COMPUTER FORENSICS WITH FRED AND ENCASE (CFFEN)

October 06-10, 2008 (New Berlin, WI) | Registration/Order Form

Digital Intelligence is proud to offer training in the use of the Forensic Recovery of Evidence Device (FRED) system to conduct forensic computer examinations, in conjunction with three days of intermediate level training in the use of EnCase® software. This course satisfies the education portion of the EnCE requirement.
The EnCase® software training is designed for investigators with strong computer skills, prior computer forensics training, and experience using EnCase® forensic software. It provides the knowledge and skills necessary to: authenticate the EnCase® Evidence File format using CRC and hash values; bookmark files and file segments for inclusion in the final report; conduct key word searches and advanced searches using the EnCase® GREP syntax; use the preview feature; implement EnCase® Computer Forensic Methodology; export files, directories and entire volumes; identify files using hash values and build hash libraries; identify Windows XP operating system artifacts such as registry entries, link files, recycle bin, and user folders; and perform many other forensic procedures. It also includes an introduction to using EnScript® files for automating the analysis process
Pair it with Computer Forensics with FRED, and you have Computer Forensics with FRED and EnCase® (CFFEn) - a full week of training covering FRED's BIOS configuration, IDE and SCSI basics, installing and initializing a hard drive using FRED's custom drive trays, partitioning and formatting a drive, the basics of FAT and NTFS file systems, hardware write protection, creating a forensic image and the three day EnCase training described above.
- FRED's Hardware
- Motherboard
- Processor
- Expansion slots
- Memory
- PATA and SATA channels
- RAID
- Connections
- Drive bays
- BIOS, operating systems and boot menus
- Overview of PATA, SCSI and SATA
- Introduction to floppy and hard drives
- Floppy CHS numbering
- Hard drive CHS numbering
- LBA
- Partitions
- Primary
- Extended
- Partition table entries
- Write blockers
- UltraBay, UltraKit and FireFly hardware write blockers
- FAT File System
- NTFS File System
- Preparing a duplicate image
- EnCase® intermediate level training
Digital Intelligence Offers the Following Computer Forensic Training Programs
In addition to these classes, custom training programs can be developed to meet specific customer requirements. For additional information on these three training programs, as well as scheduling information, please contact Digital Intelligence at (262) 782-3332.
FREE TRAINING WITH FRED SYSTEM PURCHASE
Digital Intelligence offers free training. This limited time offer will provide a single seat in our Computer Forensics with FRED class for each FRED system purchased. This program offers a great opportunity to obtain detailed training in the operation and configuration of your new FRED system! Limited seating is available in each class under this offer so make your arrangements early. Although tuition will be covered under this program, travel, meals, and lodging will be the responsibility of the student. A credit card commitment will be required to reserve seating under this program as last minute cancellations and no-shows will be charged a $150.00 cancellation fee (otherwise no charges will be applied).
|
|