List of questions
Related questions
Question 625 - 312-49v10 discussion
Which of the following tools will allow a forensic Investigator to acquire the memory dump of a suspect machine so that It may be Investigated on a forensic workstation to collect evidentiary data like processes and Tor browser artifacts?
A.
DB Browser SQLite
B.
Bulk Extractor
C.
Belkasoft Live RAM Capturer and AccessData FTK imager
D.
Hex Editor
Your answer:
0 comments
Sorted by
Leave a comment first