Hard Disk Image Forensics and Analysis with Autopsy | TryHackMe | Computer Forensics

Поділитися
Вставка
  • Опубліковано 12 вер 2024
  • In this video walkthrough, we covered Disk analysis and forensics using Autopsy. We extracted forensic artifacts about the operating system and uses.
    #forensics
    #autopsy
    *****
    Receive Cyber Security Field, Certifications Notes and Special Training Videos
    / @motasemhamdan
    ******
    Writeup
    motasem-notes....
    TryHackMe Disk Analysis & Autopsy
    tryhackme.com/...
    ****
    Patreon
    www.patreon.co...
    Instagram
    / dev.stuxnet
    Twitter
    / manmotasem
    Facebook
    / motasemhamdantty
    LinkedIn
    [1]: / motasem-hamdan-7673289b
    [2]: / motasem-eldad-ha-bb424...
    Website
    www.motasem-no...
    Backup channel
    / @themastermindclips
    My Movie channel:
    / @themastermindbooks
    ******

КОМЕНТАРІ • 16

  • @ian230187
    @ian230187 2 роки тому

    Hi Motasesm...for the last question...Recommend to add in the video google about MS-NRPC exploit which helps in finding the exploit name thereby easing the search...just an advice

  • @akashupadhyayawow
    @akashupadhyayawow 3 роки тому +1

    I really like ur content bro. Keep sharing 😇😇🤘🤘

  • @angeltazdevil
    @angeltazdevil 3 роки тому +5

    I don't know why, but when looking at SOFTWARE under Operating System Information, the Application tab is greyed out and I can't view the registry. What do I do?
    UPDATE: I just had to close and reopen Autopsy and it was working again.

    • @Watdenkjezelf070
      @Watdenkjezelf070 7 місяців тому

      i have the same problem. i keep closing and opening autopsy but is doesnt work

  • @rationalbushcraft
    @rationalbushcraft 2 роки тому +1

    Well the wallpaper question really pissed me off. Like you I found the wallpaper but the machine does not have any image viewer and for some reason paint would not view the image even after extracting it to the desktop. There was no excuse for such an easy question to have such a hard way to access the info.

  • @engr.omermasood7669
    @engr.omermasood7669 2 роки тому

    Good work

  • @assassino689
    @assassino689 2 роки тому

    great ! thanks!

  • @ahmedmoaz1501
    @ahmedmoaz1501 Рік тому

    thx bro keep going

  • @leblanc666666
    @leblanc666666 2 роки тому

    under operating system information, application tab was grayed out. Also how could you even see the pictures? I how blank pictures for every single one there is on this disk, there has to be some setting you didn't show, as I am not getting the same results as you are. Heck I wouldn't be here if it had worked as seamlessly on my end than yours

  • @0xp4ul
    @0xp4ul 3 роки тому

    😘great sir

  • @ian230187
    @ian230187 3 роки тому

    While loading the disk image file as a new data source, do we need to select the ingest modules?

    • @ian230187
      @ian230187 3 роки тому

      For some reason all the fields are not getting populated in the extracted content...am i missing something here

  • @shreyatalukdar8209
    @shreyatalukdar8209 2 роки тому

    Hello sir. I have a problem.The image file of the desktop wallpaper of Joshwa is not opening.Actually any of the image files are not opening. Whenever I am exporting the image file, it shows 0 kb. Please help

  • @logosparanoiasofficial3449
    @logosparanoiasofficial3449 2 роки тому

    Where can i find the image to download it like u did?

  • @idlanhelmy6836
    @idlanhelmy6836 Рік тому

    is this dead analysis or live analysis??