nerdexam
EC-Council

212-89 · Question #112

Patrick is doing a cyber forensic investigation. He is in the process of collecting physical evidence at the crime scene. Which of the following elements he must consider while collecting physical…

The correct answer is D. Removable media, cable, and publications. In the context of collecting physical evidence during a cyber forensic investigation, Patrick must consider items like removable media, cables, and publications. These items can contain crucial information related to the crime, such as data storage devices (USB drives, external…

Computer Forensics in Incident Handling

Question

Patrick is doing a cyber forensic investigation. He is in the process of collecting physical evidence at the crime scene. Which of the following elements he must consider while collecting physical evidence?

Options

  • AOpen ports, services, and operating system (OS) vulnerabilities
  • BDNS information including domain and subdomains
  • CPublished name servers and web application source code
  • DRemovable media, cable, and publications

How the community answered

(47 responses)
  • A
    2% (1)
  • B
    2% (1)
  • C
    6% (3)
  • D
    89% (42)

Explanation

In the context of collecting physical evidence during a cyber forensic investigation, Patrick must consider items like removable media, cables, and publications. These items can contain crucial information related to the crime, such as data storage devices (USB drives, external hard drives), cables connected to potentially relevant devices, and any printed materials that might have information or clues about the incident. Open ports, services, and OS vulnerabilities, DNS information, and published name servers and web application source code, while important in digital forensics, do not constitute physical evidence in the traditional sense.

Topics

#physical evidence collection#crime scene#forensic investigation#evidence handling

Community Discussion

No community discussion yet for this question.

Full 212-89 Practice