EC-Council: Computer Hacking Forensic Investigator(CHFI-V10)
Module 6 : Windows Forensics
         
Questions available : 94 You are not logged in.
Please Login for track your learning progress
   
 
Q. No: 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 |
Go to Question No.



Question No 0


If you want to share the link of this question, please click here to "Copy Question Link" and share that generated link. Link from URL may change in future.
 

   
Bookmark this Question
QID: 394  
   
Which of the following tools can be used to parse the contents of .lnk files to reveal information embedded within the files?


 
A:    Windows File Analyzer
 
B:    ProDiscover
C:    Exiv2
 
D:    IrfanView
 
         

 
 

Diffence opinion in Correct Answer or any comment?
Vote / Comment for correct Answer



Comunity Comments:

Banwari on 16/05/2025
Opted Answer: A
Windows File Analyzer is a forensic tool designed to decode and analyze special files used by Windows OS.

Thumbnail Database Analysis: Reads and displays stored image previews from databases like Thumbs.db, ACDSee *.fpt, and Picasa *.db.

Prefetch File Analysis: Extracts execution history from Windows Prefetch files.

Shortcut File Analysis: Parses .lnk files to reveal embedded metadata.

Index.dat Analysis: Retrieves browsing history and temporary file records from Internet Explorer.

Recycle Bin Analysis: Decodes Info2 and $I files to recover deleted file details.

















WELCOME TO ONLINE EXAM PREPARATION SYSTEM

Certification Examinations