ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 625 - 312-49v10 discussion

Report
Export

Which of the following tools will allow a forensic Investigator to acquire the memory dump of a suspect machine so that It may be Investigated on a forensic workstation to collect evidentiary data like processes and Tor browser artifacts?

A.
DB Browser SQLite
Answers
A.
DB Browser SQLite
B.
Bulk Extractor
Answers
B.
Bulk Extractor
C.
Belkasoft Live RAM Capturer and AccessData FTK imager
Answers
C.
Belkasoft Live RAM Capturer and AccessData FTK imager
D.
Hex Editor
Answers
D.
Hex Editor
Suggested answer: C
asked 18/09/2024
Aiko Abrassart
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first