EC-Council: Computer Hacking Forensic Investigator(CHFI-V10)
Module 4 : Data Acquisition and Duplication
         
Questions available : 25 You are not logged in.
Please Login for track your learning progress
   
 
Q. No: 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 |
Go to Question No.



Question No 4


If you want to share the link of this question, please click here to "Copy Question Link" and share that generated link. Link from URL may change in future.
 

   
Bookmark this Question
QID: 202  
   
Which of the following tools will allow a forensic investigator to acquire the memory dump of a suspect machine so that it may be investigated on a forensic workstation to collect evidentiary data like processes and Tor browser artifacts?


 
A:    Bulk Extractor
 
B:    Belkasoft Live RAM Capturer and AccessData FTK Imager
C:    DB Browser SQLite
 
D:    Hex Editor
 
         

 
 

Diffence opinion in Correct Answer or any comment?
Vote / Comment for correct Answer




















WELCOME TO ONLINE EXAM PREPARATION SYSTEM

Certification Examinations