EC-Council: Computer Hacking Forensic Investigator(CHFI-V10) |
||||
Module 2 : Computer Forensics Investigation Process |
||||
Questions available : 60 |
You are not logged in. Please Login for track your learning progress |
|||
Go to Question No. |
Question No 18
If you want to share the link of this question, please click here to "Copy Question Link" and share that generated link. Link from URL may change in future.
Comunity Comments:

Opted Answer: A
Postmortem Analysis is a forensic process used to analyze digital evidence after an incident has occurred. It helps investigators:
Identify traces of data exfiltration from the external drive.
Recover deleted or modified files that may contain trade secrets.
Analyze system logs to determine how the breach happened.
Corroborate findings with other forensic techniques to build a case.