We use cookies to ensure you get the best experience on our website. Please review our cookie policy for details.

File System Forensic Analysis

Lessons
Lab
TestPrep
AI Tutor (Add-on)
Get A Free Trial

About This Course

Skills You’ll Get

1

Introduction

  • Roadmap
  • Scope of Course
2

Digital Investigation Foundations

  • Digital Investigations and Evidence
  • Digital Crime Scene Investigation Process
  • Data Analysis
  • Overview of Toolkits
  • Summary
3

Computer Foundations

  • Data Organization
  • Booting Process
  • Hard Disk Technology
  • Summary
4

Hard Disk Data Acquisition

  • Introduction
  • Reading the Source Data
  • Writing the Output Data
  • A Case Study Using dd
  • Summary
5

Volume Analysis

  • Introduction
  • Background
  • Analysis Basics
  • Summary
6

PC-based Partitions

  • DOS Partitions
  • Apple Partitions
  • Removable Media
7

Server-based Partitions

  • BSD Partitions
  • Sun Solaris Slices
  • GPT Partitions
  • Summary
8

Multiple Disk Volumes

  • RAID
  • Disk Spanning
9

File System Analysis

  • What Is a File System?
  • File System Category
  • Content Category
  • Metadata Category
  • File Name Category
  • Application Category
  • Application-level Search Techniques
  • Specific File Systems
  • Summary
10

FAT Concepts and Analysis

  • Introduction
  • File System Category
  • Content Category
  • Metadata Category
  • File Name Category
  • The Big Picture
  • Other Topics
  • Summary
11

FAT Data Structures

  • Boot Sector
  • FAT32 FSINFO
  • FAT
  • Directory Entries
  • Long File Name Directory Entries
  • Summary
12

NTFS Concepts

  • Introduction
  • Everything is a File
  • MFT Concepts
  • MFT Entry Attribute Concepts
  • Other Attribute Concepts
  • Indexes
  • Analysis Tools
  • Summary
13

NTFS Analysis

  • File System Category
  • Content Category
  • Metadata Category
  • File Name Category
  • Application Category
  • The Big Picture
  • Other Topics
  • Summary
14

NTFS Data Structures

  • Basic Concepts
  • Standard File Attributes
  • Index Attributes and Data Structures
  • File System Metadata Files
  • Summary
  • Bibliography
15

Ext2 and Ext3 Concepts and Analysis

  • Introduction
  • File System Category
  • Content Category
  • Metadata Category
  • File Name Category
  • Application Category
  • The Big Picture
  • Other Topics
  • Summary
16

Ext2 and Ext3 Data Structures

  • Superblock
  • Group Descriptor Tables
  • Block Bitmap
  • Inodes
  • Extended Attributes
  • Directory Entry
  • Symbolic Link
  • Hash Trees
  • Journal Data Structures
  • Summary
17

UFS1 and UFS2 Concepts and Analysis

  • Introduction
  • File System Category
  • Content Category
  • Metadata Category
  • File Name Category
  • The Big Picture
  • Other Topics
  • Summary
  • Bibliography
18

UFS1 and UFS2 Data Structures

  • UFS1 Superblock
  • UFS2 Superblock
  • Cylinder Group Summary
  • UFS1 Group Descriptor
  • UFS2 Group Descriptor
  • Block and Fragment Bitmaps
  • UFS1 Inodes
  • UFS2 Inodes
  • UFS2 Extended Attributes
  • Directory Entries
  • Summary
  • Bibliography
A

Appendix A: The Sleuth Kit and Autopsy

  • The Sleuth Kit
  • Autopsy

File System Forensic Analysis

$ 139.99

Buy Now

Related Courses

All Course
scroll to top