Unformatted text preview: I previewed the evidence by looking in data files. o Export data files Used “Add Evidence Item” to export the data files o Create a hash to benchmark your case evidence Created a MD5 hash file o Acquire an image of evidence data Navigated to open image file by adding a new evidence item. Navigate evidence items o Navigated to the evidence folder in order to see all evidence items. Validate forensic images o Clicked File > Verify Drive/Image in order to validate forensic images. 2-64....
View Full Document
- Spring '14