This 4 1/2 day
course serves as an overview of the most used features of ILook Investigator. It
includes the IXImager to create a duplicate image of the hard disk and the
examination of several hard drive partitions. The multiple aspects of this
GUI-based forensic suite are presented with emphasis on imaging and processing
of seized media. The student will walk through a case from previewing to the
final reports and will be able to effectively conduct salvage, file signature
analysis, registry analysis, hash analysis, deconstruction, keyword searches and
more, on seized evidence. It does not teach basic forensics, but rather how to
use the tool to perform forensic examinations. Many of the built in automated
short cuts will be presented, which will assist in better case preparation and
analysis. It is expected that the students already know forensic processing
issues. This course suggests the applicant to have previous training in Cybercop
101 (BDRA) or the equivalent.
NW3C developed a short video overview of ILooKIX. Learn more about the key capabilities of the software and how to utilize it in your investigations.
NW3C is presenting a webinar series that demonstrates the different capabilities of the ILooKIX software. Recordings of the webinars will be provided here as they become available.