Back to Basics with Windows Prefetch

This week it’s a refresher on the Windows Prefetch, a core Microsoft artifact every examiner should know.

Show Notes

No show notes

SDF Training Class of the Week

Learn More

Shimcache Forensics

Discover evidence of past & present executables on Windows
Learn More

DFSP Sponsors make the Podcast possible. Show them your love and support!

Makers of Insight Forensic  an all-in-one forensic data recovery and acquisition system

The developer of RECON – the fastest and most complete way to process Live running Macs or Mac forensic images