Product Features

Magnet AXIOM Advanced Computer Forensics (AX250) Now Open!

We’re proud to introduce a new course for people who are looking to expand the capabilities of their computer forensics investigations: Magnet AXIOM Advanced Computer Forensics (AX250).

This is an expert-level four-day training course. It is designed for participants who are somewhat familiar with the principles of digital forensics and are seeking to expand their knowledge base on advanced forensics and leverage Magnet AXIOM, Magnet RAM Capture, and third-party tools to improve their computer investigations.

In-person classes begin on April 3 with online courses coming soon. Find a class and register here.

AX250 Provides an In-Depth Look at Computer Forensics

Magnet AXIOM Advanced Computer Forensics (AX250) will give participants the knowledge and skills they need to track computer access and file usage, utilizing Magnet AXIOM to explore the evidence in greater depth by learning about the newest sign-on technologies — such as pin password, Windows Hello, picture password, fingerprint recognition, and facial recognition.

In this course, a deeper understanding of investigating Windows computers will be provided by searching through artifacts like Windows Notification, Windows System Resource Utilization, Windows Error Reporting (WER) Logs, Event Logs (EVT), Event Tracing Logs (ETL), as well as a breakdown of the taskbar and whether an artifact was system pinned or user pinned to it.

Also, there will be time spent investigating EMDMgmt to dig deep into tracking drives attached to the Windows OS that may leave traces nowhere else. AppCompatFlags and AMCACHE will also be investigated to determine executable files which were previously executed on the system, but no longer exist.

Tracking file and folder location on profiles based on information recovered from Shellbags. Maximizing the data from Prefetch files, Jumplists, and Recent Docs to correlate the data recovered from the previously discovered artifacts. This course also takes a look at collecting RAM images and parsing those images for actionable intelligence in support of the investigation. Participants of this course will be utilizing Passware and the AXIOM Wordlist Generator to crack iTunes backups and Windows passwords from information in the image of the suspect hard disk drive including the most up to date versions of that software. Finally, participants of this course will investigate Google Drive, Modern Apps (Windows Store Apps), UsnJrnl and an in-depth look at File history and the extensible Database files tracking it.

Purchase a Training Annual Pass to Take AX250 and Much More

With the purchase of a Magnet Training Annual Pass (TAP), you can take any number of training courses within 12 months for a one-time fee of $5,995 USD. Which is less than the cost of two courses! Contact us at to purchase a TAP and start training today.

Subscribe today to hear directly from Magnet Forensics on the latest product updates, industry trends, and company news.

Start modernizing your digital investigations today.