Valid Digital-Forensics-in-Cybersecurity Dumps shared by ExamDiscuss.com for Helping Passing Digital-Forensics-in-Cybersecurity Exam! ExamDiscuss.com now offer the newest Digital-Forensics-in-Cybersecurity exam dumps, the ExamDiscuss.com Digital-Forensics-in-Cybersecurity exam questions have been updated and answers have been corrected get the newest ExamDiscuss.com Digital-Forensics-in-Cybersecurity dumps with Test Engine here:
A forensics investigator is investigating a Windows computer which may be collecting data from other computers on the network. Which Windows command line tool can be used to determine connections between machines?
Correct Answer: D
Comprehensive and Detailed Explanation From Exact Extract: Netstatis a standard Windows command line utility that displays active network connections, routing tables, and network interface statistics. It is widely used in forensic investigations to identify current and past TCP/IP connections, including IP addresses and port numbers associated with remote hosts. This information helps investigators identify if the suspect computer has active connections to other machines potentially used for data collection or command and control. * Telnet is a protocol used to connect to remote machines but does not display current network connections. * Openfiles shows files opened remotely but not network connection details. * Xdetect is not a standard Windows tool and not recognized in forensic investigations. Reference:According to NIST SP 800-86 and SANS Digital Forensics guidelines,netstatis an essential tool for gathering network-related evidence during system investigations.