Urgent Cyber Forensics Investigation

Job ID: 39770214

Budget: $250 – $750 USD

Unusual activity has surfaced across both my Windows computers and mobile device: I installed Fing and several times it has blocked remote-in attempts, a printer that suddenly disabled itself, strange log-ins, and spikes in network traffic that I cannot attribute to any recent software changes—I have installed nothing new. My administrator rights now appear restricted.

I need a seasoned digital-forensics professional who can move quickly and discreetly.

Scope of work
• Pull and analyse all available Windows event logs, router logs, and Fing captures to trace the breach path.
• Inspect network traffic (Wireshark, Zeek, or similar) to pinpoint suspicious IPs, remote-desktop handshakes, and any lateral movement between endpoints and mobile devices.
• Verify account integrity, recover locked admin privileges, and harden every affected endpoint.
• Deliver a clear remediation plan and an evidence package that will stand up to legal or regulatory scrutiny.

Acceptance criteria
1. Written timeline of the intrusion plus identified compromised accounts or services.
2. Clean, organised forensic artefacts (PCAPs, log extracts, hash values) with chain-of-custody notes.
3. Step-by-step hardening checklist implemented or ready to implement.
4. Final debrief call to walk through findings and next steps.

Please confirm your certifications (e.g., GCFA, EnCE, CISSP) and any specific experience mitigating remote-access exploits on Windows networks. Time is critical, so indicate how soon you can start and your estimated turnaround for an initial assessment.