Section 5.1: Anti-Forensics Overview Flashcards

1
Q

What is the general use of anti-forensics techiniques?

A

To hide malware and activity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Anti-forensic techniques that happen on the filesystem:

A

Timestomping, fileless malware, data encryption, file deletion, and free space wiping.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Anti-forensics techniques that happen at the registry:

A

Registry key/value deletion or wiping. Hiding scripts inside the registry.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Other types of anti-forensics:

A

Event log deletion or tampering, process evasion such as rootkits or code injection.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly