[Foundational] Belkasoft Essentials

Level: Foundational
CPE Credits: 0
Duration: 2 days, 8am-4pm
Prerequisites: None

There are currently no sessions scheduled for this program.
Please contact us at info@e-forensic.ca to be put on a waiting list.

Training Overview

Belkasoft Essentials is intended for investigators of any level of expertise who want to acquire hands-on skills in computer, mobile and cloud investigation and enrich their toolkit with Belkasoft Evidence Center, all-in-one forensic solution.

It is a basic-level course which covers fundamental principles every digital forensic investigator should know. By the successful completion of the course, each participant gets strong skills in Belkasoft Evidence Center, and also deepens their knowledge about techniques behind it and methodology of digital forensic analysis.

In particular the participants will learn how to configure Belkasoft Evidence Center and start the investigation, acquire data from hard drives, smartphones and cloud, add other data sources, analyze most relevant artifacts (including internet evidence, media, registry data etc.) and overcome difficulties working with these types of artifacts. Various analysis options will be considered: extraction of artifacts from existing files, carving, live RAM analysis, hibernation and pagefile analysis.

Every module is accompanied by a set of practical exercises and all related questions will be answered during the training session.

Course Details

  • Language: English
  • Duration: 2 Days
  • Delivery: On-site


  • Introducing Belkasoft and Belkasoft Evidence Center
  • First steps with Evidence Center, user interface
  • Data acquisition and main workflow
  • Working with computer artifacts
  • Working with mobile and cloud artifacts
  • Search and filtering techniques
  • Creating reports
  • Overview of low-level analysis techniques
  • Exercises review and wrap-up