First Responders to Digital Evidence Flashcards

1
Q

What is Electronic Evidence?

A

Any probative information stored or transmitted in digital format that can be of evidentiary value in a criminal or civil court proceeding.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are some examples of how a computer can be used as a target of a crime?

A

Embezzlement, theft of service, system intrusion, espionage, Terrorism, Cellular Phone Cloning, Software piracy and theft, theft of computer and computer/technology components.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How can computers can used as the Instrument or tool of criminal activity?

A

Solicitation of minors, e-stalking, Identity theft, credit card scams, internet fraud and variety of e-commerce scams, counterfeiting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are some examples of how computers and other electronic devices can used as repositories of evidence and other information?

A

Financial Records, Address Books, Correspondence, Photographs, Historical records, recorded messages and other audio files, call records and other personal logs, Temp internet files

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Computers can also be the ________ of _________ _______, or the results of computer operations can be ________ of a _______.

A

Fruit of Criminal Activity, Fruit of a crime

EX. Computer-generated reports and records, counterfeited cellphones, counterfeit currency or credit cards.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How can electronic evidence be altered or destroyed?

A
  • Tainted or removed either accidentally or intentionally.
  • Magnetic flux can hard computers
  • Electro-Static Discharge (ESD) or static electricity can be particularly damaging to smaller media devices such as thumb drives.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

You should avoid direct sunlight for extended periods and temperatures above 100 for what devices?

A

Computers, disk, tapes, and other storage devices.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What should you do if a computer has been exposed to sub-freezing temperatures?

A

Allow the machine and media to return to ambient temperature before attempting access.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

How can Optical media disks be easily tainted?

A

Through willful scratching or mutilation and also susceptible to extreme temps and environmental degradation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What non-electronic items may be important in the investigation of electronic crime?

A

-All Software documentation
–Computer-generated paper reports
Documentary evidence such as magazines and letters that can tie the suspect to computer workstation
-Photographs
-Address books
-List of password or access codes
-All notes and paper scraps at the computer workstation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the first and foremost proper procedure in collecting, preserving, and transporting computers and electronic items sized as evidence?

A

Officer Safety

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is the proper procedure in collecting, preserving, and transporting computers sized as evidence?

A
  • Immediately isolate the computer from any user or potential user.
  • Remove smart phones from user and keep it away from network access
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

If a computer is running when you go to seize it what should you do?

A

Unplug it from the back

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

If a computer is off when you go to seize it what should you do?

A

Leave it off

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What should you make record off when seizing a computer?

A

Record anything on the computer screen

Record the configuration of wires and cables if the system will be taken.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What should you do if you seizing a cell phone that is on?

A

Leave the phone on
Place it in an electromagnetically shielded device (Faraday Device)
Photograph home screen if on.
Photograph serial # on back

17
Q

What should you do if you seizing a cell phone that is off?

A

Leave it off!

18
Q

When the computer itself is the focus of criminal activity, it is considered to be the what of a crime?

A

Target.