Incident Response Evidence Collection in Windows\04 - Nonvolatile Data Acquisition\03 - Documenting completion of live collection.srt |
3,246 |
9E19BF60 |
Incident Response Evidence Collection in Windows\04 - Nonvolatile Data Acquisition\03 - Documenting completion of live collection.mp4
[919469773c5ebf89]
|
4,381,707 |
4AB074AA |
Incident Response Evidence Collection in Windows\04 - Nonvolatile Data Acquisition\04 - Verification of data collected.srt |
5,460 |
D72B3BA6 |
Incident Response Evidence Collection in Windows\04 - Nonvolatile Data Acquisition\01 - Nonvolatile evidence collection.mp4
[ad98b266cdec1e0e]
|
2,402,988 |
349ACC58 |
Incident Response Evidence Collection in Windows\04 - Nonvolatile Data Acquisition\04 - Verification of data collected.mp4
[f9697a8c7e411cd1]
|
8,876,034 |
33C66B3C |
Incident Response Evidence Collection in Windows\04 - Nonvolatile Data Acquisition\05 - Graceful shutdown.mp4
[8c60f4438684db6f]
|
1,586,947 |
5505465E |
Incident Response Evidence Collection in Windows\02 - Preparing for an Incident Response |
0 |
00000000 |
Incident Response Evidence Collection in Windows\06 - Challenges with Encryption |
0 |
00000000 |
Incident Response Evidence Collection in Windows\05 - Acquiring Evidence from Storage Media |
0 |
00000000 |
Incident Response Evidence Collection in Windows\08 - Conclusion |
0 |
00000000 |
Incident Response Evidence Collection in Windows\07 - Logging Your Evidence |
0 |
00000000 |
Incident Response Evidence Collection in Windows\Exercise Files |
0 |
00000000 |
Incident Response Evidence Collection in Windows\03 - Volatile Data Acquisition |
0 |
00000000 |
Incident Response Evidence Collection in Windows\01 - Introduction |
0 |
00000000 |
Incident Response Evidence Collection in Windows\04 - Nonvolatile Data Acquisition |
0 |
00000000 |
Incident Response Evidence Collection in Windows |
0 |
00000000 |
|
Total size: |
268,749,711 |
|