Question

In: Computer Science

DIGITAL FORENSIC TOOKS: 1. USB FORENSIC What value could this artifact have for investigation? What kinds...

DIGITAL FORENSIC TOOKS:

1. USB FORENSIC

What value could this artifact have for investigation?

What kinds of information can you extract?

2. WINDOWS REGISTRY

What value could this artifact have for investigation?

What kinds of information can you extract?

What were they following originally designed for

What kind of forensic value could they provide in the in a digital investigation?

What are some of the limitations of each type of the artifact?

Link Files

Prefetch

ShimCache

Shellbags

Jump lists

VSS

Event Logs

Solutions

Expert Solution

USB Forensics:

USB Foensic have become very important in Investigation of Digital documents whioch involves fetching up of

erased of data from USB devices which may be suspicious for the crime scnene to happen or any type of

Fraudulent activity.

Informations which can be extractedfrom USB Forensics are as follows:

1. Image File

2, Video File

3, Documents

4, Softwares which may be suspicious in case of Conducting criminal activities etc

2. Window Registry

It basically contain Informatijon about recent files and significant action Information about user actions.

It is an very useful tool for Forensic Investigator.

The Information which can be tracked down from windows registry are as follows

1.Transaction logs

2. Deleted entries

3. backup system

4.System Restore

Limitations of each typeof artifacts are as follows:

1.Link files: In this links are created only among files includes in same system

2.Prefetch:Internode Interference

3.Shim cache: Low storage capacity

4.Event Log: Time consuming in retention of events occured.

5.Jump Lists: Creating long lists which may be difficult

6.VSS-: limit for volume


Related Solutions

What are the elements of a forensic fraud investigation report, and explain how they could be...
What are the elements of a forensic fraud investigation report, and explain how they could be used to support case preparation in a case like Enron?
what is hash in digital forensic?
what is hash in digital forensic?
A2Z Forensics is a digital forensics investigation firm that conducts forensic investigations for public as well...
A2Z Forensics is a digital forensics investigation firm that conducts forensic investigations for public as well as private sectors. You are working in this firm as a forensics specialist for a number of years now. The firm is establishing a new forensics lab to meet the future requirements. You have been asked to prepare a business case for this new lab. Your job is to focus on three aspects of the new lab which are hardware, software and lab security....
what is forensic linguistics and how has it been used in casework such as the investigation...
what is forensic linguistics and how has it been used in casework such as the investigation of the Unabomber?
What are some of the technical skills needed to perform computer forensic investigations? What kinds of...
What are some of the technical skills needed to perform computer forensic investigations? What kinds of clues or evidence does the forensic auditor need to collect to try and track the internal or external hacker?
What unique challenges and opportunities does digital evidence bring to fraud detection and investigation?
What unique challenges and opportunities does digital evidence bring to fraud detection and investigation?
what are the skills, knowledge and chnge behaviour of the ARTIFACT 1 Case 1: Metrobus Strike...
what are the skills, knowledge and chnge behaviour of the ARTIFACT 1 Case 1: Metrobus Strike The amalgamated Transit Union (ATU) represents about 100 workers (e.g., drivers, mechanics, administrative staff) employed with Metrobus, a city-wide transit authority. On November 3, after the parties failed to negotiate a settlement, the union conducted a vote. In an overwhelming majority, 97 percent voted to reject the contract offer and go on strike. On November 4, picket lines were assembled at the worksite and...
What metrics/indicators could one have used to realise that there was a bubble in the value...
What metrics/indicators could one have used to realise that there was a bubble in the value of these cryptocurrencies? What do you think was the contribution of retail investors entering the crypto market?    Based on finance theory, do you think that it is possible to have, in the future, a similar run-up in the value of cryptocurrencies?                          
1. Show all the different kinds of gametes which could be produced by the following individuals?...
1. Show all the different kinds of gametes which could be produced by the following individuals? a) Ff b) Gg c) YyZz d) AaBbCc e) CC *please draw out solution and write how to figure it out* :)
1) Discuss biocentrism. Explain its idea. What kinds of observation have led to the development of...
1) Discuss biocentrism. Explain its idea. What kinds of observation have led to the development of this idea? How does this school of thought find support from quantum physics? What do you think about this ancient idea that has been repackaged as new by Robert Lanza? A link to an excellent reading about this idea is posted below: http://discovermagazine.com/2009/may/01-the-biocentric-universe-life-creates-time-space- cosmos 2) The mechanical philosophy, which arose from the scientific revolution, presents the universe as a grand machine, one that operates...
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT