Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

Analyze the SYSTEM hive using the Registry Explorer tool and unswer the following questions: a . What is the current control set? ( SYSTEMSelectCurrent )

Analyze the SYSTEM hive using the Registry Explorer tool and unswer the following questions:
a. What is the current control set? (SYSTEMSelectCurrent)
Why is it important to know what the CurrentControlSet is?
b. What is the timezone when the image of the evidence hard disk was captured? (SYSTEMCurrentControlSetYControllTimeZonelnformation)
Why is it important to know the time zone that the machine is set in?
c. Is the LastAccess timestamp disabled?
(SYSTEMCurrentControlSetControl/FileSystem)
Locate NtfsDisableLastAccessUpdate. If set to Ox1, then Access timestamps aro disabled and will not update when a file is opened.
d. What is the computer name?
(SYSTEMYCurrentControlSet Control CompuerNamelComputerName)
e. Check the GUID {5185491C-401D-491E-8c6F-07F6AFFF 1A64}(SYSTEMCurreniControlSet Services/Tcpip YParameters Interfaces)
What is the DHCPDomain?
What is the last DHCPIPAddress?
f. Find the Network named LOT38
(SOFTWARETMicrosoft WindowsiNTVCurrent Version\NetworkList Signatures) Unmmanaged,
SOFTWAREMierrsoft Window NNTCurrent Version (NetworkList Profiles)
\table[[Description],[Gateway],[ProfiloGuid],[First Connection],[Last Connection],[Connection Type],[WIGLE lookup?]]
For the WIGLE lookup, go to wigle net > View > Basic search
g. Find the Network named District Taco
(SOFTWARE(Microsoft\ WindowsNTVCurent Version)NetworkList'SignaturesalUmananaged, SOFTWARELMicrosoft WindowsNICursentVerstonWNetwarkList\Profiles)
\table[[Description,],[Gateway,],[ProfileGuid,],[First Conncction,],[Last Connection,],[Connoction Typo,],[WIGLE lookup?,]]
h. When was the computer gracefully shur down last time (64 bit Hes Vallue-Litule Endina)?(SYSTEMCurrentControlSet)ControWindows)
image text in transcribed

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image

Step: 3

blur-text-image

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

Database Concepts

Authors: David M. Kroenke, David J. Auer

7th edition

133544621, 133544626, 0-13-354462-1, 978-0133544626

More Books

Students also viewed these Databases questions