Create a file-system-based timeline

Assignment Help Computer Engineering
Reference no: EM131688373

Lab: Evidence Acquisition and Analysis Lab

For this lab, you will practice acquiring a digital image of your own laptop or computer and setting up a forensic analysis workstation. You will NOT have to turn in the image of your own laptop (for privacy reasons), but you will have to turn in evidence that you have completed this task. For all the required information that needs to be turned in, a Word document is sufficient.

For this exercise, you will need to do the following:

Download a Linux-based forensics live CD.

Use this to acquire the harddrive on your own computer by booting into the LiveCD and then storing an image file on a portable hard drive. You can use any of the commandline-based acquisition tools you like (recommended to us: dcfldd for on-the-fly hashing).

Take an MD5 and SHA256 hash of the drive before AND after you do the acquisition; turn these in. If you use a program that has on-the-fly hashing, turn that in as well. Compare your results to the hash of the image file; ensure that they match.

Describe how you ensured that the drive you were acquiring was not modified during the acquisition.

During the running of the hashing algorithms, I made sure nothing was running in the background or open except for the hashing program itself. If I was in the field I would also use a write block to make sure there definitely was no modification and keep the data untouched.

On your laptop, install the virtualization software of your choice to create a forensics workstation. Ideally this would be dedicated hardware, but use your own device. It is recommended you install the SIFT Kit, but any other Forensic distro will do.

Using Autopsy, load the image into a new case and verify that the hashes still match.

Create a file-system-based timeline and turn in the first 10 and last 10 entries as well as the hash value of the file.

In Autopsy, perform a keyword search for the name of your university; how many files were returned that matched? (Just provide the count, not the filenames or their contents.)

Attachment:- Assignment File.rar

Reference no: EM131688373

Questions Cloud

What warner brothers do to ensure successful repatriation : The director of sales and marketing for a Warner Brothers theme park has been working in Madrid. She is getting ready to return to the United States.
Discuss component of network transportation : What is the answer to this question and what are three main points that I can talk about in my essay
Operate within the time and budget constraints : Proper scope identification and management will help the project evolve smoothly and operate within the time and budget constraints.
Describe illegal immigrants should be provided a path : Describe illegal immigrants should be provided a path for citizenship. Pay fines, learn English, obey the laws and wait your turn to considered for citizenship.
Create a file-system-based timeline : Create a file-system-based timeline and turn in the first 10 and last 10 entries as well as the hash value of the file
Monopolistically competitive : Think of an industry that is close to being purely competitive and compare it with another industry of your choice that is monopolistically competitive.
Discuss steps in developing a succession planning system : List and discuss the steps involved in developing a succession planning system. How might a succession planning system differ between high-potential employees.
Reconstruct and analyze monetary : Reconstruct and analyze monetary The Mexico Peso Crisis. what the effect was, what impact it had on trade and on living conditions in the country.
Hire workers under a matching strategy : What is the total cost to hire workers under a matching (chase) strategy?

Reviews

Write a Review

Computer Engineering Questions & Answers

  Flow chart in modular approach

Design an algorithm in order to prepare a daily hotel charge report. Input comprises of the series of records that consists of the room number, the customer name, cost of room.

  Give a brief description of the structure and operation

Give a brief description of the structure and operation of a data mining system, illustrated by an application.

  Write a process findranks in java

Write down a method findRanks in Java that accepts an unsorted array of integers vals, and a starting and ending rank start and end, numbering ranks from 0, and returns an unsorted (any order is acceptable) array containing the lo-th through the h..

  Calculate gate length of my laptop cpu using its clock speed

How can I calculate gate length of my laptop cpu using its clock speed rate like i7- 2.3 Ghz? that is all i got to do the calculations. of course it would be ok to have some reasonable assumptions.

  Describe one application relevant for ig based energy system

IGs need dc-ac, ac-dc, and ac-ac converters. Describe one application, relevant for IG-based energy system, for each of those power conversions.

  Write down python program

Write down Python program

  Define between erp configuration and customization

How does this guide or limit the scope of an enterprise system implementation project.

  Design a uml diagram for a grade class

Design a UML diagram for a Grade class with the following private data members.

  Different types of data storage processes

Different types of data storage processes.

  Determining the better internet browser

Which among the following is better software tool: Mozilla Firefox, Internet Explorer, or Google Chrome? Supplement your argument with evidence, and signify whether or not you alter your position based on the discussion.

  Prepare a written review of an article from a recent

prepare a written review of an article from a recent business magazine. also prepare a powerpoint presentation as

  Use homogeneous coordinate system for all transformations

Write a c program to implement BOUNCING BALL in coputer graphics.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd