1 - Windows Forensics.pdf

The slides cover an introduction to Windows Forensics with a focus on Windows File Systems. Here’s a compact summary:

  1. Computer and Forensics Overview:
  2. Boot Process:
  3. Windows File Systems:
  4. NTFS (New Technology File System):
  5. Forensic Artefacts:
  6. File Deletion in NTFS:
  7. Microsoft’s ReFS:

This overview provides foundational knowledge in forensic analysis of Windows file systems, with practical applications in identifying and recovering digital evidence from NTFS structures.