Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam 312-49v10 All Questions
Exam 312-49v10 All Questions

View all questions & answers for the 312-49v10 exam

ECCouncil CHFI v10 312-49v10 Question # 148 Topic 16 Discussion

312-49v10 Exam Topic 16 Question 148 Discussion:
Question #: 148
Topic #: 16

Which following forensic tool allows investigator to detect and extract hidden streams on NTFS drive?


A.

Stream Detector


B.

TimeStomp


C.

Autopsy


D.

analyzeMFT


Get Premium 312-49v10 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.