Describe how to investigate an intrusion event such as a redirect attack on a Windows laptop with malware upload. What would you likely discover going through the laptop and network information (hint: going through pcap files, system logs, security logs, and registry hive (ntuser.dat, etc...))? How would you assess system and network artifacts for correctness and significance?
Describe how to investigate an intrusion event such as a redirect attack on a Windows laptop with malware upload. What would you likely discover going through the laptop and network information (hint: going through pcap files, system logs, security logs, and registry hive (ntuser.dat, etc...))? How would you assess system and network artifacts for correctness and significance?
Chapter14: System Administration
Section: Chapter Questions
Problem 12RQ
Related questions
Question
Describe how to investigate an intrusion event such as a redirect attack on a Windows laptop with malware upload. What would you likely discover going through the laptop and network information (hint: going through pcap files, system logs, security logs, and registry hive (ntuser.dat, etc...))? How would you assess system and network artifacts for correctness and significance?
Expert Solution
This question has been solved!
Explore an expertly crafted, step-by-step solution for a thorough understanding of key concepts.
Step by step
Solved in 2 steps
Knowledge Booster
Learn more about
Need a deep-dive on the concept behind this application? Look no further. Learn more about this topic, computer-science and related others by exploring similar questions and additional content below.Recommended textbooks for you
Systems Architecture
Computer Science
ISBN:
9781305080195
Author:
Stephen D. Burd
Publisher:
Cengage Learning
Systems Architecture
Computer Science
ISBN:
9781305080195
Author:
Stephen D. Burd
Publisher:
Cengage Learning