
In this video from our Windows Registry and Log Analysis by Luca Cadonici you will learn how to filter remote desktop sessions from evidence you have collected throughout your investigation. Which logs are relevant? Where can you search for dates, session IDs, or IP addresses of remotely connected machines? Watch this tutorial and learn!
Courses by Luca:
Author

Latest Articles
Blog2022.04.07Detecting Fake Images via Noise Analysis | Forensics Tutorial [FREE COURSE CONTENT]
Blog2022.03.02Windows File System | Windows Forensics Tutorial [FREE COURSE CONTENT]
Blog2021.08.17PowerShell in forensics - suitable cases [FREE COURSE CONTENT]
Open2021.05.20Photographic Evidence and Photographic Evidence Tampering
Subscribe
Login
0 Comments