Exam 11: Virtual Machines, Network Forensics, and Live Acquisitions

arrow
  • Select Tags
search iconSearch Question
flashcardsStudy Flashcards
  • Select Tags

Match each item with a statement below: -shuts down and optionally restarts a computer

(Multiple Choice)
4.9/5
(44)

With the Knoppix STD tools on a portable CD, you can examine almost any network system.

(True/False)
4.9/5
(28)

When are live acquisitions useful?

(Essay)
4.9/5
(41)

Ngrep cannot be used to examine e-mail headers or IRC chats.

(True/False)
4.9/5
(36)

A common way of examining network traffic is by running the ____ program.

(Multiple Choice)
4.9/5
(42)

Match each item with a statement below: -usually refers to network forensics

(Multiple Choice)
4.9/5
(42)

What are some of the tools included with Knoppix STD?

(Essay)
4.7/5
(42)

Match each item with a statement below: -helps manage snort rules so that you can specify what items to ignore as regular traffic and what items should raise alarms

(Multiple Choice)
4.8/5
(29)

____ forensics is the systematic tracking of incoming and outgoing traffic on your network.

(Multiple Choice)
4.7/5
(38)

What are some of the tools included with the PSTools suite?

(Essay)
4.7/5
(37)
Showing 41 - 50 of 50
close modal

Filters

  • Essay(0)
  • Multiple Choice(0)
  • Short Answer(0)
  • True False(0)
  • Matching(0)