Digital Forensics Tools Flashcards
Which tool is known for recovering deleted files emptied from the recycle bin, lost due to format or corruption of a hard drive, and even after Windows has been reinstalled?
A. Recuva
B. Recover My Files
C. Disk Drill
D. R-Studio
B. Recover My Files
Which tool offers an Advanced Deep Scan mode that scours a drive to find any traces of files that have been deleted?
A. EASEUS Data Recovery Wizard
B. OnTrack Easy Recovery
C. Recuva
D. Data Recovery Pro
C. Recuva
Which tool supports recovery of lost data from hard drives, partitions, external devices, CDs, and DVDs, and offers both Quick Scan and Deep Scan options?
A. Advanced Disk Recovery
B. Undelete Plus
C. Data Rescue 4
D. Disk Drill
A. Advanced Disk Recovery
Which digital forensics tool can recover data from systems that are not bootable, using a bootable CD or DVD with a lightweight version of Windows 7?
A. Stellar Phoenix
B. File Salvage
C. Active@ File Recovery
D. Remo Recover Pro
C. Active@ File Recovery
Which tool allows users to preview files before recovering and supports specifying recovery file types for precise search results?
A. DiskDigger
B. Recover My Files
C. EASEUS Data Recovery Wizard
D. R-Studio
C. EASEUS Data Recovery Wizard
Which tool is capable of recovering data from both HFS/HFS+ formatted drives on Mac and can also be used for recovering data on Windows?
A. File Salvage
B. Data Rescue 4
C. R-Studio
D. Total Recall
B. Data Rescue 4
Which tool allows recovery of documents, photos, email, video, and music, even after accidental formatting or if Windows has been reinstalled?
A. Undelete Plus
B. Pandora Recovery
C. Disk Drill
D. OnTrack Easy Recovery
A. Undelete Plus
Which tool can recover files from memory cards, USB drives, and has features like thumbnail preview of recoverable files?
A. Recover My Files
B. DiskDigger
C. Quick Recovery
D. Data Recovery Pro
B. DiskDigger
Which tool is an open source network forensic analysis tool (NFAT) that can extract data from an internet traffic capture?
A. Xplico
B. Capsa
C. Autopsy
D. Comodo Programs Manager
A. Xplico
Which tool is used to monitor the installation of executables and shows process information such as process ID, new file path, open ports, and loaded drivers?
A. Dependency Walker
B. SysAnalyzer
C. Install Watch
D. Memory Viewer
B. SysAnalyzer
Which tool can be used to analyze registry changes in malware analysis and includes a Registry Cleaner?
A. Memory Viewer
B. Registry Editor (regedit)
C. Jv16 Power Tools
D. Exeinfo PE
C. Jv16 Power Tools
Which tool supports over 300 network protocols and can be used to detect Trojans by monitoring network traffic?
A. Xplico
B. Capsa
C. Autopsy
D. Nuix Corporate Investigation Suite
B. Capsa
Which tool is a password recovery tool for Microsoft OS and offers features like cracking, password sniffing, and VoIP recording?
A. Cain & Abel
B. Install Watch
C. Memory Viewer
D. FileMerlin
A. Cain & Abel
Which tool can be used for document conversion and is regarded as the premiere product for this purpose?
A. Disk Drill
B. Data Recovery Pro
C. Exeinfo PE
D. FileMerlin
D. FileMerlin
Which tool can create an image of a phone memory card and ensures data integrity by calculating MD5 hash values?
A. Autopsy
B.AccessData FTK
C. Stellar Phoenix
D. Total Recall
B. AccessData FTK