Now that we've created our case, added host information with appropriate directories, and added our acquired image, we get to the analysis stage.
After clicking on the ANALYZE button (see the previous screenshot), we're presented with several options in the form of tabs, with which to begin our investigation:
Let's look at the details of the image by clicking on the IMAGE DETAILS tab. In the following snippet, we can see the Volume Serial Number and the operating system (Version) listed as Windows XP:
Next, we click on ...