This presentation will explore all the newest methods for virtualized environments and the implications they have on the world of forensics. It will begin by describing and differentiating between software and hardware virtualization. It will then move on to explain the various methods used for server and desktop virtualization. Next, it will describe the fundamentals of a traditional forensic investigation and explain why artifacts are difficult to find using traditional processes. Finally, it will describe some common methods to find virtualization artifacts and identify virtual activities.
Jesse Lindmar, Assistant Director of Computer Forensics for Sensei Enterprises, Inc. answers the frequently asked question, Can you determine whether spyware is installed on a computer? Simplistic spyware is easy to detect, but Sensei can find more complex software and often trace its intrusion back to its source. To learn more, watch the video then call Sensei at 703-359-0700.