Computer Hacking Forensic Investigator
Collect and analyse digital evidence, and write a documented incident report.
- Modules13
- Lessons58
- InstructorLujain Abu Rabee
About this course
What you will learn:
• Handle an incident and its digital evidence from first response, keeping it intact.
• Analyse Windows, Linux, network, malware, email and mobile evidence.
• Work with real tools such as FTK Imager, Autopsy, Wireshark and Splunk.
Each lesson ends with a short quiz so you can check what you learned before moving on.
Preview lesson
Hash Value & VirusTotal - Safe Malware Identification
Course content
13 modules · 58 lessons
Computer Forensics Investigation Process9 lessons
Verify and protect digital evidence: hash values, forensic imaging, first response, and evidence examination tools.
- Hash Value & VirusTotal - Safe Malware IdentificationFree preview
- HashCalc & Hash Value Verification
- MD5 Calculator - Verifying Digital Evidence Copies
- Original Evidence Protection & Forensic Imaging
- First Response in Digital Forensic Investigation
- R-Drive Image - Creating a Forensic Image
- AccessData FTK Imager - Examining Digital Evidence Images
- EaseUS Data Recovery Wizard - Recovering Deleted Data
- File Viewer - Verifying File Formats and Extensions
Understanding Hard Disks and File Systems8 lessons
Understand disks, file systems, and the boot process, and recover and analyze data from forensic images.
- Autopsy - Analyzing Linux Forensic Images
- WinHex - Recovering Deleted Files from Forensic Images
- Creation Timeline & MAC Times Analysis
- Hex Editor - File Header Analysis
- Understanding the Booting Process
- RAID Storage Systems & Data Protection
- Sectors, Tracks, Clusters & Slack Space
- Booting Process - Cold Booting & Warm Booting
Data Acquisition and Duplication5 lessons
Convert, mount, and acquire disk images and memory on Windows and Linux.
- E01 to DD Conversion Using Xmount
- Linux Forensics - Loop Devices & Mounting Disk Images
- Linux Forensics - Creating and Using Loop Devices
- Memory Acquisition Using Belkasoft RAM Capture
- Linux Memory Acquisition Using fmem
Defeating Anti-forensics Techniques7 lessons
Recover passwords, partitions, and deleted files, and detect attempts to hide or destroy evidence.
- Document Password Recovery & Brute Force
- EaseUS Data Recovery Wizard - Recovering a Lost Partition
- Linux File Carving - TRIM Disabled
- Windows File Carving - TRIM Enabled
- Windows File Carving - TRIM Disabled
- Advanced PDF Password Recovery - Cracking PDF Passwords
- Defeating Anti-Forensics Techniques
Linux and Mac Forensics2 lessons
Investigate system activity on Linux and analyze Linux forensic images with Autopsy.
- Linux Forensics - Investigating System Activity and Digital Evidence
- Autopsy - Analyzing Linux Forensic Images and Digital Evidence
Windows Forensics9 lessons
Collect and analyze Windows evidence: event logs, the registry, browser artifacts, and forensic images.
- Windows Forensics - Volatile & Non-Volatile Evidence
- Windows Event Viewer - Analyzing System and Security Logs
- FTK Imager - Examining Digital Evidence Images
- Web Browser Artifacts - Analyzing Browser History, Cache & Cookies
- Private Browsing & Digital Forensics - Analyzing Hidden Browser Artifacts
- Event Log Explorer - Analyzing Windows Events
- Windows Registry & FTK Imager - Analyzing System Activity
- NTFS Image - Creating a Custom Forensic Image
- Browser Cache - Reconstructing Web Pages for Digital Forensics
Network Forensics4 lessons
Detect and investigate suspicious network activity with IDS, log viewers, Wireshark, and Splunk.
- Intrusion Detection Systems (IDS) - Detecting and Analyzing Suspicious Activity
- Kiwi Log Viewer - Analyzing Network Logs & Login Activity
- Wireshark - Network Traffic Analysis & Digital Forensics
- Splunk - Analyzing FTP Brute Force Attacks
Malware Forensics2 lessons
Analyze suspicious files safely with online malware analysis services.
- VirusTotal - Analyzing Suspicious Files Safely
- Hybrid Analysis - Analyzing Suspicious Files Safely
Investigating Web Attacks2 lessons
Understand web attacks and how web server logs reveal them.
- Web Attack Investigation - Analyzing Web Server Logs and Attack Patterns
- Web Server Log Analysis & Attack Detection
Dark Web Forensics3 lessons
Find traces of Tor Browser and dark web activity on a computer.
- Windows Prefetch - Tracking Program Execution with WinPrefetchView
- Tor Browser - Privacy, Anonymity & Digital Forensics
- Netstat & Bulk Extractor Viewer - Network Connections & Evidence Analysis
Cloud Forensics1 lessons
Understand the challenges of investigating data and evidence stored in the cloud.
- Cloud Forensics - Investigating Remote Data & Digital Evidence
E-mail Forensics4 lessons
Trace emails, read headers, verify addresses, and analyze phishing messages.
- WhatIsMyIPAddress - IP Address Investigation & Email Analysis
- Email Routing & Mail Servers - Understanding Email Headers
- Email Dossier - Email Verification & SMTP Analysis
- Phishing Email Analysis - Headers, HTML & Suspicious Indicators
Mobile Forensics2 lessons
Analyze evidence from mobile devices, including file analysis and timelines.
- Autopsy Mobile Forensics - File Analysis & Timeline Investigation
- Mobile Forensics - Analyzing Digital Evidence from Mobile Devices
Your instructor

Lujain Abu Rabee
Digital forensic investigator and certified cybercrime trainer
- CHFI
- CEI
Course details
- Level
- Intermediate
- Learning format
- Video lessons explained in Arabic, at your own pace, with a short quiz after every lesson.
- Prerequisites
- Basic computer and networking knowledge; familiarity with Windows and Linux is helpful.
- Estimated duration
- About 4 hours of video in 58 lessons, plus a short quiz after each lesson.
- Access duration
- Lifetime access from the date of purchase.
- Instructor
- Lujain Abu Rabee, Instructor.
- Learner support
- We answer your questions about your account, payment and content through the Contact us page.
- Refund terms
- Covered by the Academy's refund policy.
- Certificate
- A Musing Academy completion certificate you can verify online, after you watch every lesson and pass every quiz with 75% or more. The course helps you prepare for the CHFI topics, but does not include the official exam fee or the official certificate from EC-Council.
- Tax
- The price shown is the final amount, with no added tax.
- Payment methods
- Secure payment by credit or debit card.
Ready to start?
Buy the full course now, or try the free lesson first.