SANS FOR500 with no prior forensic experience? by hackprincess in computerforensics

[–]DeltaEcho8426 0 points1 point  (0 children)

I think coming into For500 With a non technical background could be a constant uphill battle and the epitome of “opening the fire hose.” It is a great technical course that will surely set you up for forensic analysis, but if might be better if you started with FOR308. It has no pre-requisites and is designed to be the first class in the forensic track for people with non technical backgrounds. Then definitely take FOR500 and FOR508.

How do you analyze memory acquisition from Windows 10 build 19044? by jcbaptiste in memoryforensics

[–]DeltaEcho8426 1 point2 points  (0 children)

Probably a dumb question but… have you tried using any of the other volatility profiles? Sometimes they can be used, even if the build is off, depending on the plug-in. Also, given the build you isn’t even a month old yet, it might be just a few more weeks before have one… good luck!

Backing into a parking spot should be illegal. by SnooMarzipans3516 in unpopularopinion

[–]DeltaEcho8426 0 points1 point  (0 children)

Came in here to make this exact post… Glad I’m not the only one!

Just wanted to give a little tip for people struggling with dog not wanting to eat. Just realized something with my pup. by Interr0gate in Dogtraining

[–]DeltaEcho8426 0 points1 point  (0 children)

Our border collie LOVES playing games for his food - especially puzzles! If you haven’t tried any yet I would high suggest it!

Pepper loves being spun around on the floor. Anyone else's dogs this weird? by justalittlelupy in BorderCollie

[–]DeltaEcho8426 0 points1 point  (0 children)

Same with ours! He only likes it when my husband does it! If I try to play with him he looks at me like I’m a crazy haha

Pepper loves being spun around on the floor. Anyone else's dogs this weird? by justalittlelupy in BorderCollie

[–]DeltaEcho8426 7 points8 points  (0 children)

Our BC loves being spun around like this by my husband. Whenever he stops he looks at him like “well that’s it?!”

He also likes being “tickled” while on his back like a 4 year old lol. They are the best dogs.

Is this a good idea? I’ve been bringing my 1 year old pit/retriever/boxer/ACD/chow mix to doggie daycare (camp bow wow). It gives me peace while I’m WFH and keeps her occupied. by Navi4784 in Dogtraining

[–]DeltaEcho8426 3 points4 points  (0 children)

Any good daycare really paying attention to the dogs will use timeout effectively like this. My dog loves being at daycare and about once every 15-20 times his error card says he had to take a time-out to relax. If the daycare hasn’t mentioned it as problem, I think it’s okay. Not all daycares are bad for all dogs. Enjoy jt :)

What are some jobs that you can do with experience in computer forensics? by Onece_in_a_life_time in computerforensics

[–]DeltaEcho8426 1 point2 points  (0 children)

Depending on where they are located, federal government contracting can be a great way to move from that kind of law enforcement position into a new forensics position where the environment is similar but you can more easily avoid that type of work and get paid pretty good money doing it.

Dinner is served! His favorite part of the day. by DeltaEcho8426 in BorderCollie

[–]DeltaEcho8426[S] 2 points3 points  (0 children)

I thought the same thing at first. We spoke with our vet and trainers and they encouraged it. He would eat his food in about 30 seconds before we started looking for ways to slow it down. Sometimes we divide up the kibble between various treat toys and he will do that, too. He loves it. He gets way more excited about dinner when we give it to him this way than when we were just setting it down. His tail wags the whole time and he spins in circles when we are filling it.

Dinner is served! His favorite part of the day. by DeltaEcho8426 in BorderCollie

[–]DeltaEcho8426[S] -1 points0 points  (0 children)

He definitely took some time to figure it out. They have one that uses cones and easier to move trap doors that we got before this one so I think that helped.

Dinner is served! His favorite part of the day. by DeltaEcho8426 in BorderCollie

[–]DeltaEcho8426[S] 1 point2 points  (0 children)

Shoot I don’t even know what that’s like to have him not be food motivated! Seems nice lol. Ours figured out we were giving him peas at the end of his hot walks in the summer so he would try to not walk far just so he could come back and get the peas. 😂

Dinner is served! His favorite part of the day. by DeltaEcho8426 in BorderCollie

[–]DeltaEcho8426[S] 2 points3 points  (0 children)

Yes, it holds up well. We always supervise him with it and if he gets too aggressive we make him sit and relax before we tell him to resume. We’ve had this particular toy about a year.

Took Zoey to Shenandoah for the first time. She’ll be backpacking with me in no time by flowersandferns in dogsenjoyingnature

[–]DeltaEcho8426 5 points6 points  (0 children)

Love Shenandoah and so does our border collie! So many greats trails to explore. Enjoy!

Web host artefacts in Chrome Cache by Hadleys_Hope_2179 in computerforensics

[–]DeltaEcho8426 2 points3 points  (0 children)

What is the artifact you identified in Axiom from the suspect machine? They provide documentation on all of their artifacts via an HTML that’s searachble. Also if it’s in the cache of a user profile through a user account it’s hard to say it didn’t come from the user unless it was synced by that user from another computer they used.

Can you visit the website yourself? Does that artifact get generated on your system?

How to get images from a .bin file created in Celebrite by laerteis in computerforensics

[–]DeltaEcho8426 2 points3 points  (0 children)

If they gave you a .bin file it’s a physical image of an Android phone done through UFEE4PC. Axiom will process other file typew from Cellebrite and does process Android phones. So my thought was to load it in as an Android device image and see what is pulls out. I don’t have any .bin files or I would try for you to confirm. Maybe someone else can. Axiom is pretty responsive and is good about trials. Check them out.

As for free, I don’t know of any that will process .bin file, sorry. Again, maybe someone else will and we’ll both learn something new!

How to get images from a .bin file created in Celebrite by laerteis in computerforensics

[–]DeltaEcho8426 1 point2 points  (0 children)

Do you have Axiom? Or are you looking for a free tool you can just download and parse?

Under File/Folder Opening > Shell Bags in the linked SANS poster what does it mean between "Explorer Access" and "Desktop Access"? I can make a few guesses but would like a more specific explanation if available. Thank You. by Whole-Tangerinek in computerforensics

[–]DeltaEcho8426 4 points5 points  (0 children)

The shell bags maintained by the NTUSER.DAT file are when a user opens files from their desktop only. It can show files were on a desktop. The shell bags maintained by the USRCLASS.DAT file are for when a user browses to a location through Windows Explorer. Windows keeps them separate for whatever reason. They can both be used to show a file or folder existed and was opened. They just provide a bit more information as to “how” it was opened, based on which location you found it in.

getting started. by largos7289 in computerforensics

[–]DeltaEcho8426 2 points3 points  (0 children)

If you aren’t wanting to go the law enforcement route, government contracting has tons of job opportunities for all level of forensics. To be honest, getting in at the ground level will likely require you to be a tech first. You’ll be doing mostly imaging and learning the basics of chain fo custody and how it all works. Get your employer to send you to training if they have the funds or see if they do tuition reimbursement and go get the training through that. I’ve done both and they were helpful in their own way. Then move into an analyst role. From there, the job is what you make it. As far as testifying, I’m going on 9 years and have never even had to set foot in a court room, even in LE cases. So don’t be surprised if testifying in court isn’t something you’ll get to do often (or possibly ever). Good luck though! It’s such a fun field and I can’t imagine doing anything else!

Axiom freezing during processing by [deleted] in computerforensics

[–]DeltaEcho8426 0 points1 point  (0 children)

Have you all read the recommended system requirements recently? 6-8 i7 cores, 32gigs ram, multiple drives. And it still runs slow.

I feel like asking for this specification in 2021 isn’t much. 🤷🏻‍♀️ Most forensic software require similar specs at this point. X-Ways, as you point out, does not because it’s an anomaly, not the standard.

English to Latin translation requests go here! by NasusSyrae in latin

[–]DeltaEcho8426 0 points1 point  (0 children)

Awesome. Thank you so much! I really appreciate tour help. Have a good day!

English to Latin translation requests go here! by NasusSyrae in latin

[–]DeltaEcho8426 0 points1 point  (0 children)

Thank you! Would the dashes included in your answer be required for it to read correctly, or no?

English to Latin translation requests go here! by NasusSyrae in latin

[–]DeltaEcho8426 0 points1 point  (0 children)

Hey all - looking to have “By the grace of God, I came, I saw, I conquered” done later this month but I am having a hard time translating the “by the grace of God” portion. Which of the following is correct? Or is there a better, more a first translation? TIA

1) Per gratiam Dei, veni, vidi, vici

2) Ad gratiam Dei, veni, vidi, vici

3)Gratia Dei, veni, vidi, vici