Creating forensic system case file for analyzing evidence

Assignment Help Software Engineering
Reference no: EM131444746

Creating a Forensic System Case File for Analyzing Forensic Evidence

Introduction

The goal of forensic analysis is to discover the who, what, when, where, why, and how of forensic evidence, while ensuring the digital evidence is preserved, defensible, and presentable in a court of law. But when forensic investigators explore a machine in search of evidence, they risk changing the very data they seek, potentially invalidating evidence. If evidence is to be presented in a court of law, it is important to follow chain-of-custody procedures. This ensures there is no evidence tampering, and that the original data source remains intact from the time it is collected until it is presented in court. This process includes the chronological documentation and collection of paper and digital information from when it was discovered, analyzed, and addressed or interpreted.

As part of the chain-of-custody documentation, it is a common practice to make a copy of the targeted image prior to performing the actual digital forensic investigation. This allows for a proper external digital forensic investigation that can be self-contained in a virtual machine (VM) environment. This ensures that no data is written to the drive and preserves the original forensic data.

In the case of digital forensic analysis, write-blocking technologies will ensure chain-of-custody procedures are maintained. Forensic investigating tools can analyze documents, e-mail messages, chat sessions, Registry and system files, installed programs, and the Internet browser history. In this lab, you will use a leading forensic application to investigate an image of a hard drive and find forensic evidence without affecting the integrity of the data on the image. You will create an electronic case file that contains the evidence file provided to you, and you will save the case file for later review. In this way, you will experience all the steps needed in a forensic investigation to preserve the source and ensure that the evidence is defensible and presentable in a court of law.

This lab has two parts, which you should complete in order:

In the first part of the lab, you will explore the P2 Commander tool in the virtual lab environment.

If assigned by your instructor, you will explore the virtual environment on your own to answer a set of challenge questions that allow you to use the skills you learned in the lab to conduct independent, unguided work, similar to what you will encounter in a real-world situation.

Learning Objectives

Upon completing this lab, you will be able to:

Create a new digital forensic case file using a forensic application.

Document a new digital forensic case with digital evidence submitted to the newly created case file.

Add forensic system image evidence to the case file.

Explain how to properly document and create a digital forensic case file as per the chain of custody.

Tools and Software

The following software and/or utilities are required to complete this lab. Students are encouraged to explore the Internet to learn more about the products and tools used in this lab.
P2 Commander

Deliverables

Upon completion of this lab, you are required to provide the following deliverables to your instructor:

Lab Report file, including screen captures of the following step: Part 1, Step 19;

Lab Assessment worksheet;

Optional: Challenge Questions file, if assigned by your instructor.

Verified Expert

The solution file is prepared in ms word with the help of p2 commander forensic analysis tool. This report contains the screen shot of Create a Forensic Case File Using P2 Commander and assessment questions with answers.

Reference no: EM131444746

Questions Cloud

Best estimate of the average savings : Based on the answer from question 9, calculate 90% confidence limit around your best estimate of the average savings.
Factors that impact the management of a collegiate : Evaluation of three factors that impact the management of a collegiate, professional, and Olympic organization/institution- Comparison of the factors that impact the various organizations at the different levels of sports.
Define the law of iterated expectations : Suppose that ut follows the ARCH process.
Estimate chances to earn at least : We toss an unfair coin 100 times in a row. We play according to following rules: If tail: +$1 If head: -$1.45 P(head=0.4) Estimate chances to earn at least $3 at the end of this experiment.
Creating forensic system case file for analyzing evidence : Creating a Forensic System Case File for Analyzing Forensic Evidence - Create a new digital forensic case file using a forensic application and Document a new digital forensic case with digital evidence submitted to the newly created case file.
What is the most common housing pricing strategy : REE 6147 - Spring 2017 Course Exam. According to Table 2, what is the most common housing pricing strategy employed in the market? What is the second most common pricing strategy
Presidential candidates are popular in area : Suppose you are designing and conducting a poll to see which of the presidential candidates are popular in your area.
Evaluate the organizations productivity : In the Middleboro Physician Care Services, Inc. case, you are asked to examine the operations of an ambulatory, non-emergent care clinic which treats private and occupational health patients and provides services which do not include continuing o..
Provide a mechanism for repeating a block of code : CPS 150- Loops provide a mechanism for repeating a block of code called the loop body. We begin this lab by experimenting with while loops, the simplest form of loop code.

Reviews

inf1444746

4/10/2017 6:01:25 AM

extremely excellent and elegantly composed paper, not precisely the configuration required but rather spared me a great deal of time I didn't have!

inf1444746

4/10/2017 6:01:07 AM

Once you open the link, you have to follow instructions. Follow steps and answer question on assessments. Clear cookies and try again Could you remove browser and install again. Instructor says it happens challenging questions need to be done.

len1444746

3/30/2017 3:20:11 AM

CREATING A FORENSIC SYSTEM CASE FILE FOR ANALYZING FORENSIC EVIDENCEGRADING RUBRIC • Was the student able to create a new digital forensic case file using Paraben’s P2 Commander forensic application? 15 • Was the student able to document a new digital forensic case with digital evidence submitted to the created case file? 15 • Was the student able to add a forensic system image evidence to the case file? 15 • Was the student able to save the digital forensic case file for further review? 15 • Was the student able to explain how to properly document and create a digital forensic case file as per the chain of custody? 15

Write a Review

Software Engineering Questions & Answers

  Prepare a decision table to assist you decide what to do

prepare a decision table to assist you decide what to do for the day. if it is a weekday and it is not a holiday then

  Different entities or objects logical processes

You are working as student assistance for an engineering firm and are paid by the hour. Every two weeks, you turn in a time sheet to your supervisor, and three workdays later, your paycheck is direct deposited into your checking account.

  Leadership challenge juggling culturesculture gender and

leadership challenge juggling culturesculture gender and leadership are closely related. in most cultures even western

  Draw a use case diagram showing six possible use cases

Assume that the Mental care system is being developed using an object-oriented approach. Draw a use case diagram showing at least six possible use cases for this system.

  What do you think of these arguments

Some systems analysts argue, "Give users what they ask for. If they want lots of reports and reams of data, then that is what you should provide. Otherwise, they will feel that you are trying to tell them how to do their jobs." Others say, "Systems a..

  Why that tool would be useful in modeling

Use the Internet to locate a CASE tool and describe why that tool would be useful in modeling and documenting a software application or system.

  Question about hippa rights

I have found that to date, the largest offense is looking into family records even though workers are warned not too and that this is a violation of that family member's HIPAA's rights.

  Write a script that creates a directory

Write a script that asks the user to enter a number between 20 and 30. If the user enters an invalid number or a non-number, ask again. Repeat until a satisfactory number is entered.

  Understanding a real-time and time-critical system

ITECH 7410: Software Engineering Methodologies Assignment. The purposes of the assignment: Understanding a real-time and time-critical system. Understanding Entity Relationship Diagram and Data Flow Diagram in terms of a real time software system

  Explain the adapter pattern using the standard format

Explain the Adapter Pattern using the standard format. Explain the Scrum agile model with a diagram. Explain the four "organizational paradigms" for software engineering teams.

  Discuss the culture and ethics in france analyze the

discuss the culture and ethics in france. analyze the differences and similarities between the united states and france

  1 a software project has been estimated to cost 1200000 and

1. a software project has been estimated to cost 1200000 and take 14 months. given the average project outcomes from

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd