Registry Analysis Workshop

Course detail

Program area: Technological crime

Course code: RAW

Course registration details
Session(s) Location Start date End date
- - - -


  • Accommodations are offered to course participants. Our rooms are subject to availability and the request must be indicated on the course registration form
  • Meal plans are offered to course participants. The specific meal plan must be indicated on the course registration form
  • Travel grant funding is available to our non-federal law enforcement agencies


Forensic investigation often requires understanding whether a particular computer system has been used to commit an offence. This workshop provides students with the necessary skills to forensically analyse registry database files within the Microsoft Windows operating system. Students use hands-on exercises to interpret registry key values – whether they are deliberate actions of a computer user or form part of automated computer processes. This workshop is open to full-time computer forensic personnel with basic computer forensic training and work experience in the extraction and interpretation of digital evidence.

Format and delivery

Length of course
4 days
Class size
maximum 20 students
Delivery setting
computer classroom

Learning outcomes

Eligibility and mandatory requirements



For more details or other information about the course, please email

Date modified: