Curriculum
- 18 Sections
- 110 Lessons
- 10 Weeks
Expand all sectionsCollapse all sections
- Module 01: Foundation of Digital Forensics & Cyber Crime Investigation13
- 1.1Introduction to Digital Forensics and Cyber Crime Investigation
- 1.2What is Cyber Crime Investigation?
- 1.3Objectives of Cyber Crime Investigation
- 1.4Common Types of Cyber Crimes
- 1.5Cyber Crime Investigation Process
- 1.6Digital Evidence Sources
- 1.7Chain of Custody
- 1.8Digital Forensics Tools
- 1.9Key Legal Considerations
- 1.10Essential Skills for Cyber Crime Investigators
- 1.11Common Mistakes During Investigation
- 1.12Career Roles in Cyber Crime Investigation
- 1.13Characteristics of Digital Evidence
- Module 02: Computer Forensic Investigation13
- 2.1Introduction to Computer Forensics
- 2.2What is Computer Forensics?
- 2.3Why Computer Forensics Matters
- 2.4Types of Digital Evidence in Computer Systems
- 2.5Live Data vs Dead Data
- 2.6Live Data (Volatile Data)
- 2.7Dead Data (Non-Volatile Data)
- 2.8Computer Forensic Investigation Process
- 2.9Forensic Imaging
- 2.10Hashing and Integrity Verification
- 2.11Common Computer Forensic Artifacts
- 2.12Windows Artifacts
- 2.13User Activity Artifacts
- Module 3: Email Forensics8
- Module 4: Computer Forensic: Volatile Memory Forensic18
- 4.1RAM Acquisition (Dump)
- 4.2Live Memory Capture Lab
- 4.3Check System State
- 4.4WinPMEM
- 4.5Hash Verification
- 4.6Evidence Preservation
- 4.7Volatile Data Examination
- 4.8RAM Analysis
- 4.9Memory Profile Identify
- 4.10Process Analysis
- 4.11Hidden Process Detection
- 4.12Network Connections
- 4.13DLL & Injection Analysis
- 4.14Credential Dump Check
- 4.15Malware Detection in RAM
- 4.16Live Incident Analysis
- 4.17Isolate system (network disconnect)
- 4.18Chain of Evidence
- Module 5: Computer Forensic: Non-Volatile Memory Forensics8
- Module 6: Registry, Event Viewer, Browser and Service Forensic6
- Module 7: Data Recovery Forensics11
- 7.1Introduction to Data Recovery (Forensic View)
- 7.2What is Data Recovery in Forensics?
- 7.3Deleted File Recovery (Basic Lab)
- 7.4Forensic Recovery using Autopsy
- 7.5Formatted Drive Recovery
- 7.6File Carving (Advanced Recovery)
- 7.7Hidden Data Recovery
- 7.8Partition Recovery
- 7.9Corrupted File Recovery
- 7.10Evidence Validation
- 7.11File Analysis
- Module 8: Chain of Custody (CoC)10
- 8.1What is Chain of Custody?
- 8.2Why It is Important?
- 8.3Chain of Custody Process (Step-by-Step)
- 8.4Chain of Custody Form (Practical Template)
- 8.5Evidence Handling Rules
- 8.6Digital Evidence Integrity
- 8.7Forensic Reporting
- 8.8Sample Forensic Report (Practical)
- 8.9Timeline Reconstruction
- 8.10Court Presentation Guidelines
- Module 9: Incident Response Action9
- Module 10: Linux Forensic Investigation14
- 10.1Introduction to Linux Forensics
- 10.2Why Linux Forensics is Important?
- 10.3Linux Evidence Sources
- 10.4User Activity Forensics
- 10.5System Log Analysis
- 10.6Network Forensics (Linux)
- 10.7Process Forensics
- 10.8File System Forensics
- 10.9Hidden Files & Persistence
- 10.10Cron Jobs (Persistence)
- 10.11Memory & Live Linux Forensics
- 10.12Log Timeline Reconstruction
- 10.13Malware Detection in Linux
- 10.14Evidence Collection & Reporting
- Module 11: Malware Forensics0
- Module 12: Social Media Forensics0
- Module 13: Database Forensics0
- Module 14: Network & Web Forensics0
- Module 15: Data Acquisition & Duplication0
- Job Preparation & Vendor Exam Preparation0
- Final Exam for Cyber Crime Investigation & Digital Forensics0
- Graduation Day & Certification Program0
Malware Detection in Linux
Prev