Font size
WorksheetsComputer forensics in crime investigation
Total questions: 20
Worksheet time: 8mins
What is computer forensics?
It is an attempt to expose, alter, destabilize, destroy, remove to gain unauthorized access or use an asset.
It is the discipline that combines the elements of law and computer science to collect and analyze data from computer Systems, network, Wireless communications and storage devices in a way that is admisible as evidence in a court of law.
What are the examples of latent data? choose 3.
Belkasoft Live RAM capturer
Information that is in the computer's storage but is not easily mentioned in the file allocation tables.
Data that has been deliberately removed.
Information that the operating System or commonly used software Application cannot easily see.
1. A _______ has occurred, collecting all relevant evidence is of the utmost importance in answering the questions described above.
file headers.
forensic investigator.
cyber attack.
What are the main types of computer forensics?
Of operating Systems
Of security
Of network.
On the cloud.
On Mobile devices
It is the process of retrieving useful Information from the computer or mobile device in questions.
Of network
On the cloud
Of operating Systems
It aims to retrieve digital evidence or relevant data from a mobile device in a way that preserves the evidence in a sound forensic condition.
On the cloud
Of operating Systems
On mobile devices
It refers to the collection, monitoring, and analysis of network activities to discover the source of attacks, viruses, intrusions, or security breaches that occur On a network or in network traffic.
On the cloud
On mobile devices
Of operating Systems
Of network
Refers to any technique, device or software designed to hinder a computer investigation.
Anti-forensic computing.
Encryption.
File headers.
Focuses primarily On gathering digital forensic Information from a cloud infrastructure.
On mobile devices.
On the cloud.
FTK Imager
You use a complex set of rules called an algorithm to make data unreadable.
Encryption
Metadata
Computer forensic analysis
Is a data and image preview tool that allows you to browse files and folders on local hard drives, network drives, CD / DVD and review the content of forensic images or memory dumps.
FTK Imager
Volatility
HashCalc
Es un programa de calculadora desarrollado por SlavaSoft
HashCalc
Belkasoft Live RAM capturer
Volatility
For volatile memory analysis there are several tools such as:
Volatility
Belkasoft Live RAM capturer
HashCalc
It must be accurate, comprehensive, unbiased, recorded, repeatable, and completed within the available time frames and allocated resources.
Computer forensic analysis
The computer expert
Volatility
It is used behind the scenes in Autopsy and in many other commercial and open source forensic tools.
Encase Forensics
Sleuth kit
SIFT Workstation 3
Quickly search, identify and prioritize potential evidence, on computers and mobile devices, to determine if further investigation is warranted.
Encase Forensics
Digital forensics
safety
Forensics v6
It is a group of open source free incident response and forensic tools designed to perform detailed digital forensic examinations in a variety of environments.
Access Data Registry Viewer.
SIFT Workstation 3
Sleuthkit
Provides one of the fastest and most powerful ways to locate files On a Windows computer. You can search by file Name, size, creation and modification dates, and other criteria
OsForensics v6
SIFT Workstation 3
Forense digital
Reveal when a document first appeared On a computer, when it was last edited, when it was last saved or printed, and which user performed these actions.
Defense in depth
Safety
Computer forensic examination
The implementation of this type of security model in which the principles of computer forensics are also adopted is also known as:
Defense in depth
Safety
Criminology
Vulnerability and testing
