This practice-oriented four-day training is meant for experienced computer users, who also already have some experience with EnCase. This training picks up where the EnCase DF120 trainingleft off. This training enables the digital investigator to optimally use the unique features of EnCase.
For whom is this training intended? This training is intended for experienced digital investigators and IT security experts who have completed the EnCase DF120 (previously EnCase Computer Forensics I) training.
What will you learn during the training?
How to create and use ‘logical evidence files’.
How to recover removed partitions and folders.
How to carry out advanced search query using GREP.
How the Windows Register works.
How to use composite files.
How to export files, directories and the complete contents from a drive.
How to work with hash libraries and file identification.
How Windows parts like links, user folders and trash within EnCase.
How to recover printed pages.
We find it very important that you are aware of which cookies our website uses and for which purposes. We use Functional Cookies to make our website function properly. In addition, we use Analytics Cookies to analyze the use of our website. We also ask your permission for the placement of cookies from third parties (social media, advertising and analytics partners) with whom we share information. By clicking 'Accept', you accept the placement of the above mentioned cookies. If you click on 'Settings', you will be taken to a page where you can specify which cookies may and may not be placed. Click here for our Privacy Statement.