Describe how to investigate an intrusion event such as a redirect attack on a Windows laptop with malware upload. What would you likely discover going through the laptop and network information (hint: going through pcap files, system logs, security logs, and registry hive (ntuser.dat, etc...))? How would you assess system and network artifacts for correctness and significance?

Systems Architecture
7th Edition
ISBN:9781305080195
Author:Stephen D. Burd
Publisher:Stephen D. Burd
Chapter14: System Administration
Section: Chapter Questions
Problem 12RQ
icon
Related questions
Question

Describe how to investigate an intrusion event such as a redirect attack on a Windows laptop with malware upload. What would you likely discover going through the laptop and network information (hint: going through pcap files, system logs, security logs, and registry hive (ntuser.dat, etc...))? How would you assess system and network artifacts for correctness and significance?

Expert Solution
steps

Step by step

Solved in 2 steps

Blurred answer
Knowledge Booster
Network Protection Strategies
Learn more about
Need a deep-dive on the concept behind this application? Look no further. Learn more about this topic, computer-science and related others by exploring similar questions and additional content below.
Similar questions
  • SEE MORE QUESTIONS
Recommended textbooks for you
Systems Architecture
Systems Architecture
Computer Science
ISBN:
9781305080195
Author:
Stephen D. Burd
Publisher:
Cengage Learning