Course Curriculum

Before the course
(W36M00) Refresher - Imaging FREE 00:00:00
(W36M00) Refresher - Hashing FREE 00:00:00
(W36M00) Refresher - Naming convention FREE 00:00:00
(W40M00) Setting the tone for NTFS FREE 00:00:00
(W40M00) Q&A with the instructor FREE 00:00:00
Module 1
(W00) Course Instructions 00:00:00
(W40M01) Module 1 Downloads 00:00:00
(W40M02) Course Introduction 00:00:00
(W40M03) Introduction to NTFS 00:00:00
(W40M04) A forensic approach to NTFS 00:00:00
(W40M05) $Boot file 00:00:00
(W40M06) $MFT file 00:00:00
(W40M07) $Volume file 00:00:00
(W40M09) Processing $Volume file 00:00:00
(W40M08) $AttrDef file 00:00:00
(W40M09) $Bitmap file 00:00:00
(W40Q01) Hello NTFS! - Assignment 1 01:30:00
Module 2
(W40M10) Module 2 Downloads 00:00:00
(W40M11) Root System file 00:00:00
(W40M12) A quick recap 00:00:00
(W40M13) Resident file 00:00:00
(W40M14) Fun Fact - MFT Header 00:00:00
(W40M15) Non-Resident File 00:00:00
(W40M16) Directory 00:00:00
(W40M17) Let's hoist flags! 00:00:00
(W40M18) Behaviour on file/directory deletion 00:00:00
(W40M19) Behaviour of NT File System on Linux 00:00:00
(W40Q02) NTFS Surgery - Assignment 2 01:30:00
Module 3
(W40M20) Module 3 Downloads 00:00:00
(W40M21) Introduction to fsutil 00:00:00
(W40M22) File System Journaling 00:00:00
(W40M23) Tunneling 00:00:00
(W40M24) Object Identifiers 00:00:00
(W40M25) Links 00:00:00
(W40M26) Compressed Files 00:00:00
(W40Q03) You seem special NTFS! - Assignment 3 01:30:00
Module 4
(W40M00) Course publication schedule & announcements FREE 00:00:00
(W40M27) Module 4 Downloads 00:00:00
(W40M28) File System Encryption 00:00:00
(W40M29) Access Control Lists 00:00:00
(W40M30) Alternate Data Streams 00:00:00
(W40M31) The Sleuth Kit against NTFS 00:00:00
(W40M32) How to 'approach' forensics of NTFS forensic image 00:00:00
(W40M33) Forensic Restoration 00:00:00
(W40Q04) I am NTFS and I know it! - Assignment 4 01:30:00
Final Exam
(W40Q05) Final Exam 00:40:00
© HAKIN9 MEDIA SP. Z O.O. SP. K. 2023