Wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Cyber Forensics Quiz

Total questions: 29

Worksheet time: 15mins

Name
Class
Date
1.

Computer forensics is also known as?

a)

computer forensics investigations

b)

computer crime

c)

computer forensic science

d)

digital forensic science

2.

Which one option is not a type of cybercrime?

a)

Damage to data and systems

b)

Installing antivirus for protection

c)

Forgery

d)

Data theft

3.

CCFP stands for?

a)

Cyber Certified Forensics Professional

b)

Certified Cyber Forensics Product

c)

Certified Cyber Forensics Professional

d)

Certified Cyber Forensics Program

4.

______________ involves the preservation, identification, extraction, and documentation of computer evidence stored as data or magnetically encoded information.

a)

Digital Forensics

b)

Live Data Collection

c)

Forensic Duplication

d)

Incident Response Methodology

5.

______________ recording the system time and date.

a)

w

b)

rdate

c)

date and time

d)

ls

6.

How many c's are in computer forensics?

a)

4

b)

3

c)

1

d)

2

7.

You are supposed to maintain three types of records. Which answer is not a record?

a)

Chain of custody

b)

Documentation of the crime scene

c)

Document your actions

d)

Searching the crime scene

8.

The first computer virus is ——–

a)

Creeper

b)

Blaster

c)

Virus Bomb

d)

Sasser

9.

______________ data that is stored in memory, or exists in transit, that will be lost when the computer loses power or is turned off.

a)

Both

b)

None of the above

c)

Volatile

d)

Non Volatile

10.

Expand DoS Attacks __________________________

a)

Duplication of Service

b)

None of the above

c)

Disk operating System

d)

Denial of Service

11.

What category of software is designed to cause detriment to your computer?

a)

Bugs

b)

Malware

c)

Network snakes

d)

System software

12.

Rules of Digital Forensic 'An examination should never be performed on the original media.' Is true or false?

a)

true

b)

both

c)

false

d)

None of the above

13.

Expand CSIRT____________________________________

a)

Cyber Security Incident Response Team

b)

Computer Security Incident Request Team

c)

Computer Security Incident Response Team

d)

None of the above

14.

Which of the following describes malicious computer programs such as viruses, worms, and Trojan horses?

a)

Arson

b)

Larceny

c)

Malware

d)

Software piracy

15.

Choose the process model whose goal is to completely describe the flow of information in a digital investigation.

a)

The Physical Model

b)

The Subphase Model

c)

The Evidence Flow Model

d)

The Staircase Model

16.

Write any two components of Incident Response Methodology ___________ and _____________

a)

Preparation, Identification

b)

Containment, Eradication

c)

Recovery, Lessons learned

d)

Any of the above

17.

After An Incident Responder Identifies That A Security Incident Is In Progress, What Is The Next Step In The Incident Response Process?

a)

Containment

b)

Eradication

c)

Recovery

d)

Preparation

18.

Which of the following are not the Types of Cybercrimes?

a)

Software Piracy

b)

Monkey Attacks

c)

Denial-of-Service Attacks

d)

Cyber Pornography

19.

Which of the following have the capability of spreading itself? It doesn’t require the host and human support to spread.

a)

Virus

b)

Trojan

c)

Bug

d)

Worm

20.

Minimizing the number of incidents is a function of which of the following?

a)

Incident response testing

b)

Forensic analysis

c)

Risk management

d)

Security investments

21.

Which of the following attack types best describes a targeted attack that successfully obstructs functionality?

a)

Spam attack

b)

Killer attack

c)

DDoS attack

d)

Malware attack

22.

Which of the following belong to Categories of Cybercrimes?

a)

All the above

b)

Cybercrimes against Government

c)

Cybercrimes against Property

d)

Cybercrimes against People

23.

What is the command used to identify the running processes?

a)

query user

b)

netstat

c)

ps

d)

nbtstart

24.

Which tool is not a Qualified Forensic Duplicate of a Hard Drive?

a)

None of the above

b)

EnCase

c)

SafeBack

d)

FTK Imager

25.

How Many Rules in Digital forensic?

a)

6

b)

10

c)

19

d)

12

26.

In Computer intrusions the attacker will leave multiple traces of their presence in:

a)

Registry

b)

All of the Above

c)

File System

d)

System Logs

27.

What is a grey hat hacker?

a)

None

b)

Combination of White and black hat hackers

c)

White Hat Hacker

d)

Black Hat Hacker

28.

To crack the password you need a cracking tool such as:

a)

LC4

b)

John The Ripper

c)

pwdump

d)

All of the above

29.

Which of the following actions compromise cyber security?

a)

Exploit

b)

Threat

c)

Attack

d)

Vulnerability