Custom Search
Provided by: ProTrain Online

Computer Forensics Level 1

Security

Training Provided by ProTrain Online This is not a "watered down" training course. We have a great training course, great material, experienced instructors and we truly want you to learn the material and to become good forensic examiners. We want you to compare and decide what is best for you. The Level I online program is designed for people interested in becoming Computer Forensics experts. Students move at their own pace through all 3 levels (5 modules) and learn how to forensically Exam(s)ine and recover data from DOS, Windows 95 and Windows 98 operating systems. Students learn core forensic procedures for any operating or file system, and how to conduct forensically sound Examinations to preserve evidence for admission and use in legal proceedings. Each module requires an Exam(s) and completion of practical exercises before you can move to the next module. Additionally, this course will help prepare you for the upcoming Certified Computer Examiner (CCE) Examination. 12 Months, Mentor Supported
This is primarily online training
on-line e-learning cbt (computer based)This is an online eLearning or CBT training program
self directedThis is a self-directed course
study at homeThis course may be available for home-study
Contact ProTrain Online for more information
Course Level:basic
Duration:50 hours
Training Presented in:English
Computer Forensics Level 1 o An overview of what types of crimes computer evidence might be used in.
o How to deal with clients and employers.
o How to initially determine the scope of the examination.
o How to determine what must be done and how you should proceed in an examination.
o An overview of why trained forensic examiners should be used and what they may expect to encounter.
o Software ethics.
o Forensic ethical standards.
o Forensic examination procedures.
o Preparing and verifying forensically sterile examination media.
o Note taking and report writing.
o Personal computer construction, hardware and software with focus on the BIOS, BIOS limitations, hard disk translation schemes and how they can effect forensic examinations.
o A very broad overview of several operating systems including:
Windows NT/2000
Novell
Unix/Linux
DOS
Windows 95/98
o A broad overview of networks.
o Instruction on the acquisition, collection and seizure of magnetic media.
o How to best acquire, collect or seize the various operating systems.
o Legal and privacy issues.
o Establishing a sound "chain of custody".
o Note - we believe a sound understanding of the FAT file system is essential. Flash media, such as "Thumb " Drives, flash cards in digital cameras, most cell phones, etc. are all stored on disk using the FAT file system.
o The beginning logical structures of the Microsoft operating system FAT file system. -
o How to recover simple deleted files.
o There are four practical exercises in preparing and verifying forensically sterile media, using a "carving" utility to recover data from unallocated space and the manual recovery of simple deleted files.
o A written examination regarding the material covered in this module.



We will provide a detailed handout for each module covered. The handouts can be used as a reference manual. Sample reports, additional practical exercises, a DOS primer, Diskedit primer and other useful information and applications will be provided. You will be subscribed to our listservers that provide both administrative and technical information. Even after you complete the course, as material is updated, you will be able to download the new material from our web site.

We will provide some forensic software that was written specifically for forensic examiners, including:

o A fast and thorough wiping program
o A fast checksum program
o A fast program that documents files (including deleted files) on a drive
o A program that will allow examination of unallocated space
o A program that will make exact forensic copies of floppy diskettes
o An excellent forensic "carving" utility
o The Passware Kit from Lost Password.com
o See hardware and software requirements for details on the software provided.

You will be required to purchase:

o Norton Utilities
o Norton Ghost
o QuickView Plus (a viewing application) QuickView
o A good virus scanning utility
o You will be required to use your own USB drive for the examinations. We recommend a size no less than 32 MB



Demo1 - This is a simple practical exercise that simulates a common issue that a forensic examiner may encounter. This demonstration practical exercise is based upon actual cases.

To download and open Demo1:

o Click on the Demo1 link above.

o Download the demo1.zip file.

o Unzip the demo1.zip file to get demo1.exe.

o Have a freshly formatted 3 1/2 inch HD diskette ready and execute demo1.exe.

o You will be prompted to place the freshly formatted diskette in your A: drive.

o The "original" demo1 diskette will be created and will be ready for examination.
About The Training Provider: ProTrain Online
ProTrain Online - In partnership with colleges and universities, ProTrain Online offers hundreds of non-credit online career certificate programs. Online Program Features - Most programs have 12-month online access - Mentors available live online 24X7 to provide support in a variety of courses - Hands-on exercises contained within courses - Tests and quizzes within courses - Receive a Certificate of...
Do you teach online learning ?
tcw11-gfc-v396M-10/26/09-21:25:10-()[B]-[B]-[B] -08:18:59