Click action from the main menu and click add to import the image of the evidence.Step – 3.Įxpand content view in the tree view on the left side to explore all the files present in the image. Enter project number and project name and click open. Hands-on Project 1.3 – Hands-on Project 1.4 – Extract the files from the image which has not been deleted.Step – 1. xls file was returned in Content search and 27 hits were received when the keyword ‘book’ was searched in clusters. Click on Cluster in the tree view to analyse the results returned.One. Open the search dialogue box again, click on the cluster search tab.Įnter the keyword in the search toolbar and select the image that needs to be searched.Step – 8. Explore the file returned in the search result to find possible evidence.Step – 7. In the tree view click Search Content View to view the search results.Step – 6. Select the image that needs to be searched and click OK.Step – 5. Click search in the tree view, type ‘book’ in the search toolbar. Expand content view in the tree view on the left side to explore all the files present in the image.Step – 4. Enter project number and project name and click open.Step – 2.Ĭlick action from the main menu and click add to import the image of the USB drive.Step – 3. Save the project and exit ProDiscover Basic.Hands-on Project 1.2 – Investigation of an USB drive of an ex-employee to find possible evidences of any sensitive information present on the drive. Export the file by right clicking on the file and click copy file.Exported file –Step – 6. Right click on the file and click view to open the file and find possible evidences. Step – 3.Įxpand content view in the tree view on the left side to explore all the files present in the image.Step – 4. Click action from the main menu and click add to import the image of the USB drive. Open ProDiscover Basic.Įnter project number and project name and click open.Step – 2.
Click install after accepting the license agreements and selecting the destination folder for installation of application.AccessData Registry Viewer –Hands-on Project 1.1 – Investigation of a USB drive to find probable evidences related with case involving a suspicious death.Step – 1.
exe file and follow the installation wizard. Browse to https:accessdataproduct-download and search for Registry Viewer.ĭownload the application.Step – 2. Click finish to complete the installation and launch the application.ProDiscover Basic – Lab – 1.4 Installing AccessData Registry Viewer.Step – 1. exe file to start the installation wizard.Step – 3.įollow the installation wizard, accept the license agreements and select the destination folder for installation of the application.Step – 4. Extract the 64-bit version of ProDiscover Basic.Step – 2. Click install after accepting the license agreements and the destination folder for installation of the application.FTK Imager – Lab – 1.ģ Installing ProDiscover Basic.Step – 1.
exe file and follow the installation wizard.Step – 3.
To import hashsets in the application, extract the hashsets to C:ProgramDataPassMarkOSForensicshashSets.Lab – 1.2 Installing FTK ImagerStep – 1 Browse to https:accessdataproduct-download and search for FTK Imager.ĭownload the application.Step – 2. Click Finish to complete the installation and launch the application.OSForensics Application –Step – 6.
* All Partners were chosen among 50+ writing services by our Customer Satisfaction Team