WGU Course C840 -
z z z
Digital Forensics in Cybersecurity 2022
z z z z z z
Solved 100% z z
Thezchiefzinformationzofficerzofzanzaccountingzfirmzbelieveszsensitivezdataziszbeingzexpo
sedzonzthezlocalznetwork.zWhichztoolzshouldzthezITzstaffzuseztozgatherzdigitalzevidenceza
boutzthiszsecurityzvulnerability?
AzSniffer
BzDiskzanalyzer
CzTracer
DzViruszscannerz-zA
Azpolicezdetectivezinvestigatingzazthreatztraceszthezsourceztozazhouse.zThezcouplezatzthe
zhousezshowszthezdetectivezthezonlyzcomputerzthezfamilyzowns,zwhichziszinztheirzson'szb
edroom.zThezcouplezstateszthatztheirzsonziszpresentlyzinzclasszatzazlocalzmiddlezschool.
Howzshouldzthezdetectivezlegallyzgainzaccessztozthezcomputer?
AzObtainzazsearchzwarrantzfromzthezpolice
BzSeizezthezcomputerzunderzthezUSAzPatriotzAct
CzObtainzconsentztozsearchzfromzthezparents
DzSeizezthezcomputerzunderzthezComputerzSecurityzActz-zC
HowzshouldzazforensiczscientistzobtainztheznetworkzconfigurationzfromzazWindowszPCzb
eforezseizingzitzfromzazcrimezscene?
AzByzusingzthezipconfigzcommandzfromzazcommandzpromptzonzthezcomputer
BzByzusingztheztracertzcommandzfromzazcommandzpromptzonzthezcomputer
CzByzloggingzintozthezrouterztozwhichzthezPCziszconnected
DzByzinstallingzaznetworkzpacketzsnifferzonzthezcomputerz-zA
Thezhumanzresourceszmanagerzofzazsmallzaccountingzfirmzbelieveszhezmayzhavezbeenz
azvictimzofzazphishingzscam.zThezmanagerzclickedzonzazlinkzinzanzemailzmessagezthatzas
kedzhimztozverifyzthezlogonzcredentialszforzthezfirm'szonlinezbankzaccount.
Whichzdigitalzevidencezshouldzazforensiczinvestigatorzcollectztozinvestigatezthiszincident
?
AzSystemzlog
BzSecurityzlog
CzDiskzcache
DzBrowserzcachez-zD
Afterzazcompany'szsingle-
purpose,zdedicatedzmessagingzserverziszhackedzbyzazcybercriminal,zazforensicszexpertz
iszhiredztozinvestigatezthezcrimezandzcollectzevidence.
Whichzdigitalzevidencezshouldzbezcollected?
,WGU Course C840 -
z z z
Digital Forensics in Cybersecurity 2022
z z z z z z
Solved 100% z z
AzWebzserverzlogs
BzFirewallzlogs
CzPhishingzemails
DzSpamzmessagesz-zB
Thomaszreceivedzanzemailzstatingzthatzhezneededztozfollowzazlinkzandzverifyzhiszbankzac
countzinformationztozensurezitzwaszsecure.zShortlyzafterzfollowingzthezinstructions,zTho
masznoticedzmoneyzwaszmissingzfromzhiszaccount.
WhichzdigitalzevidencezshouldzbezconsideredztozdeterminezhowzThomas'zaccountzinfor
mationzwaszcompromised?
AzSocialzmediazaccounts
BzRouterzlogs
CzFlashzdrivezcontents
DzEmailzmessagesz-zD
Thezchiefzexecutivezofficerz(CEO)zofzazsmallzcomputerzcompanyzhaszidentifiedzazpotenti
alzhackingzattackzfromzanzoutsidezcompetitor.z
Whichztypezofzevidencezshouldzazforensicszinvestigatorzuseztozidentifyzthezsourcezofzthez
hack?
AzDiskzdrivezbackups
BzNetworkztransactionzlogs
CzBrowserzhistory
DzEmailzheadersz-zB
Azforensiczscientistzarriveszatzazcrimezsceneztozbeginzcollectingzevidence.
Whatziszthezfirstzthingzthezforensiczscientistzshouldzdo?
AzTurnzoffzthezpowerztozthezentirezareazbeingzexamined
BzUnplugzallznetworkzconnectionszsozdatazcannotzbezdeletedzremotely
CzGatherzupzallzphysicalzevidencezandzmovezitzoutzaszquicklyzaszpossible
DzPhotographzallzevidencezinzitszoriginalzplacez-zD
Whichzmethodzofzcopyingzdigitalzevidencezensureszproperzevidencezcollection?
AzMakezthezcopyzusingzfileztransfer
BzCopyzfileszusingzdragzandzdrop
CzMakezthezcopyzatzthezbit-level
DzCopyzthezlogicalzpartitionsz-zC
Azcomputerzinvolvedzinzazcrimeziszinfectedzwithzmalware.zThezcomputerziszonzandzconne
ctedztozthezcompany'sznetwork.zThezforensiczinvestigatorzarriveszatzthezscene.
,WGU Course C840 -
z z z
Digital Forensics in Cybersecurity 2022
z z z z z z
Solved 100% z z
Whichzactionzshouldzbezthezinvestigator'szfirstzstep?
AzRemovezthezmalwarezandzsecurezthezcomputer.
BzUnplugzthezcomputer'szpowerzcord.
CzUnplugzthezcomputer'szEthernetzcable.
DzLabelzallzthezattachmentszandzsecurezthezcomputer.z-zC
Whatzarezthezthreezbasicztaskszthatzazsystemszforensiczspecialistzmustzkeepzinzmindzwh
enzhandlingzevidencezduringzazcybercrimezinvestigation?
Answerzoptionszmayzbezusedzmorezthanzoncezorznotzatzall.zSelectzyourzanswerszfromzth
ezpull-downzlist.
1zPreservezevidence
2zCatalogzevidence
3zPreparezevidence
4zMakezmultiplezcopieszofzevidence
5zDisseminatezevidence
6zPreparezevidencezreport
7zFindzevidence
Az1,3,7
Bz2,3,7z-zA
Howzdozforensiczspecialistszshowzthatzdigitalzevidencezwaszhandledzinzazprotected,zsec
urezmannerzduringzthezprocesszofzcollectingzandzanalyzingzthezevidence?
AzForensiczlabzlogbooks
BzForensiczsoftwarezlogs
CzChainzofzcustody
DzChainzofzemailzmessagesz-zC
Whichzcharacteristiczappliesztozmagneticzdriveszcomparedztozsolid-
statezdrivesz(SSDs)?
AzLowerzcapacity
BzBetterzdurability
CzLowerzpowerzconsumption
DzLowerzcostz-zD
Whichzcharacteristiczappliesztozsolid-
statezdrivesz(SSDs)zcomparedztozmagneticzdrives?
AzTheyzhavezslowerzstart-upztimes.
BzTheyzcostzless.
, WGU Course C840 -
z z z
Digital Forensics in Cybersecurity 2022
z z z z z z
Solved 100% z z
CzTheyzarezlesszsusceptibleztozdamage.
DzTheyzusezmorezpower.z-zC
Whichztypezofzstoragezformatzshouldzbeztransportedzinzazspecialzbagztozreducezelectrost
aticzinterference?
AzSolid-statezdrives
BzMagneticzmedia
CzDigitalzaudioztapes
DzOpticalzmediaz-zB
WhichzWindowszcomponentziszresponsiblezforzreadingzthezboot.inizfilezandzdisplayingzth
ezbootzloaderzmenuzonzWindowszXPzduringzthezbootzprocess?
AzWin32zsubsystem
BzNTLDR
CzNTOSKRNL
DzWindowszRegistryz-zB
Thezfollowingzlinezofzcodeziszanzexamplezofzhowztozmakezazforensiczcopyzofzazsuspectzdri
ve:ddzif=/dev/memzof=/evidence/image.memory1
Whichzoperatingzsystemzshouldzbezusedztozrunzthiszcommand?
AzChrome
BzBlackBerry
CzWindows
DzLinuxz-zD
WhichzfilezsystemziszsupportedzbyzMac?
AzHierarchicalzFilezSystemzPlusz(HFS+)
BzExtendedzFilezSystemz(Ext)
CzBerkeleyzFastzFilezSystemz(FFS)
DzReiserzFilezSystemz(ReiserFS)z-zA
Whichzlawzrequireszbothzpartiesztozconsentztozthezrecordingzofzazconversation?
AzHealthzInsurancezPortabilityzandzAccountabilityzActz(HIPAA)
BzUSAzPatriotzAct
CzCommunicationszAssistanceztozLawzEnforcementzActz(CALEA)
DzElectroniczCommunicationszPrivacyzActz(ECPA)z-zD
Whichzlawziszrelatedztozthezdisclosurezofzpersonallyzidentifiablezprotectedzhealthzinform
ationz(PHI)?
z z z
Digital Forensics in Cybersecurity 2022
z z z z z z
Solved 100% z z
Thezchiefzinformationzofficerzofzanzaccountingzfirmzbelieveszsensitivezdataziszbeingzexpo
sedzonzthezlocalznetwork.zWhichztoolzshouldzthezITzstaffzuseztozgatherzdigitalzevidenceza
boutzthiszsecurityzvulnerability?
AzSniffer
BzDiskzanalyzer
CzTracer
DzViruszscannerz-zA
Azpolicezdetectivezinvestigatingzazthreatztraceszthezsourceztozazhouse.zThezcouplezatzthe
zhousezshowszthezdetectivezthezonlyzcomputerzthezfamilyzowns,zwhichziszinztheirzson'szb
edroom.zThezcouplezstateszthatztheirzsonziszpresentlyzinzclasszatzazlocalzmiddlezschool.
Howzshouldzthezdetectivezlegallyzgainzaccessztozthezcomputer?
AzObtainzazsearchzwarrantzfromzthezpolice
BzSeizezthezcomputerzunderzthezUSAzPatriotzAct
CzObtainzconsentztozsearchzfromzthezparents
DzSeizezthezcomputerzunderzthezComputerzSecurityzActz-zC
HowzshouldzazforensiczscientistzobtainztheznetworkzconfigurationzfromzazWindowszPCzb
eforezseizingzitzfromzazcrimezscene?
AzByzusingzthezipconfigzcommandzfromzazcommandzpromptzonzthezcomputer
BzByzusingztheztracertzcommandzfromzazcommandzpromptzonzthezcomputer
CzByzloggingzintozthezrouterztozwhichzthezPCziszconnected
DzByzinstallingzaznetworkzpacketzsnifferzonzthezcomputerz-zA
Thezhumanzresourceszmanagerzofzazsmallzaccountingzfirmzbelieveszhezmayzhavezbeenz
azvictimzofzazphishingzscam.zThezmanagerzclickedzonzazlinkzinzanzemailzmessagezthatzas
kedzhimztozverifyzthezlogonzcredentialszforzthezfirm'szonlinezbankzaccount.
Whichzdigitalzevidencezshouldzazforensiczinvestigatorzcollectztozinvestigatezthiszincident
?
AzSystemzlog
BzSecurityzlog
CzDiskzcache
DzBrowserzcachez-zD
Afterzazcompany'szsingle-
purpose,zdedicatedzmessagingzserverziszhackedzbyzazcybercriminal,zazforensicszexpertz
iszhiredztozinvestigatezthezcrimezandzcollectzevidence.
Whichzdigitalzevidencezshouldzbezcollected?
,WGU Course C840 -
z z z
Digital Forensics in Cybersecurity 2022
z z z z z z
Solved 100% z z
AzWebzserverzlogs
BzFirewallzlogs
CzPhishingzemails
DzSpamzmessagesz-zB
Thomaszreceivedzanzemailzstatingzthatzhezneededztozfollowzazlinkzandzverifyzhiszbankzac
countzinformationztozensurezitzwaszsecure.zShortlyzafterzfollowingzthezinstructions,zTho
masznoticedzmoneyzwaszmissingzfromzhiszaccount.
WhichzdigitalzevidencezshouldzbezconsideredztozdeterminezhowzThomas'zaccountzinfor
mationzwaszcompromised?
AzSocialzmediazaccounts
BzRouterzlogs
CzFlashzdrivezcontents
DzEmailzmessagesz-zD
Thezchiefzexecutivezofficerz(CEO)zofzazsmallzcomputerzcompanyzhaszidentifiedzazpotenti
alzhackingzattackzfromzanzoutsidezcompetitor.z
Whichztypezofzevidencezshouldzazforensicszinvestigatorzuseztozidentifyzthezsourcezofzthez
hack?
AzDiskzdrivezbackups
BzNetworkztransactionzlogs
CzBrowserzhistory
DzEmailzheadersz-zB
Azforensiczscientistzarriveszatzazcrimezsceneztozbeginzcollectingzevidence.
Whatziszthezfirstzthingzthezforensiczscientistzshouldzdo?
AzTurnzoffzthezpowerztozthezentirezareazbeingzexamined
BzUnplugzallznetworkzconnectionszsozdatazcannotzbezdeletedzremotely
CzGatherzupzallzphysicalzevidencezandzmovezitzoutzaszquicklyzaszpossible
DzPhotographzallzevidencezinzitszoriginalzplacez-zD
Whichzmethodzofzcopyingzdigitalzevidencezensureszproperzevidencezcollection?
AzMakezthezcopyzusingzfileztransfer
BzCopyzfileszusingzdragzandzdrop
CzMakezthezcopyzatzthezbit-level
DzCopyzthezlogicalzpartitionsz-zC
Azcomputerzinvolvedzinzazcrimeziszinfectedzwithzmalware.zThezcomputerziszonzandzconne
ctedztozthezcompany'sznetwork.zThezforensiczinvestigatorzarriveszatzthezscene.
,WGU Course C840 -
z z z
Digital Forensics in Cybersecurity 2022
z z z z z z
Solved 100% z z
Whichzactionzshouldzbezthezinvestigator'szfirstzstep?
AzRemovezthezmalwarezandzsecurezthezcomputer.
BzUnplugzthezcomputer'szpowerzcord.
CzUnplugzthezcomputer'szEthernetzcable.
DzLabelzallzthezattachmentszandzsecurezthezcomputer.z-zC
Whatzarezthezthreezbasicztaskszthatzazsystemszforensiczspecialistzmustzkeepzinzmindzwh
enzhandlingzevidencezduringzazcybercrimezinvestigation?
Answerzoptionszmayzbezusedzmorezthanzoncezorznotzatzall.zSelectzyourzanswerszfromzth
ezpull-downzlist.
1zPreservezevidence
2zCatalogzevidence
3zPreparezevidence
4zMakezmultiplezcopieszofzevidence
5zDisseminatezevidence
6zPreparezevidencezreport
7zFindzevidence
Az1,3,7
Bz2,3,7z-zA
Howzdozforensiczspecialistszshowzthatzdigitalzevidencezwaszhandledzinzazprotected,zsec
urezmannerzduringzthezprocesszofzcollectingzandzanalyzingzthezevidence?
AzForensiczlabzlogbooks
BzForensiczsoftwarezlogs
CzChainzofzcustody
DzChainzofzemailzmessagesz-zC
Whichzcharacteristiczappliesztozmagneticzdriveszcomparedztozsolid-
statezdrivesz(SSDs)?
AzLowerzcapacity
BzBetterzdurability
CzLowerzpowerzconsumption
DzLowerzcostz-zD
Whichzcharacteristiczappliesztozsolid-
statezdrivesz(SSDs)zcomparedztozmagneticzdrives?
AzTheyzhavezslowerzstart-upztimes.
BzTheyzcostzless.
, WGU Course C840 -
z z z
Digital Forensics in Cybersecurity 2022
z z z z z z
Solved 100% z z
CzTheyzarezlesszsusceptibleztozdamage.
DzTheyzusezmorezpower.z-zC
Whichztypezofzstoragezformatzshouldzbeztransportedzinzazspecialzbagztozreducezelectrost
aticzinterference?
AzSolid-statezdrives
BzMagneticzmedia
CzDigitalzaudioztapes
DzOpticalzmediaz-zB
WhichzWindowszcomponentziszresponsiblezforzreadingzthezboot.inizfilezandzdisplayingzth
ezbootzloaderzmenuzonzWindowszXPzduringzthezbootzprocess?
AzWin32zsubsystem
BzNTLDR
CzNTOSKRNL
DzWindowszRegistryz-zB
Thezfollowingzlinezofzcodeziszanzexamplezofzhowztozmakezazforensiczcopyzofzazsuspectzdri
ve:ddzif=/dev/memzof=/evidence/image.memory1
Whichzoperatingzsystemzshouldzbezusedztozrunzthiszcommand?
AzChrome
BzBlackBerry
CzWindows
DzLinuxz-zD
WhichzfilezsystemziszsupportedzbyzMac?
AzHierarchicalzFilezSystemzPlusz(HFS+)
BzExtendedzFilezSystemz(Ext)
CzBerkeleyzFastzFilezSystemz(FFS)
DzReiserzFilezSystemz(ReiserFS)z-zA
Whichzlawzrequireszbothzpartiesztozconsentztozthezrecordingzofzazconversation?
AzHealthzInsurancezPortabilityzandzAccountabilityzActz(HIPAA)
BzUSAzPatriotzAct
CzCommunicationszAssistanceztozLawzEnforcementzActz(CALEA)
DzElectroniczCommunicationszPrivacyzActz(ECPA)z-zD
Whichzlawziszrelatedztozthezdisclosurezofzpersonallyzidentifiablezprotectedzhealthzinform
ationz(PHI)?