accurate answers
Collection of network and internet based system information is carried
out in a number of steps: Ans✓✓✓= Identify the local IP address of the
system
= Identify the internet-facing IP address of the system
= Identify the system's unique information leaked onto to internet
Define Autopsy. Ans✓✓✓= GUI built on top of Sleuthkit
= Features:
- Timeline Analysis
- Hash Filtering
- Keyword Search
- Web Artifacts
- Data Carving
- Metadata analysis
Define Business Needs. Ans✓✓✓Needs that are particular to
businesses which have been victimised
Define CAINE. Ans✓✓✓Caine is the Linux distro created for digital
forensics
= Objectives:
,- an interoperable environment that supports the digital investigator
during the four phases of the digital investigation
-a user friendly graphical interface
Define cyber crime in simpler terms. Ans✓✓✓Any crime where a
computer is a tool or a target or both is a cyber crime
Define Forensic Focus. Ans✓✓✓= One of the leading online digital
forensics portals for computer forensics and eDiscovery professionals
Define Forensic Readiness. Ans✓✓✓The ability of an organization to
maximize its potential to use digital evidence while minimizing the cost
of an investigation
Define Hardware Forensic tools. Ans✓✓✓Range from single-purpose
components to complete computer systems and servers
Define Individual (Victim) Needs. Ans✓✓✓= The needs of an
individual who is a victim of cyber crime
= Cases which are Country against Offender also fall into this category
Define NIST. Ans✓✓✓= The National Institute of Standards and
Technology
= An agency of the U.S. Departmentof Commerce
,Define Non-forensic . Ans✓✓✓Non-forensic use means using forensic
tools and skills for legitimate, but non-forensic purposes.
Define SEDONA Conference. Ans✓✓✓= Charitable, non-
partisanresearch and educational institute
= Legal conference with working groups on digital forensics
Define Universal Needs Ans✓✓✓Needs that are common irrespective
of the crime type and the nature of the victim
Define Vendor-neutral Computer Forensic Certifications
Ans✓✓✓Certifications are intended to represent the common body of
knowledge of computer forensics
Define Vendor-specific Computer Forensic Certifications
Ans✓✓✓Certifications are based on a specific commercial product or
service(including training) offered to the computer forensics community.
Define Volatile information Ans✓✓✓Volatile information helps to
calculate a logical timeline
Define Volatile memory. Ans✓✓✓Volatile memory is lost when the
system loses power
Explain Access Data Certified Examiner (ACE) Ans✓✓✓=
Certification from AccessData Group, LLC
, = Candidate's proficiency in using AccessData's Forensic Toolkit (FTK),
Password Recovery Toolkit (PRTK), FTK Imager and Registry Viewer
products is validated
= 90-minute multiple choice exam• Examination can be taken either
online or at the Access Data training classroom, both written and
practical assignments
Explain CCIF Training Group. Ans✓✓✓= Training centric group
= Focus is on training in Cyber-crime Investigation,Computer
Forensics,Computer Crime Legal Issues and Related Technical Training
= Open public group
Explain Certified Computer Examiner (CCE). Ans✓✓✓= Offered by
the International Society of Forensic Computer Examiners (ISFCE)
= Certifies the competency of a candidate based on knowledge and
proficiency
= Knowledge is tested using an online multiple choice examination
Explain Certified Forensic Computer Examiner (CFCE) Ans✓✓✓=
Offered by International Association ofComputer Investigative
Specialists(IACIS)
= Certifies candidate's competencies in the field of computer/digital
forensics
= Certification requires passing both written exam as well as series of
practical assignments