Note :- These notes are according to the R09 Syllabus book of JNTU.In R13 and R15,8-units of R09 syllabus are combined into 5-units in R13 and R15 syllabus.


Computer Forensics Fundamentals: What is Computer Forensics?. Use of Computer Forensics in Law Enforcement, Computer Forensics Assistance to Human Resources/Employment Proceedings. Computer Forensics Services, Benefits of Professional Forensics Methodology, Steps taken by Computer Forensics Specialists ‘Types of Computer Forensics Technology: Types of Military Computer Forensic ‘Technology, Types of Law Enforcement — Computer Forensic Technology – Types of Business Computer Forensic Technology


Computer Forensics Evidence and Capture: Data Recovery Defined – Data Back-up and Recovery – The Role of Back-up in Data Recovery – The Data- Reoovery Solution Evidence Collection and Data Seizure: Why Collect Evidence? Collection Options – Obstacles – Types of Evidence – The Rules of Evidence — Volatile Evidence – General Procedure — Collection and Archiving – Methods of Collection – Artifacts – Collection Steps – Controlling Contamination: The Chain of Custody


Duplication and Preservation of Digital Evidence: Preserving the Digital Crime Scene – Computer Evidence Processing Steps — Legal Aspects of Collecting and Preserving Computer Forensic Evidence Computer Image Verification and Authentication: Special Needs of Evidential Authentication – Practical Consideration – Practical Implementation


Computer Forensics analysis and validation: Determining what data to collect and analyze, validating forensic data. addressing data-hiding techniques, performing remote acquisitions Network Forensics: Network forensics overview. performing live acquisitions, developing standard procedures for network forensics, unsing network tools. examining the honeynet project.


Processing Crime and Incident Scenes: Identifying digital evidence. collecting evidence in private-sector incident scens. processing law enforcement crime scenes. preparing for a search. securing a computer incident or crime scene. seizing digital evidence at the scene. storing digital evidence. obtaing a digital hash. reviewing a case


Current Computer Forensic tools: evaluating computer forensic tool needs. computer forensics software tools. computer forensics hardware tools. validating and testing forensics software


E-Mail Investigations: Exploring the role of e-mail in investigation, exploring the roles of the client and server in e-mail. investigating e~mail crimes and violations. understanding e-mail servers. using specialized e-mail forensic tools Cell phone and mobile device forensics: Understanding mobile device forensics. understanding acquisition procedures for cell phones and mobile devices. ‘


Working with Windows and DOS Systems: understanding file systems. exploring Microsoft File Structures, Examinig NTFS disks. Understanding whole disk encryption, windows registry. Microsoft stanup tasks. MS—DOS startup tasks. virtual machines.

