{"id":117537,"date":"2023-08-28T23:26:22","date_gmt":"2023-08-28T23:26:22","guid":{"rendered":"https:\/\/learnexams.com\/blog\/?p=117537"},"modified":"2023-08-28T23:26:25","modified_gmt":"2023-08-28T23:26:25","slug":"wgu-c840-digital-forensics-in-cybersecurity-study-bundle-package-deal-with-questions-and-answers-2022-2023-verified-bundle","status":"publish","type":"post","link":"https:\/\/www.learnexams.com\/blog\/2023\/08\/28\/wgu-c840-digital-forensics-in-cybersecurity-study-bundle-package-deal-with-questions-and-answers-2022-2023-verified-bundle\/","title":{"rendered":"WGU C840 Digital Forensics in Cybersecurity Study Bundle Package Deal With Questions and Answers (2022\/2023) (Verified Bundle)"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">WGU C840 Practice Assessment Questions &amp; Answers2022\/2023<br>1.Which tool should the IT staff use to gather digital evidence about<br>this security vulnerability&gt;&gt;&gt;Sniffer<br>2.A police detective investigating a threat traces the source to a house.<br>The couple at the house shows the detective the only computer the family<br>owns, which is in their son&#8217;s bedroom. The couple states that their son is<br>presently in class at a local middle school. How should the detective<br>legally gain access to the computer&gt;&gt;&gt;Obtain consent to search from<br>the parents<br>3.How should a forensic scientist obtain the network configuration from<br>a Windows PC before seizing it from a crime scene&gt;&gt;&gt;By using the<br>ipconfig command from a command prompt on the computer<br>4.The human resources manager of a small accounting firm believes he<br>may have been a victim of a phishing scam. The manager clicked on a link<br>in an email message that asked him to verify the logon credentials for the<br>firm&#8217;s online bank account&gt;&gt;&gt;Browser cache<br>5.After a company&#8217;s single-purpose, dedicated messaging server is<br>hacked by a cybercriminal, a forensics expert is hired to investigate the<br>crime and collect evidence. Which digital evidence should be<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">collected>>>Firewall logs<br>6.Thomas received an email stating that he needed to follow a link and<br>verify his bank account information to ensure it was secure. Shortly<br>after following the instructions, Thomas noticed money was missing<br>from his account.Which digital evidence should be considered to<br>determine how Thomas&#8217; account information was<br>compromised>>>Email messages<br>7.The chief executive officer (CEO) of a small computer company has<br>iden- tified a potential hacking attack from an outside competitor. Which<br>type of evidence should a forensics investigator use to identify the source<br>of the hack>>>Network transaction logs<br>8.A forensic scientist arrives at a crime scene to begin collecting<br>evidence. What is the first thing the forensic scientist should<br>do>>>Photograph all evi- dence in its original place<br>9.Which method of copying digital evidence ensures proper evidence<br>col- lection>>>Make the copy at the bit-level<br>10.A computer involved in a crime is infected with malware. The computer<br>is on and connected to the company&#8217;s network. The forensic investigator<br>arrives at the scene. Which action should be the investigator&#8217;s first<br>step>>>- Unplug the computer&#8217;s Ethernet cable.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">WGU Course C840 &#8211; Digital Forensics in Cybersecurity<br>Questions &amp; Answers 2022\/2023<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Malware forensics is also known as internet forensics.<br>A True<br>B False&gt;&gt;&gt;B<\/li>\n\n\n\n<li>The Privacy Protection Act (PPA) of 1980 protects journalists from<br>being required to turn over to law enforcement any work product or<br>documentary material, including sources, before it is disseminated to the<br>public.<br>A True<br>B False&gt;&gt;&gt;A<\/li>\n\n\n\n<li>The term testimonial evidence refers to the process of examining<br>mali- cious computer code.<br>A True<br>B False&gt;&gt;&gt;B<\/li>\n\n\n\n<li>Evidence need not be locked if it is at a police station.<br>A True<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">B False&gt;&gt;&gt;B<\/p>\n\n\n\n<ol class=\"wp-block-list\" start=\"5\">\n<li>Real evidence means physical objects that can be touched, held, or<br>di- rectly observed, such as a laptop with a suspect&#8217;s fingerprints on it,<br>or a handwritten note.<br>A True<br>B False&gt;&gt;&gt;A<\/li>\n\n\n\n<li>The FBI is the premier federal agency tasked with combating<br>cybercrime.<br>A True<br>B False&gt;&gt;&gt;B<\/li>\n\n\n\n<li>When cataloging digital evidence, the primary goal is to do what?<br>A Make bitstream images of all hard drives.<br>B Keep the computer from being turned<br>off.<br>C Keep evidence from being removed from the<br>scene. D Preserve evidence integrity.&gt;&gt;&gt;D<\/li>\n\n\n\n<li>Your roommate can give consent to search your computer.<br>A True<br>B False&gt;&gt;&gt;B<\/li>\n\n\n\n<li>The Windows Registry is essentially a repository of all settings,<br>software, and parameters for Windows.<br>A True<br>B False&gt;&gt;&gt;A<\/li>\n\n\n\n<li>The term internet forensics refers to information that forensic<br>specialists use to support or interpret real or documentary evidence; for<br>example, to demonstrate that the fingerprints found on a keyboard are<br>those of a specific individual.<br>A True<br>B False&gt;&gt;&gt;B<\/li>\n\n\n\n<li>PROM can be programmed only once. Data is not lost when power<br>is removed.<br>A True<br>B False&gt;&gt;&gt;A<\/li>\n\n\n\n<li>In a computer forensics<br>investigation, describes the route<br>that evidence takes from the time you find it until the case is closed or<br>goes to court.<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">A Policy of<br>separation B Rules of<br>evidence C Law of<br>probability D Chain of<br>custody&gt;&gt;&gt;D<\/p>\n\n\n\n<ol class=\"wp-block-list\" start=\"13\">\n<li>The objective in computer forensics is to recover, analyze, and<br>present computer-based material in such a way that it can be used as<br>evidence in a court of law.<br>A True<br>B False&gt;&gt;&gt;A<\/li>\n\n\n\n<li>Demonstrative evidence means information that helps explain other<br>ev- idence. An example of demonstrative evidence is a chart that explains<br>a<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">WGU C840 OA Digital Forensics 2022\/2023<br>1.expert report&gt;&gt; A formal document prepared by a forensics specialist<br>to doc- ument an investigation, including a list of all tests conducted<br>as well as the specialist&#8217;s own curriculum vitae (CV). Anything the<br>specialist plans to testify about at a trial must be included in the<br>expert report.<br>2.Testimonial evidence&gt;&gt; Information that forensic specialists use to<br>support or interpret real or documentary evidence; for example, to<br>demonstrate that the fingerprints found on a keyboard are those of a<br>specific individual.<br>3.Daubert standard&gt;&gt; The standard holding that only methods and<br>tools widely accepted in the scientific community can be used in<br>court.<br>4.If the computer is turned on when you arrive, what does the Secret<br>Service recommend you do&gt;&gt;&gt; Shut down according to the<br>recommended Secret Service procedure.<br>5.Communications Assistance to Law Enforcement Act of 1994&gt;&gt; The<br>Com- munications Assistance to Law Enforcement Act of 1994 is a<br>federal wiretap law for traditional wired telephony. It was expanded to<br>include wireless, voice over packet, and other forms of electronic<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">communications, including signaling traffic and metadata.<br>6.Digital evidence&gt;&gt; Digital evidence is information processed and<br>assembled so that it is relevant to an investigation and supports a<br>specific finding or determina- tion.<br>7.Federal Privacy Act of 1974&gt;&gt; The Federal Privacy Act of 1974, a<br>United States federal law that establishes a code of Fair Information<br>Practice that governs the collection, maintenance, use, and<br>dissemination of information about individuals that is maintained in<br>systems of records by U.S. federal agencies.<br>8.Power Spy, Verity, ICU, and WorkTime&gt;&gt; Spyware<br>9.good fictitious e-mail response rate&gt;&gt; 1-3%<br>10.Which crime is most likely to leave e-mail evidence&gt;&gt;&gt; Cyberstalking<br>11.Where would you seek evidence that ophcrack had been used on a<br>Windows Server 2008 machine&gt;&gt;&gt; In the logs of the server; look for<br>the reboot of the system<br>12.A SYN flood is an example of what&gt;&gt;&gt; DoS attack<br>13.definition of a virus, in relation to a computer&gt;&gt;&gt; a type of<br>malware that requires a host program or human help to propagate<\/p>\n\n\n\n<ol class=\"wp-block-list\" start=\"14\">\n<li>What is the starting point for investigating the denial of service<br>attacks?-<\/li>\n<\/ol>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">Tracing the packets<\/p>\n<\/blockquote>\n<\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">15.China Eagle Union&gt;&gt; The cyberterrorism group, the China Eagle<br>Union, con- sists of several thousand Chinese hackers whose stated<br>goal is to infiltrate Western computer systems. Members and leaders<br>of the group insist that not only does the Chinese government have no<br>involvement in their activities, but that they are breaking Chinese law<br>and are in constant danger of arrest and imprisonment. However,<br>most analysts believe this group is working with the full knowledge<br>and support of the Chinese government.<br>16.Rules of evidence&gt;&gt; Rules that govern whether, when, how, and<br>why proof of a legal case can be placed before a judge or jury.<br>17.file slack&gt;&gt; The unused space between the logical end of the<br>file and the physical end of the file. It is also called slack space.<br>18.The Analysis Plan&gt;&gt; Before forensic examination can begin, an<br>analysis plan should be created. This plan guides work in the analysis<br>process. How will you gather evidence? Are there concerns about<br>evidence being changed or destroyed? What tools are most<br>appropriate for this specific investigation? A standard data analysis<br>plan should be created and customized for specific situations and<br>circum- stances.<br>19.What is the most important reason that you not touch the actual<br>original evidence any more than you have to&gt;&gt;&gt; Each time you touch<br>digital data, there is some chance of altering it.<br>20.You should make at least two bitstream copies of a suspect drive.&gt;&gt;<br>TRUE<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">21.To preserve digital evidence, an investigator should&gt;&gt; make two<br>copies of each evidence item using different imaging tools<br>22.What would be the primary reason for you to recommend for or against<br>making a DOS Copy&gt;&gt; A simple DOS copy will not include deleted files,<br>file slack, and other information.<\/p>\n\n\n\n<ol class=\"wp-block-list\" start=\"23\">\n<li>Which starting-point forensic certification covers the general<br>principles and techniques of forensics, but not specific tools such as<br>EnCase or FTK?-<\/li>\n<\/ol>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">(CHFI) EC Council Certified Hacking Forensic Investigator<br>24.This forensic certification is open to both the public and private sectors<br>and is specific to the use and mastery of FTK. Requirements for taking the<br>exam include completing the boot camp and Windows forensic courses.>><br>Ac- cessData Certified Examiner. AccessData is the creator of Forensic<br>Toolkit (FTK) software.<\/p>\n<\/blockquote>\n<\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">WGU C840 Digital Forensics in Cybersecurity Pre-Assessment<br>Questions &amp; Answers 2022\/2023<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>The chief information officer of an accounting firm believes sensitive<br>data is being exposed on the local network.<br>Which tool should the IT staff use to gather digital evidence about<br>this security vulnerability&gt;&gt;&gt;Sniffer<\/li>\n\n\n\n<li>A police detective investigating a threat traces the source to a house.<br>The couple at the house shows the detective the only computer the family<br>owns, which is in their son&#8217;s bedroom. The couple states that their son is<br>presently in class at a local middle school.<br>How should the detective legally gain access to the computer&gt;&gt;&gt;Obtain<br>con- sent to search from the parents<br>3.How should a forensic scientist obtain the network configuration from<br>a Windows PC before seizing it from a crime scene&gt;&gt;&gt;By using the<br>ipconfig command from a command prompt on the computer<\/li>\n\n\n\n<li>The human resources manager of a small accounting firm believes he<br>may have been a victim of a phishing scam. The manager clicked on a link<br>in an email message that asked him to verify the logon credentials for the<br>firm&#8217;s online bank account.<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">Which digital evidence should a forensic investigator collect to<br>investigate this incident&gt;&gt;&gt;Browser cache<\/p>\n\n\n\n<ol class=\"wp-block-list\" start=\"5\">\n<li>After a company&#8217;s single-purpose, dedicated messaging server is<br>hacked by a cybercriminal, a forensics expert is hired to investigate the<br>crime and collect evidence.<br>Which digital evidence should be collected&gt;&gt;&gt;Firewall logs<\/li>\n\n\n\n<li>Thomas received an email stating that he needed to follow a link and<br>verify his bank account information to ensure it was secure. Shortly after<br>following the instructions, Thomas noticed money was missing from his<br>account.<br>Which digital evidence should be considered to determine how Thomas&#8217;<br>account information was compromised&gt;&gt;&gt;Email messages<\/li>\n\n\n\n<li>The chief executive officer (CEO) of a small computer company has<br>iden- tified a potential hacking attack from an outside competitor.<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n","protected":false},"excerpt":{"rendered":"<p>WGU C840 Practice Assessment Questions &amp; Answers2022\/20231.Which tool should the IT staff use to gather digital evidence aboutthis security vulnerability&gt;&gt;&gt;Sniffer2.A police detective investigating a threat traces the source to a house.The couple at the house shows the detective the only computer the familyowns, which is in their son&#8217;s bedroom. The couple states that their son [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[25],"tags":[],"class_list":["post-117537","post","type-post","status-publish","format-standard","hentry","category-exams-certification"],"_links":{"self":[{"href":"https:\/\/www.learnexams.com\/blog\/wp-json\/wp\/v2\/posts\/117537","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.learnexams.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.learnexams.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.learnexams.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.learnexams.com\/blog\/wp-json\/wp\/v2\/comments?post=117537"}],"version-history":[{"count":0,"href":"https:\/\/www.learnexams.com\/blog\/wp-json\/wp\/v2\/posts\/117537\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.learnexams.com\/blog\/wp-json\/wp\/v2\/media?parent=117537"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.learnexams.com\/blog\/wp-json\/wp\/v2\/categories?post=117537"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.learnexams.com\/blog\/wp-json\/wp\/v2\/tags?post=117537"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}