Question 146

Incident handling and response steps help you to detect, identify, respond and manage an incident. Which of
the following steps focus on limiting the scope and extent of an incident?
  • Question 147

    A computer virus hoax is a message warning the recipient of an on-existent computer virus threat. The message is usually a chain e-mail that tells the recipient to forward it to everyone they know.
    Which of the following is not a symptom of virus hoax message?
  • Question 148

    The following steps describe the key activities in forensic readiness planning:
    1. Train the staff to handle the incident and preserve the evidence
    2. Create a special process for documenting the procedure
    3. Identify the potential evidence required for an incident
    4. Determine the source of the evidence
    5. Establish a legal advisory board to guide the investigation process
    6. Identify if the incident requires full or formal investigation
    7. Establish a policy for securely handling and storing the collected evidence
    8. Define a policy that determines the pathway to legally extract electronic evidence with minimal disruption Identify the correct sequence of steps involved in forensic readiness planning.
  • Question 149

    James is working as an incident responder at CyberSol Inc. The management instructed James to investigate a cybersecurity incident that recently happened in the company. As a part of theinvestigation process, James started collecting volatile information from a system running on Windows operating system.
    Which of the following commands helps James in determining all the executable files for running processes?
  • Question 150

    Khai was tasked with examining the logs from a Linux email server. The server uses Sendmail to execute the command to send emails and Syslog to maintain logs.
    To validate the data within email headers, which of the following directories should Khai check for information such as source and destination IP addresses, dates, and timestamps?