X hits on this document

Powerpoint document

Security+ Guide to Network Security Fundamentals, Third Edition - page 58 / 60

234 views

0 shares

0 downloads

0 comments

58 / 60

Security+ Guide to Network Security Fundamentals, Third Edition

Responding to a Computer Forensics Incident (continued)

Examine for evidence (continued)

RAM slack

Can contain any information that has been created, viewed, modified, downloaded, or copied since the computer was last booted

Drive file slack (sometimes called drive slack)

Contains remnants of previously deleted files or data from the format pattern associated with disk storage space that has yet to be used by the computer

An additional source of hidden clues can be gleaned from metadata, or data about data

Document info
Document views234
Page views234
Page last viewedMon Jan 23 11:19:23 UTC 2017
Pages60
Paragraphs499
Words2429

Comments