WorksheetsInvestigasi Forensics Siber (Quiz W6)
Total questions: 20
Worksheet time: 15mins
Name
Class
Date
1.
What is the primary objective of the forensic investigation process?
a)
To repair damaged systems.
b)
To prevent future cyberattacks.
c)
To identify, collect, and preserve digital evidence.
d)
To assess financial losses due to cybercrimes.
2.
During the pre-investigation phase, what is the key task for a Computer Hacking Forensic Investigator (CHFI)?
a)
Conducting forensic analysis.
b)
Preparing a forensic report.
c)
Gathering initial information and assessing the case.
d)
Interrogating suspects.
3.
What is the primary goal of the "First Response" phase in digital forensics?
a)
To conduct a detailed analysis of evidence.
b)
To secure and preserve the crime scene and evidence.
c)
To generate forensic reports for legal proceedings.
d)
To recover deleted files from the suspect's device.
4.
What is the primary focus of the "Investigation" phase in digital forensics?
a)
Restoring the system to its original state.
b)
Identifying potential suspects.
c)
Analyzing collected evidence and drawing conclusions.
d)
Documenting the investigation process.
5.
What is a crucial task during the post-investigation phase?
a)
Arresting the suspects.
b)
Sharing findings with the media.
c)
Preparing a final forensic report.
d)
Gathering more initial information.
6.
In the context of the forensic investigation process, what does "chain of custody" refer to?
a)
A chronological order of events.
b)
The process of securing the crime scene.
c)
The documentation and tracking of evidence.
d)
A network security protocol.
7.
During the pre-investigation phase, what is the importance of creating an incident response policy?
a)
It ensures legal prosecution of suspects.
b)
It establishes guidelines for handling cyber incidents.
c)
It recovers lost data.
d)
It repairs damaged systems.
8.
What is the primary purpose of the "First Response" phase?
a)
To secure and preserve evidence.
b)
To identify potential suspects.
c)
To assess financial losses.
d)
To analyze collected data.
9.
What is the main responsibility of a forensic investigator during the "Investigation" phase?
a)
Recovering lost data.
b)
Interrogating suspects.
c)
Preparing a budget for the investigation.
d)
Analyzing collected evidence.
10.
What is the primary goal of the "Post-investigation" phase?
a)
Preparing a final forensic report.
b)
Gathering initial information.
c)
Continuing the investigation process.
d)
Identifying potential vulnerabilities.
11.
What is the primary purpose of conducting a forensic analysis during the "Investigation" phase in digital forensics?
a)
To secure and preserve evidence.
b)
To recover lost data.
c)
To identify potential suspects.
d)
To extract valuable information from collected evidence.
12.
Why is it essential for a forensic investigator to maintain a well-documented chain of custody during the investigation phase?
a)
To determine the scope of the incident.
b)
To track the location and handling of evidence to ensure its integrity.
c)
To establish a timeline of events.
d)
To identify potential vulnerabilities in the system.
13.
During the investigation phase, what is the primary goal of forensic imaging?
a)
To create a mirror image of the suspect's hard drive.
b)
To recover deleted files.
c)
To analyze network traffic.
d)
To encrypt sensitive data.
14.
In the context of the investigation phase, what is the significance of data carving?
a)
It involves searching for clues at the crime scene.
b)
It is the process of extracting data fragments from unallocated space.
c)
It focuses on analyzing log files.
d)
It refers to the recovery of lost passwords.
15.
During the pre-investigation phase, why is it essential to establish a clear chain of custody for evidence?
a)
To track the location and handling of evidence to ensure its integrity.
b)
To determine the scope of the incident.
c)
To secure the crime scene.
d)
To identify potential suspects.
16.
Why is careful planning essential when conducting a search and seizure in a digital forensics investigation?
a)
To ensure that the evidence is collected legally and in compliance with established procedures.
b)
To increase the chances of capturing cybercriminals in the act.
c)
To minimize the collection of digital evidence.
d)
To expedite the investigation process and save time and resources.
17.
Why is it important to document a crime scene in digital forensics through techniques such as photography and sketching?
a)
To record the scene for media coverage.
b)
To establish the motive behind the crime
c)
To create artistic representations of the crime scene.
d)
To preserve a visual record of the scene and the relative placement of evidence.
18.
When encountering a powered-off computer as part of a digital forensics investigation, what is the first step an investigator should take to ensure proper evidence handling?
a)
Attempt to turn on the computer to assess its contents.
b)
Immediately disconnect it from any power source to preserve evidence.
c)
ake a photograph of the computer and its surrounding environment.
d)
Begin the forensic analysis of the computer's hard drive.
19.
During which phase of a computer investigation are forensic imaging and evidence collection typically conducted, and what is the primary goal of this phase?
a)
Identification phase; to secure and preserve the crime scene.
b)
Analysis phase; to extract valuable information from collected evidence.
c)
Recovery phase; to recover lost data files.
d)
First Response phase; to document the incident and identify potential suspects.
20.
Dlm suatu kolam trdpat 12 ekor ikan. Suatu hari 5 ikan dimakan bangau, 3 tnggelam, dan 1 dimakan kucing. Berapa sisanya?
a)
Enam
b)
Tujuh
c)
Delapan
d)
Sebelas
100 %
