Examine an hkcu hive for evidence of unauthorized access

Assignment Help Computer Engineering
Reference no: EM133651342

Homework: Digital Forensic Report

Examine an HKCU hive for evidence of unauthorized access. Read the scenario carefully, as you may consider it interview notes with your client. This is often one of the first real examination tasks you're likely to encounter and will be a test of your ability to make inferences, be thorough in your search, and document your examination.

Instructions

You'll need to use the following resources to complete the homework:

1) Investigation 01 Sample Evidence located in the Virtual Lab
2) A registry analysis tool, such as Registry Explorer by Eric Zimmerman located in the Virtual Lab
3) (Optional) Download and use the report template (See the Investigation and Forensics Challenge module for the templates)

After reading the Investigation 01 scenario, open your forensic tool and import the sample evidence into the tool. Begin a forensic report and begin your search. As you do, be sure to take special note of these answers to these questions. These questions represent those that need to be answered to arrive at a logical conclusion to this scenario. They are provided here, but in the future, you will be required to decide these questions on your own.

Scenario:

This scenario takes place circa 2012. You were recently contacted by Nick Fury of S.H.I.E.L.D. to investigate a suspected corporate espionage incident. They have reason to believe that S.H.I.E.L.D. was infiltrated by an enemy spy who used the generic vibranium account to access and exfiltrated sensitive information from an endpoint connected to the SHIELD network with the hostname of nromanoff. Nick Fury believes that the culprit may be a recently terminated employee named Jim Tandy. Jim was recently fired under suspicion of leaking confidential information to Hydra. Your job will be to examine the NTUSER.DAT file containing the HKCU registry hive for the vibranium user to determine the answers to the following questions.

Reference no: EM133651342

Questions Cloud

Explain why you did or did not enjoy the concerts : Explain why you did or did not enjoy the concerts. Evaluate similarities and differences between music in the Classical era and rock/pop music.
What can be done to lessen or eliminate the problem : What can be done to lessen or eliminate the problem of plastic pollution in the oceans, according to research? And ways to mitigate or solve this problem.
Demonstrate an understanding of the role of power : Demonstrate an understanding of the role of Power, Influence and Ethics on modern leadership practices and Identify their own leadership traits, style
How the use of emerging technology can raise legal concerns : How the use of this emerging technology can raise legal concerns? How the use of this emerging technology can raise ethical concerns?
Examine an hkcu hive for evidence of unauthorized access : Examine an HKCU hive for evidence of unauthorized access. Read the scenario carefully, as you may consider it interview notes with your client.
Paraphrase nutrition : Dogs require food for energy and growth, which they obtain through eating. This is a characteristic of life known as nutrition or metabolism.
Explain what you did wrong prior to watching the video : Explain what you did wrong prior to watching this video. If you have never interviewed for a job, then write about your interview for admission.
Paraphrase growth and development : Dogs grow and develop over time, starting as puppies and maturing into adult dogs. This process involves changes in size, shape, and function
Paraphrase reproduction : Dogs are capable of sexual reproduction, which involves the production of offspring through the combination of genetic material from two parent dogs.

Reviews

Write a Review

Computer Engineering Questions & Answers

  Mathematics in computing

Binary search tree, and postorder and preorder traversal Determine the shortest path in Graph

  Ict governance

ICT is defined as the term of Information and communication technologies, it is diverse set of technical tools and resources used by the government agencies to communicate and produce, circulate, store, and manage all information.

  Implementation of memory management

Assignment covers the following eight topics and explore the implementation of memory management, processes and threads.

  Realize business and organizational data storage

Realize business and organizational data storage and fast access times are much more important than they have ever been. Compare and contrast magnetic tapes, magnetic disks, optical discs

  What is the protocol overhead

What are the advantages of using a compiled language over an interpreted one? Under what circumstances would you select to use an interpreted language?

  Implementation of memory management

Paper describes about memory management. How memory is used in executing programs and its critical support for applications.

  Define open and closed loop control systems

Define open and closed loop cotrol systems.Explain difference between time varying and time invariant control system wth suitable example.

  Prepare a proposal to deploy windows server

Prepare a proposal to deploy Windows Server onto an existing network based on the provided scenario.

  Security policy document project

Analyze security requirements and develop a security policy

  Write a procedure that produces independent stack objects

Write a procedure (make-stack) that produces independent stack objects, using a message-passing style, e.g.

  Define a suitable functional unit

Define a suitable functional unit for a comparative study between two different types of paint.

  Calculate yield to maturity and bond prices

Calculate yield to maturity (YTM) and bond prices

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd