legal
contact
Welcome to ID10T's Cyber world
Cybernews
Password's
Access
Incident response
OSINT Information gathering
My trainings I gave
Self study
Cyber Threat Intelligence
Attack
Defense
Splunk
Malware analysis
Forensic
Mobile phones
Windows machine
Motivation
1st responder actions
Tools
$MFT related
Background Information
Memory
Harddisks
SIFT - Memory Analysis
Xplico action
Windows artefacts
Linux machine
PDF
Tools'n links
MS Word docx
using Autopsy
Bitscout - The Free Remote Digital Forensics Tool Builder
MISP
Equation
ID10T's Security
Security made simple and ID10T proof
You are here:
Welcome to ID10T's Cyber world
/
Forensic
/
Windows machine
/
$MFT related
/
Background Information
Background Information
Recomendet reading:
Microsoft:
How NTFS Works
Greyscale Reasearch:
NTFS forensics