Shared Flashcard Set

Details

1 - Computer Forensics || Final Exam
1 - Computer Forensics || Final Exam
67
Computer Science
Undergraduate 4
11/27/2018

Additional Computer Science Flashcards

 


 

Cards

Term
ls:
Definition
Short for list, this command can be used to view all of the files and folders in your current working directory.
Term
pwd:
Definition
Short for print working directory, this command can be used to display the directory in which you are currently working.
Term
cd:
Definition
Short for change directory, this command can be used to change the directory in which you are currently working.
Term
sudo:
Definition
Also referred to as superuser do, a sudo command allows you to run other commands with administrative privileges.
Term
fdisk:
Definition
Also referred to ask format disk, a command allows you to partition a disk volume.
Term
apt-get:
Definition
Command line code used for downloading installing additional packages.
Term
What is the File Header For The Following File Type:

JPEG
Definition
JFIF
Term
What is the File Header For The Following File Type:

EXE
Definition
MZ
Term
What is the File Header For The Following File Type:

ZIP
Definition
PK
Term
What is the File Header For The Following File Type:

MS Office
Definition
D0CF11E0
Term
Unallocated Space
Definition
Space that is not allocated to a partition.
Term
Data Carving
Definition
A process where a chunk of data is searched for signatures that correspond to the start and end of known file types.
Term
Free Space
Definition
Space in a formatted media that is not assigned to a file.
Term
What happens when a file is deleted in the following OS:

Windows XP
Definition
Moves it to the Recycle Bin, the file is automatically renamed.

DC#.xxx.

–D: for deleted

–C: letter of the logical drive where file existed before it was deleted

–#: number assigned in the order that the files are received by the Recycle Bin

–xxx: the original extension of the file
Term
What happens when a file is deleted in the following OS:

Windows Vista & Above
Definition
When a file is sent to the recycle bin, two files are created.

–The first file is assigned the two character prefix of $R followed by a set of random letters and numbers.

–The file extension consists of the file’s original extension.

–The second file is assigned a prefix of $I followed by the random letters and numbers matching those assigned to the $R file.

–This file also keeps the original file’s extension.

–The file names will be identical with the exception of the $I versus the $R.
Term
EXIF
Definition
Embed information about the device capturing the image (typically a camera) into the image itself.
Term
EXIF Metadata
Definition
Consist of a series of Tags and Values, which can include things such as the make and model of the camera used to generate the image, the date and time the image was captured, and the geo-location information about the capturing device.
Term
JFIF/JPEG Metadata
Definition
Including pixel density and aspect ratio, and optionally a small embedded thumbnail of the image to be used by gallery display applications.
Term
ID3v1 tags
Definition
128 bytes at the end of the MP3 file.
Term
ID3v2 tags
Definition
No fixed size and may contain a much richer variety of metadata for MP3 files.

•Can include track title, artist information, embedded image data.
Term
Archive Files
Definition
Container files designed to hold other files.
Term
Types of Archive Files
Definition
ZIP

RAR
Term
OLE Files
Definition
Documents created using the Microsoft Office 1997–2003 binary formats.
Term
OOXML Files
Definition
Microsoft’s replacement for the binary, proprietary OLE compound format.
Term
ODF Files
Definition
Another open standard for editable documents similar to OOXML.
Term
PDF
Definition
A container file that holds a sequence of PostScript layout instructions and embedded fonts and graphics.
Term
sd_(letter)
Definition
Disk that uses a SATA Port
Term
hd_(letter)
Definition
IDE Controller Disk
Term
mount:
Definition
Mount a file system
Term
dd:
Definition
Convert and copy a file, write disk headers, boot records.
Term
mount -t vfat
Definition
Mount a FAT type file
Term
fdisk -l
Definition
List the partition tables
Term
sd_n (where n is a number)
Definition
A particularly numbered disk that uses a SATA Port.
Term
sudo -i
Definition
Also referred to as superuser do, a sudo command allows you to run other commands with administrative privileges.

Simulate initial login, run the shell specified in the passwd(5) entry of the user that the command is being run as.
Term
Sleuth Kit Command: mmls
Definition
Display the partition layout of a volume system (partition tables).
Term
Sleuth Kit Command: fsstat
Definition
Display general details of a file system.
Term
Sleuth Kit Command: blkcat
Definition
Display the contents of file system data unit in a disk image.
Term
Define Windows Registry
Definition
A hierarchical database, which can be described as a central repository for configuration data.
Term
Define Windows Registry Security Identifiers
Definition
Uniquely identify security principles
Term
Define Globally Unique Identifiers (GUID)
Definition
Numbers that uniquely identify objects such as computers, program components, and devices.
Term
HKEY_Classes_Root
Definition
HKCR
Term
HKEY_Current_User
Definition
HKCU
Term
HKEY_LOCAL_Machine
Definition
HKLM
Term
HKEY_USERS
Definition
HKU
Term
HKEY_CURRENT_CONFIG
Definition
HKCC
Term
Key
Definition
Similar to a folder
Term
Value
Definition
Similar to a file
Term
Type
Definition
Similar to a file extension
Term
Data
Definition
Similar to a file's contents
Term
What registry root key is exclusive to Windows 9x/Me systems and stores hardware configuration settings?
Definition
HKEY_DYN_DATA
Term
What is Windows Registry Structure?
Definition
key, value (value name, type, data)>
Term
Define Registry Hive Files
Definition
Registry branches stored in unique files.
Term
Define Registry
Definition
A collection of files containing system and user information.
Term
Define Registry Editor
Definition
A Windows utility for viewing and modifying data in the Registry.
Term
Define HKEY
Definition
Categories the registry is broken into.
Term
What is a Registry Key?
Definition
Folders inside of an HKEY
Term
Define Subkey
Definition
A key displayed under another key.
Term
Define Branch (Registry)
Definition
A key and its contents, including subkeys.
Term
Define Value (Registry)
Definition
A name and data in a key; it’s similar to a file and its data content.
Term
Define Default Value
Definition
All keys have a default value that may or may not contain data.
Term
POP3 (Post Office Protocol) server
Definition
Incoming mail server.

By default, message in server is deleted after the access
Term
IMAP (Internet Message Access Protocol) server
Definition
Incoming Mail Server

Message stays in server even after the access.

Messages can be organized in folders.
Term
SMTP (simple mail transfer protocol) server
Definition
Outgoing Mail Server

Push Protocol

First consult DNS to find IP address of the recipient’s server before sending.
Term
Message-ID
Definition
Used for threading and aiding identification for duplications.
Term
ENVelope Identifier (ENVID)
Definition
Used for the purpose of message tracking
Term
SPF
Definition
A simple email-validation system designed to detect email spoofing.
Term
DKIM
Definition
Another email authentication method designed to detect email spoofing.
Supporting users have an ad free experience!