Data Artifacts, Analysis Results and Reporting in Autopsy
Offered By: DFIRScience via YouTube
Course Description
Overview
Syllabus
Autopsy Data Artifacts
Exploring the Windows 10 disk image
Autopsy: Data Artifacts
Installed Programs
Metadata
Operating System Information
Recent Documents
Recycle Bin
Run Programs
Run Programs - Verify with additional evidence
Autopsy analysis procedure overview
Shell Bags
USB Device Attached
Web Accounts
Web Bookmarks
Web Cache
Web Cookies
Web Downloads
Web Form Autofill
Web History
Web Search
Autopsy: Analysis Results
Encryption Suspected
EXIF Metadata
Extension Mismatch Detected
Interesting Files
Keyword Hits
Previously Unseen
User Content Suspected
Web Account Type
Web Categories
Artifacts and Results Overview
Bookmarked items review
Generate an artifact report based on bookmarks
Example full Autopsy report
How to use an Autopsy report
Conclusions
Taught by
DFIRScience
Related Courses
Extensions, Frameworks, & Integrations Used with ZeekPluralsight OSINT
Pennsylvania State University via YouTube Data Catalog: Qwik Start
Google Cloud via Coursera Elucidata's Bulk RNA-Seq OmixAtlas - Effortless Dataset Discovery and Retrieval
Bioinformagician via YouTube Unearthing Malicious and Risky OpenSource Packages Using Packj
nullcon via YouTube