Online courseForensicsIntermediate

Computer Hacking Forensic Investigator

Collect and analyse digital evidence, and write a documented incident report.

  • Modules13
  • Lessons58
  • InstructorLujain Abu Rabee
Watch the free lesson

About this course

A hands-on digital forensics course built on real tools such as FTK Imager, Autopsy, WinHex, Wireshark, and Splunk. Across 13 modules you follow an investigation from first response and evidence handling to analyzing Windows, Linux, network, malware, web, dark web, cloud, email, and mobile evidence.

What you will learn:
• Handle an incident and its digital evidence from first response, keeping it intact.
• Analyse Windows, Linux, network, malware, email and mobile evidence.
• Work with real tools such as FTK Imager, Autopsy, Wireshark and Splunk.

Each lesson ends with a short quiz so you can check what you learned before moving on.

Preview lesson

Hash Value & VirusTotal - Safe Malware Identification

Course content

13 modules · 58 lessons

Computer Forensics Investigation Process9 lessons

Verify and protect digital evidence: hash values, forensic imaging, first response, and evidence examination tools.

  1. Hash Value & VirusTotal - Safe Malware IdentificationFree preview
  2. HashCalc & Hash Value Verification
  3. MD5 Calculator - Verifying Digital Evidence Copies
  4. Original Evidence Protection & Forensic Imaging
  5. First Response in Digital Forensic Investigation
  6. R-Drive Image - Creating a Forensic Image
  7. AccessData FTK Imager - Examining Digital Evidence Images
  8. EaseUS Data Recovery Wizard - Recovering Deleted Data
  9. File Viewer - Verifying File Formats and Extensions
Or buy this module on its ownUSD 15Buy this module
Understanding Hard Disks and File Systems8 lessons

Understand disks, file systems, and the boot process, and recover and analyze data from forensic images.

  1. Autopsy - Analyzing Linux Forensic Images
  2. WinHex - Recovering Deleted Files from Forensic Images
  3. Creation Timeline & MAC Times Analysis
  4. Hex Editor - File Header Analysis
  5. Understanding the Booting Process
  6. RAID Storage Systems & Data Protection
  7. Sectors, Tracks, Clusters & Slack Space
  8. Booting Process - Cold Booting & Warm Booting
Or buy this module on its ownUSD 15Buy this module
Data Acquisition and Duplication5 lessons

Convert, mount, and acquire disk images and memory on Windows and Linux.

  1. E01 to DD Conversion Using Xmount
  2. Linux Forensics - Loop Devices & Mounting Disk Images
  3. Linux Forensics - Creating and Using Loop Devices
  4. Memory Acquisition Using Belkasoft RAM Capture
  5. Linux Memory Acquisition Using fmem
Or buy this module on its ownUSD 8Buy this module
Defeating Anti-forensics Techniques7 lessons

Recover passwords, partitions, and deleted files, and detect attempts to hide or destroy evidence.

  1. Document Password Recovery & Brute Force
  2. EaseUS Data Recovery Wizard - Recovering a Lost Partition
  3. Linux File Carving - TRIM Disabled
  4. Windows File Carving - TRIM Enabled
  5. Windows File Carving - TRIM Disabled
  6. Advanced PDF Password Recovery - Cracking PDF Passwords
  7. Defeating Anti-Forensics Techniques
Or buy this module on its ownUSD 15Buy this module
Linux and Mac Forensics2 lessons

Investigate system activity on Linux and analyze Linux forensic images with Autopsy.

  1. Linux Forensics - Investigating System Activity and Digital Evidence
  2. Autopsy - Analyzing Linux Forensic Images and Digital Evidence
Or buy this module on its ownUSD 5Buy this module
Windows Forensics9 lessons

Collect and analyze Windows evidence: event logs, the registry, browser artifacts, and forensic images.

  1. Windows Forensics - Volatile & Non-Volatile Evidence
  2. Windows Event Viewer - Analyzing System and Security Logs
  3. FTK Imager - Examining Digital Evidence Images
  4. Web Browser Artifacts - Analyzing Browser History, Cache & Cookies
  5. Private Browsing & Digital Forensics - Analyzing Hidden Browser Artifacts
  6. Event Log Explorer - Analyzing Windows Events
  7. Windows Registry & FTK Imager - Analyzing System Activity
  8. NTFS Image - Creating a Custom Forensic Image
  9. Browser Cache - Reconstructing Web Pages for Digital Forensics
Or buy this module on its ownUSD 15Buy this module
Network Forensics4 lessons

Detect and investigate suspicious network activity with IDS, log viewers, Wireshark, and Splunk.

  1. Intrusion Detection Systems (IDS) - Detecting and Analyzing Suspicious Activity
  2. Kiwi Log Viewer - Analyzing Network Logs & Login Activity
  3. Wireshark - Network Traffic Analysis & Digital Forensics
  4. Splunk - Analyzing FTP Brute Force Attacks
Or buy this module on its ownUSD 8Buy this module
Malware Forensics2 lessons

Analyze suspicious files safely with online malware analysis services.

  1. VirusTotal - Analyzing Suspicious Files Safely
  2. Hybrid Analysis - Analyzing Suspicious Files Safely
Or buy this module on its ownUSD 5Buy this module
Investigating Web Attacks2 lessons

Understand web attacks and how web server logs reveal them.

  1. Web Attack Investigation - Analyzing Web Server Logs and Attack Patterns
  2. Web Server Log Analysis & Attack Detection
Or buy this module on its ownUSD 5Buy this module
Dark Web Forensics3 lessons

Find traces of Tor Browser and dark web activity on a computer.

  1. Windows Prefetch - Tracking Program Execution with WinPrefetchView
  2. Tor Browser - Privacy, Anonymity & Digital Forensics
  3. Netstat & Bulk Extractor Viewer - Network Connections & Evidence Analysis
Or buy this module on its ownUSD 8Buy this module
Cloud Forensics1 lessons

Understand the challenges of investigating data and evidence stored in the cloud.

  1. Cloud Forensics - Investigating Remote Data & Digital Evidence
Or buy this module on its ownUSD 5Buy this module
E-mail Forensics4 lessons

Trace emails, read headers, verify addresses, and analyze phishing messages.

  1. WhatIsMyIPAddress - IP Address Investigation & Email Analysis
  2. Email Routing & Mail Servers - Understanding Email Headers
  3. Email Dossier - Email Verification & SMTP Analysis
  4. Phishing Email Analysis - Headers, HTML & Suspicious Indicators
Or buy this module on its ownUSD 8Buy this module
Mobile Forensics2 lessons

Analyze evidence from mobile devices, including file analysis and timelines.

  1. Autopsy Mobile Forensics - File Analysis & Timeline Investigation
  2. Mobile Forensics - Analyzing Digital Evidence from Mobile Devices
Or buy this module on its ownUSD 5Buy this module

Your instructor

Lujain Abu Rabee

Digital forensic investigator and certified cybercrime trainer

  • CHFI
  • CEI
A digital forensic investigator and internationally certified cybercrime trainer with a legal background, holding EC‑Council's CHFI and CEI. She specialises in training lawyers and building their technical readiness, bridging the gap between the law and fast‑moving technology, with a focus on investigations, digital evidence and cybercrime.

Course details

Level
Intermediate
Learning format
Video lessons explained in Arabic, at your own pace, with a short quiz after every lesson.
Prerequisites
Basic computer and networking knowledge; familiarity with Windows and Linux is helpful.
Estimated duration
About 4 hours of video in 58 lessons, plus a short quiz after each lesson.
Access duration
Lifetime access from the date of purchase.
Instructor
Lujain Abu Rabee, Instructor.
Learner support
We answer your questions about your account, payment and content through the Contact us page.
Refund terms
Covered by the Academy's refund policy.
Certificate
A Musing Academy completion certificate you can verify online, after you watch every lesson and pass every quiz with 75% or more. The course helps you prepare for the CHFI topics, but does not include the official exam fee or the official certificate from EC-Council.
Tax
The price shown is the final amount, with no added tax.
Payment methods
Secure payment by credit or debit card.

Ready to start?

Buy the full course now, or try the free lesson first.

USD 100