100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

CHFI Exam with complete solution

Rating
-
Sold
-
Pages
8
Grade
A+
Uploaded on
18-09-2023
Written in
2023/2024

Computer Forensics - The process of finding evidence related to a digital crime to find the culprits and initiate legal action against them. Objectives: Identify, gather and preserve the evidence of a cybercrime. Track and prosecute the perpetrators in a court of law. Interpret, document and present the evidence to be admissible during prosecution. Estimate the potential impact of a malicious activity on the victim and assess the intent of the perpetrator. Civil Law - Relates to violation of contracts and lawsuits, where a guilty verdict generally results in monetary damages to plaintiff. Criminal Law - Crimes that are considered harmful to the society and involve action by law enforcement agencies against a company, individual or group of individuals in response to a suspected violation of law. A guilty outcome may result in monetary damages, imprisonment, or both. Forensic Investigator Rules - Limited access and examination of the original evidence Record changes made to the evidence files Create a chain of custody document Set standards for investigating the evidence Comply with the standards Hire professionals for analysis of evidence Evidence should be strictly related to the incident The evidence should comply with the jurisdiction standards Document the procedures applied on the evidence Securely store the evidence Use recognized tools for analysis Enterprise Theory of Investigation (ETI) - Adopts a holistic approach toward any criminal activity as a criminal operation rather than as a single criminal act. A good option if an investigator can identify the underlying motive as financial profit for most criminal enterprises.Locard's Exchange Principle - Anyone or anything, entering a crime scene takes something of the scene with them, and leave something of themselves behind when they leave Volatile Data - The temporary information on a digital device that requires a constant power supply and is deleted if the power supply is interrupted. Important volatile data includes system time, logged-on user(s), open files, network information, process information, process-to-port mapping, process memory, clipboard contents, service/driver information, command history, etc. Non-volatile Data - The permanent data stored on secondary storage devices, such as hard disks and memory cards. Information stored in non-volatile form includes hidden files, slack space, swap file, files, unallocated clusters, unused partitions, hidden partitions, registry settings, and event logs. Characteristics of Digital Evidence - Admissible - relevant to the case, act in support of the client presenting it Authentic - supporting documents regarding the authenticity of the evidence with details such as source and its relevance to the case Complete - evidence must be complete, which means it must either prove or disprove the consensual fact in the litigation Reliable - extract and handle the evidence while maintaining a record of the tasks performed, only use duplicates Believable - present the evidence in a clear and comprehensible manner to the members of jury User-Created Files - - Address books - Database files - Media (images, graphics, audio, video, etc.) files - Documents (text, spreadsheet, presentation, etc.) files - Internet bookmarks, favorites, etc User-Protected Files - - Compressed files

Show more Read less
Institution
CHFI Chapters 1 & 2
Course
CHFI Chapters 1 & 2









Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
CHFI Chapters 1 & 2
Course
CHFI Chapters 1 & 2

Document information

Uploaded on
September 18, 2023
Number of pages
8
Written in
2023/2024
Type
Exam (elaborations)
Contains
Questions & answers

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
PatrickKaylian Delaware State University
View profile
Follow You need to be logged in order to follow users or courses
Sold
1820
Member since
2 year
Number of followers
1044
Documents
22126
Last sold
4 days ago

3.8

317 reviews

5
147
4
60
3
54
2
16
1
40

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions