[OneHack.Us] 13Cubed - Investigating Windows Endpoints (49 files)
1. Welcome and Introduction/1.Welcome and Introduction.ts |
367.13MB |
2. Initial Setup/2.Initial Setup.ts |
543.53MB |
3. Windows Event Logs/00. Support - Onehack.Us.txt |
0.09kB |
3. Windows Event Logs/3. Fundamentals.ts |
259.70MB |
3. Windows Event Logs/4. In-depth Analysis.ts |
549.43MB |
3. Windows Event Logs/5. Tools and Best Practices.ts |
443.00MB |
4. The Registry/6. Fundamentals.ts |
351.55MB |
4. The Registry/7. NTUSER.DAT.ts |
377.51MB |
4. The Registry/8. UsrClass.dat and ShellBags.ts |
311.20MB |
4. The Registry/9. USB Forensics, Networks, and More.ts |
230.81MB |
4. The Registry/10. Scalable Analysis.ts |
183.08MB |
5. Evidence of Execution/11. Introduction.ts |
50.10MB |
5. Evidence of Execution/12. Prefetch.ts |
571.83MB |
5. Evidence of Execution/13. Shimcache.ts |
319.04MB |
5. Evidence of Execution/14. AmCache.ts |
284.34MB |
5. Evidence of Execution/15. PCA.ts |
33.32MB |
5. Evidence of Execution/16. MUICache.ts |
91.62MB |
5. Evidence of Execution/17. UserAssist.ts |
170.36MB |
5. Evidence of Execution/18. SRUM.ts |
211.57MB |
6. Persistence, Privilege Escalation, and Lateral Movement/19. Services and Scheduled Tasks.ts |
347.26MB |
6. Persistence, Privilege Escalation, and Lateral Movement/20. LSASS, NTDS.dit, WDigest.ts |
176.94MB |
6. Persistence, Privilege Escalation, and Lateral Movement/21. SMB, RDP, WMI, PsExec, UAL.ts |
271.74MB |
7. Anatomy of NTFS/22. Introduction.ts |
46.03MB |
7. Anatomy of NTFS/23. Metafiles, MFT, Journaling, ADS.ts |
310.10MB |
7. Anatomy of NTFS/24. MACB Timestamps.ts |
173.56MB |
7. Anatomy of NTFS/25. Parsing the MFT and USN Journal.ts |
214.53MB |
7. Anatomy of NTFS/26. $I30 Index Attributes.ts |
40.10MB |
8. File Deletion and Recovery/27. The Recycle Bin.ts |
32.95MB |
8. File Deletion and Recovery/28. 'Permanent' Deletion.ts |
127.47MB |
9. LNK Files and Jump Lists/29. LNK Files.ts |
211.05MB |
9. LNK Files and Jump Lists/30. Jump Lists.ts |
138.96MB |
10. Additional Content/01. Support - Onehack.Us.txt |
0.09kB |
10. Additional Content/31. Web Browser Forensics.ts |
280.64MB |
10. Additional Content/32. Thumbs.db and Thumbcache.ts |
217.86MB |
Extra/0. Support - Onehack.Us.txt |
0.09kB |
Extra/ccnp security firewall notes.pdf |
6.20MB |
Extra/ccnp security secure notes.pdf |
769.61kB |
Extra/ccnp security sisas notes.pdf |
6.51MB |
Extra/cisco vpn chart.pdf |
52.95kB |
Extra/impacket exec commands cheat sheet.pdf |
576.85kB |
Extra/impacket exec commands cheat sheet poster.pdf |
1.70MB |
Extra/ntfs file record.pdf |
1.36MB |
Extra/rdp flowchart.pdf |
188.27kB |
Extra/splunk manual.pdf |
695.76kB |
Extra/windows browser artifacts cheat sheet.pdf |
265.95kB |
Extra/windows event log cheat sheet.pdf |
178.58kB |
Extra/windows process genealogy v2.pdf |
167.24kB |
Extra/windows registry cheat sheet.pdf |
260.16kB |
Support - Onehack.Us.txt |
0.09kB |
|
|
|
Type: Course
Bibtex:
Tags:
Bibtex:
@article{,
title= {13Cubed | Investigating Windows Endpoints},
journal= {},
author= {},
year= {},
url= {},
abstract= {Visit >>> http://onehack.us/
https://i.ibb.co/ZpBtTkH0/Investigating-Windows-Endpoints.png
13Cubed - Investigating Windows Endpoints
Course details
Discover the world of Windows forensic investigation through professional, in-depth training crafted from the expertise behind the 13Cubed YouTube channel. This course delivers affordable and comprehensive content, tailored to help newcomers, experienced professionals looking to sharpen their skills, and anyone fascinated by digital forensics.
Prerequisites
- Just a basic understanding of Windows 10/11, and a willingness to learn!
General Details:
Duration: 11h+
Updated: 03/2025
Language: English
PDFs: Included
Source: https://training.13cubed.com/investigating-windows-endpoints
MPEG-2 (4K) | Video: AVC, 3840x2160p | Audio: AAC, 44.100 KHz, 2 Ch},
keywords= {Windows forensic, digital forensics, comprehensive content,},
terms= {},
license= {},
superseded= {}
}
1. Welcome and Introduction/1.Welcome and Introduction.ts