Spring Sale Limited Time 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = simple75

Pass the ECCouncil DEF 112-57 Questions and answers with Dumpstech

Exam 112-57 Premium Access

View all detail and faqs for the 112-57 exam

Practice at least 50% of the questions to maximize your chances of passing.
Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions
Questions # 11:

Which of the following folders of macOS stores all the files, documents, applications, library folders, etc. pertaining to a particular user?

Options:

A.

Spotlight

B.

Time Machine

C.

Finder

D.

Home Directory

Questions # 12:

Michael, a forensic expert, was assigned to investigate an incident that involved unauthorized intrusion attempts. In this process, Michael identified all the open ports on a system and disabled them because these open ports can allow attackers to install malicious services and compromise the security of the system or network.

Which of the following commands assisted Michael in identifying open ports in the above scenario?

Options:

A.

netstat -i

B.

netstat -rn

C.

nmap -sT localhost

D.

ifconfig -promisc

Questions # 13:

Which of the following Windows system files is created in the system drive after OS installation to support the internal functions and system service dispatch stubs to executive functions?

Options:

A.

Ntoskrnl.exe

B.

Win32k.sys

C.

Ntdll.dll

D.

Kernel32.dll

Questions # 14:

A government organization decided to establish a computer forensics lab to perform transparent investigation processes on highly sensitive cases. The organization also decided to establish strong physical security around the premises of the forensics lab.

Which of the following security measures helps the organization in providing strong physical security to the forensics lab?

Options:

A.

Never place fire extinguishers in and outside the lab

B.

Do not maintain a log register at the entrance of the lab

C.

Shield workstations from transmitting electromagnetic signals

D.

Never keep the lab under surveillance

Questions # 15:

While investigating a web attack on a Windows-based server, Jessy executed the following command on her system:

C:> net view <\10.10.10.11>

What was Jessy’s objective in running the above command?

Options:

A.

Check file space usage to look for a sudden decrease in free space

B.

Review file shares to ensure their purpose

C.

Check whether sessions have been opened with other systems

D.

Verify the users using open sessions

Questions # 16:

Clark, a security professional, identified that one of the systems in the organization is infected with malware and was used for creating a backdoor. Clark employed an automated tool to analyze the system's memory and detect malicious activities performed on the system.

In the above scenario, which of the following tools did Clark employ to detect malicious activities performed on the system?

Options:

A.

Medusa

B.

Redline

C.

Shodan

D.

Wireshark

Questions # 17:

Alice and John are close college friends. Alice frequently sends emails to John attaching her pics with friends. One day, Alice sent an email to John describing all the details related to the final year project without specifying the actual purpose. John missed the message as he frequently receives emails from her and did not arrive for a project seminar.

Which of the following email fields could Alice have used in the above scenario to highlight the importance of the email?

Options:

A.

Subject

B.

Date

C.

Cc

D.

Bcc

Questions # 18:

Kelly, a professional hacker, used her laptop to perform illegal cyber activities for monetary gain on many victims. She securely locked her laptop using BitLocker software. Using this tool, she locked an entire volume using a secret key to deny access to the system.

Identify the anti-forensic technique used by Don in the above scenario.

Options:

A.

File carving

B.

Artifact wiping

C.

Trail obfuscation

D.

Encryption

Questions # 19:

Jennifer, a forensics investigation team member, was inspecting a compromised system. After gathering all the evidence related to the compromised system, she disconnected the system from the network to stop the spread of the incident to other systems.

Identify the role played by Jennifer in the forensics investigation.

Options:

A.

Incident responder

B.

Incident analyzer

C.

Evidence manager

D.

Expert witness

Questions # 20:

Kane, an investigation specialist, was appointed to investigate an incident in an organization's network. In this process, Kane executed a command and identified that a network interface is running in the promiscuous mode and is allowing all incoming packets without any restriction.

In the above scenario, which of the following commands did Kane use to check whether the network interface is set to the promiscuous mode?

Options:

A.

nmap -sT localhost

B.

ipconfig

C.

ifconfig

D.

netstat -i

Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions