Coursera
Coursera Logo

Infosec - Windows OS Forensics 

  • Offered byCoursera

Windows OS Forensics
 at 
Coursera 
Overview

Duration

8 hours

Start from

Start Now

Total fee

Free

Mode of learning

Online

Difficulty level

Intermediate

Official Website

Explore Free Course External Link Icon

Credential

Certificate

Windows OS Forensics
 at 
Coursera 
Highlights

  • Reset deadlines in accordance to your schedule.
  • Shareable Certificate Earn a Certificate upon completion
  • 100% online Start instantly and learn at your own schedule.
  • Course 2 of 3 in the Computer Forensics Specialization
Read more
Details Icon

Windows OS Forensics
 at 
Coursera 
Course details

Skills you will learn
More about this course
  • The Windows OS Forensics course covers windows file systems, Fat32, ExFat, and NTFS.
  • You will learn how these systems store data, what happens when a file gets written to disc, what happens when a file gets deleted from disc, and how to recover deleted files.
  • You will also learn how to correctly interpret the information in the file system data structures, giving the student a better understanding of how these file systems work.

Windows OS Forensics
 at 
Coursera 
Curriculum

Bits, Bytes and Endienness

Converting Decimal to Binary

Converting Binary to Hex

Signed Integers

Little Endian Vs. Big Endian

Disk Partition Schema

Physical vs Logical Drives

Sectors and Clusters

Active Disk Editor

MBR Partition Schema

GPT Partition Schema

Solid State Disks

The FAT File System

FAT overview and history

FAT Volume Boot Record

The Root Directory

The FAT Table

File Creation and Deletion

File Recovery

The NTFS File System

Overview and history of the NTFS File System

The NTFS Volume Boot Record

The Master File Table

Data Runs

NTFS Creation and Deletion

NTFS File Recovery

The ex-fat File System

Overview and history of the ex-fat File System

The ex-fat volume boot record

The ex-fat volume Root Directory

File creation and deletion

File Recovery

Windows Registry Forensics

Registry Overview and History

The Live Registry

The location of Registry files within an image file

Common Forensics Artifacts found in the registry

Windows OS Forensics Quiz

Windows OS Forensics
 at 
Coursera 
Admission Process

    Important Dates

    May 25, 2024
    Course Commencement Date

    Other courses offered by Coursera

    – / –
    3 months
    Beginner
    – / –
    20 hours
    Beginner
    – / –
    2 months
    Beginner
    – / –
    3 months
    Beginner
    View Other 6715 CoursesRight Arrow Icon
    qna

    Windows OS Forensics
     at 
    Coursera 

    Student Forum

    chatAnything you would want to ask experts?
    Write here...