Windows Forensics 101: Incident Response and Digital Forensics Fundamentals
Master the basics of digital forensics on Windows systems by analyzing key artifacts, registry hives, and event logs through clear, text-based guides.
-
💬
ผู้สอน AI
ถามเกี่ยวกับบทเรียนใดก็ได้ แล้วรับคำตอบที่ชัดเจนทันที ทุกเมื่อ -
🕐
เริ่มเมื่อไรก็ได้
ไม่มีตารางหรือเดดไลน์ — เรียนตามจังหวะของคุณ เมื่อไรก็ได้ -
🌐
เป็นภาษาไทย
บทเรียน แบบฝึกหัด และใบรับรอง — ทั้งหมดเป็นภาษาของคุณอย่างครบถ้วน
เกี่ยวกับคอร์สนี้
When a security breach occurs, Windows systems are often at the center of the investigation. Understanding how to locate, extract, and analyze digital evidence is a critical skill for any aspiring cybersecurity professional. This course guides you through the foundational concepts of digital forensics and incident response (DFIR) on Windows platforms. You will transition from a beginner to a capable operator who can confidently identify suspicious activity, reconstruct user actions, and track malware execution paths.
What you'll learn:
- Understand foundational DFIR concepts, terminology, and the digital evidence lifecycle.
- Analyze Windows Registry hives to uncover system configurations and historical user activity.
- Investigate Windows Event Logs to track authentication attempts, service creations, and lateral movement.
- Examine modern execution artifacts, including Prefetch files, Shimcache, and Amcache.
- Identify suspicious PowerShell activity using advanced logging and command-line analysis.
- Explore memory forensics basics and live response triage techniques on modern Windows systems.
The course begins with core forensic principles and data preservation rules before walking you through step-by-step written analyses of critical system artifacts and log files. You will practice through structured, text-based scenarios that simulate real-world incident response investigations. Designed for beginner cybersecurity analysts, system administrators, and aspiring forensic examiners, this course requires no prior DFIR experience. Start reading today to build your foundational Windows forensics skillset and take the next step in your security career.
สิ่งที่คุณจะได้รับ
-
📜
ใบประกาศนียบัตร
เพิ่มในโปรไฟล์ LinkedIn ของคุณ -
💬
ติวเตอร์ AI ส่วนตัว
ติดขัดในบทเรียน? ถามติวเตอร์ในตัวของคุณได้ทุกอย่าง ทุกเวลา -
🎧
รวมเวอร์ชันเสียง
เรียนได้ทุกที่ ไม่ต้องดูจอ -
♾️
เข้าถึงตลอดชีพ
กลับมาเรียนได้ตลอด ไม่มีหมดอายุ -
📱
โทรศัพท์หรือคอมพิวเตอร์
ใช้งานได้ทุกที่ ทุกอุปกรณ์ -
💸
คืนเงิน 14 วัน
ไม่ต้องอธิบาย -
⚡
กระชับและตรงประเด็น
2 ชม. 54 นาที เนื้อหาเชิงปฏิบัติ
รีวิว
ยังไม่มีรีวิว — เป็นคนแรกที่แชร์ประสบการณ์
ผู้เรียนคนอื่นเรียน
🔥 ยอดนิยม
🎓 มีใบรับรอง
คู่มือภาคปฏิบัติเพื่อการปฏิบัติตาม MLPS 2.0
ใบรับรอง
ลงมือทำ
฿1,800
→
🔥 ยอดนิยม
🎓 มีใบรับรอง
พื้นฐานวิศวกรรมความปลอดภัยทางไซเบอร์เพื่อการรับรอง
ใบรับรอง
ลงมือทำ
฿1,800
→
💼 พร้อมสำหรับงาน
🎓 มีใบรับรอง
การจัดการและธรรมาภิบาลความมั่นคงปลอดภัยทางไซเบอร์เชิงปฏิบัติ
ใบรับรอง
ลงมือทำ
฿1,800
→
🔥 ยอดนิยม
🎓 มีใบรับรอง
การทดสอบเจาะระบบเว็บสำหรับผู้เริ่มต้น: SQL Injection และการค้นหาช่องโหว่
ใบรับรอง
ลงมือทำ
฿1,800
→
คำถามที่พบบ่อย
ฉันต้องใช้อะไรในการเรียนคอร์สนี้? +
แค่โทรศัพท์หรือคอมพิวเตอร์ที่มีอินเทอร์เน็ต ไม่ต้องติดตั้งหรือใช้อุปกรณ์พิเศษ
ฉันชำระเงินอย่างไร? +
ผ่านบัตรด้วย Stripe เราไม่เก็บข้อมูลบัตร — Stripe จัดการอย่างปลอดภัย
ฉันขอคืนเงินได้ไหม? +
ใช่ — คืนเงินเต็มจำนวนใน 14 วัน ไม่ต้องอธิบาย
ฉันมีสิทธิ์เข้าถึงนานเท่าไร? +
ตลอดไป เมื่อซื้อแล้วคอร์สเป็นของคุณ กลับมาเรียนได้ตลอด
ฉันจะได้ใบประกาศนียบัตรไหม? +
ได้ เมื่อเรียนจบจะได้รับใบประกาศนียบัตรที่เพิ่มในโปรไฟล์ LinkedIn ได้
ออกแบบสำหรับผู้เรียนใน
เทคโนโลยี
ดีไซน์
การเงิน
การตลาด
สาธารณสุข
การศึกษา
ธุรกิจการบริการ
อุตสาหกรรม
×2
เติมครั้งเดียว จ่ายครึ่งเดียว
เพิ่ม ฿3,600 → รับเครดิต 200 เครดิต ทำให้แต่ละหลักสูตรมีราคาประมาณ ฿450.00 เครดิตไม่มีวันหมดอายุ
฿3,600
200 เครดิต
฿450.00 / คอร์ส
คุ้มที่สุด
฿9,000
550 เครดิต
฿409.09 / คอร์ส
฿18,000
1200 เครดิต
฿375.00 / คอร์ส
เครดิตใช้ได้กับทุกคอร์สและไม่หมดอายุ