Question 226
In the context of file deletion process, which of the following statement holds true?
Question 227
Derrick, a forensic specialist, was investigating an active computer that was executing various processes. Derrick wanted to check whether this system was used In an Incident that occurred earlier. He started Inspecting and gathering the contents of RAM, cache, and DLLs to Identify Incident signatures. Identify the data acquisition method employed by Derrick in the above scenario.
Question 228
Smith, a network administrator with a large MNC, was the first to arrive at a suspected crime scene involving criminal use of compromised computers. What should be his first response while maintaining the integrity of evidence?
Question 229
Microsoft Security IDs are available in Windows Registry Editor. The path to locate IDs in Windows 7 is:
Question 230
What is a good security method to prevent unauthorized users from "tailgating"?
