On NTFS file system, which of the following tools can a forensic investigator use in order to identify timestomping of evidence files? A. Exiv2 B. analyzeMFT C. Timestomp D. wbStego Suggested Answer: C Community Answer: B This question is in 312-49V10 EC-Council Computer Hacking Forensic Investigator (CHFI) v10 Exam For getting EC-Council Computer Hacking Forensic Investigator (CHFI) Certificate Disclaimers: The website is not related to, affiliated with, endorsed or authorized by EC-Council. Trademarks, certification & product names are used for reference only and belong to EC-Council. The website does not contain actual questions and answers from EC-Council's Certification Exams.
Please login or Register to submit your answer