nerdexam
EC-Council

212-89 · Question #106

Marley was asked by his incident handling and response (IH&R) team lead to collect volatile data such as system information and network information present in the registries, cache, and RAM of victim'

Sign in or unlock 212-89 to reveal the answer and full explanation for question #106. The question stem and answer options stay visible for context.

Computer Forensics in Incident Handling

Question

Marley was asked by his incident handling and response (IH&R) team lead to collect volatile data such as system information and network information present in the registries, cache, and RAM of victim's system. Identify the data acquisition method Marley must employ to collect volatile data.

Options

  • AValidate data acquisition
  • BStatic data acquisition
  • CLive data acquisition
  • DRemote data acquisition

Unlock 212-89 to see the answer

You've previewed enough free 212-89 questions. Unlock 212-89 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#live data acquisition#volatile data#RAM forensics#data collection methods
Full 212-89 Practice