Timelining

Timelining

12th Grade

10 Qs

quiz-placeholder

Similar activities

TXT

TXT

1st - 12th Grade

12 Qs

Python- Text file handling Quiz 2

Python- Text file handling Quiz 2

12th Grade

10 Qs

K-pop

K-pop

7th - 12th Grade

12 Qs

Txt quiz

Txt quiz

6th - 12th Grade

10 Qs

Premiere Pro Overview

Premiere Pro Overview

11th - 12th Grade

9 Qs

All About PMEBGE

All About PMEBGE

KG - Professional Development

7 Qs

k pop

k pop

KG - Professional Development

10 Qs

The Quite Quick Quizizz Quiz

The Quite Quick Quizizz Quiz

7th Grade - University

10 Qs

Timelining

Timelining

Assessment

Quiz

Other

12th Grade

Medium

Created by

shyrlyn valdez

Used 2+ times

FREE Resource

10 questions

Show all answers

1.

MULTIPLE SELECT QUESTION

45 sec • 1 pt

Which of the following artifacts are considered as the Windows Forensic Trinity?

Filesystem Metadata

Registry

Windows Event Logs

Windows Startup

Answer explanation

The three core areas of focus are filesystem metadata, windows artifact data, and Windows registry information.

Understanding all three areas and how they interrelate is a skill worth working towards.

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What point is used to examine the temporal proximity in the timeline?

Slope Point

Pivot Point

Parrot Point

No Point

Answer explanation

Use the pivot to look before and after in your timeline to get a better idea of what

happened on the system

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

NTFS Timestamps: Time the data content of a file was last modified

M

A

C

B

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

The most famous super timeline tool is Plaso

True

False

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

If you are in a rush, is it better to create a supertimeline? Why or Why not?

Yes. Supertimeline is quicker to generate than filesystem timeline.

No. Just do filesystem timeline. Supertimeline is not a quick process to run

No. I don't want to do timelining

Yes. Supertimeline is not a quick to generate and I like to provide the analysis the next day.

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What tool outputs metadata about the events extracted from log2timeline

plasm

pinfo

fls

mactime

7.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which of the following can be detected by timeline analysis?

Anti-Forensics

Covert Tunneling

Covid

Influenza

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?