Black Friday Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: clap70

CFR-210 Logical Operations CyberSec First Responder Questions and Answers

Questions 4

A system administrator is informed that a user received an email containing a suspicious attachment. Which of the following methods is the FASTEST way to determine whether the file is suspicious or not?

Options:

A.

Reverse engineering

B.

Virus scanning

C.

Virtualization

D.

Sandboxing

Buy Now
Questions 5

Customers are reporting issues connecting to a company’s Internet server. Which of the following device logs should a technician review in order to help identify the issue?

Options:

A.

WIPS

B.

SSH

C.

WAP

D.

WAF

Buy Now
Questions 6

An incident responder is investigating a Linux server reported to be “behaving strangely”. Which of the following commands should the incident responder use to identify any users currently logged into the system? (Choose two.)

Options:

A.

Isof

B.

Is

C.

id

D.

w

E.

lastlog

Buy Now
Questions 7

A security professional has been tasked with the protection of a specific set of information essential to a corporation’s livelihood, the exposure of which could cost the company billions of dollars in long-term revenue. The professional is interested in obtaining advice for preventing the theft of this type of information. Which of the following is the BEST resource for finding this material?

Options:

A.

Law enforcement information sharing groups

B.

National Threat Assessment Center

C.

Vendor web pages that provide intelligence feeds and advisories

D.

Blogs concerning the theft of PII

Buy Now
Questions 8

When investigating a wireless attack, which of the following can be obtained from the DHCP server?

Options:

A.

MAC address of the attacker

B.

Operating system of the attacker

C.

IP traffic between the attacker and victim

D.

Effectiveness of the VLAN terminator

Buy Now
Questions 9

While a network administrator is monitoring the company network, an unknown local IP address is starting to release high volumes of anonymous traffic to an unknown external IP address. Which of the following would indicate to the network administrator potential compromise?

Options:

A.

Packet losses

B.

Excessive bandwidth usage

C.

Service disruption

D.

Off-hours usage

Buy Now
Questions 10

A network administrator has been asked to configure a new network. It is the company’s policy to segregate network functions using different Virtual LANs (VLANs). On which of the following is this configuration MOST likely to occur?

Options:

A.

Network switch

B.

Virtual Machine

C.

Virtual Private Network

D.

Network firewall

Buy Now
Questions 11

Which of the following tools can be used to identify open ports and services?

Options:

A.

netstat

B.

tcpdump

C.

nmap

D.

recon-ng

Buy Now
Questions 12

Which of the following mitigations will remain intact, regardless of the underlying network protocol?

Options:

A.

DNS filtering

B.

Application whitelisting

C.

IP address blocking D Proxy ACL

Buy Now
Questions 13

An organization needs to determine of any systems on its network (10.0.25.0/24) have web services running on port 80 or 443. Which of the following is the BEST command to do this?

Options:

A.

netstat –p 80-443 10.0.25.0/24

B.

nmap –v 80,443 10.0.25.0/24

C.

netstat –v 80,443 10.0.25.0/24

D.

nmap –p 80,443 10.0.25.0/24

Buy Now
Questions 14

Which of the following resources BEST supports malware analysis?

Options:

A.

Internet service providers

B.

Government websites

C.

Crowdsourced intelligence feed

D.

Internal network management team

Buy Now
Questions 15

An incident responder suspects that a host behind a firewall is infected with malware. Which of the following should the responder use to find the IP address of the infected machine?

Options:

A.

NAT table

B.

ARP cache

C.

DNS cache

D.

CAM cable

Buy Now
Exam Code: CFR-210
Exam Name: Logical Operations CyberSec First Responder
Last Update: Nov 23, 2024
Questions: 100
CFR-210 pdf

CFR-210 PDF

$25.5  $84.99
CFR-210 Engine

CFR-210 Testing Engine

$30  $99.99
CFR-210 PDF + Engine

CFR-210 PDF + Testing Engine

$40.5  $134.99