Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Logical Operations Exam CFR-210 Topic 2 Question 70 Discussion

Actual exam question for Logical Operations's CFR-210 exam
Question #: 70
Topic #: 2
[All CFR-210 Questions]

A suspicious laptop is found in a datacenter. The laptop is on and processing data, although there is no application open on the screen. Which of the following BEST describes a Windows tool and technique that an investigator should use to analyze the laptop's RAM for working applications?

Show Suggested Answer Hide Answer
Suggested Answer: B

Contribute your Thoughts:

Christiane
9 days ago
Hmm, I think option D is the way to go. Volatility is the tool for memory analysis, and that's exactly what we need to look for those sneaky running applications.
upvoted 0 times
...
Malcom
21 days ago
I'm not sure, but I think C) Task manager and Application analysis could also be useful.
upvoted 0 times
...
Carey
23 days ago
I agree with Zona. Volatility is a great tool for analyzing RAM.
upvoted 0 times
...
Zona
24 days ago
I think the best option is D) Volatility and Memory analysis.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77