
EC-CouncilCertified Cybersecurity Technician
Domain 7Objective 2
Computer Forensics CCT Practice Questions (Page 9)
Part of the Incident Response and Computer Forensics domain, which makes up ~10% of our current practice bank.
56questions here
12free pages
13concepts
Questions 41–45
- 41
A network administrator suspects that an internal host is communicating with a known command-and-control server. Which network forensic technique would most directly confirm this communication?
Select an answer first - 42
A company suspects an employee of leaking confidential data. The IT manager wants to investigate the employee's work computer. What is the primary goal of the forensic investigation in this scenario?
Select an answer first - 43
What is a common countermeasure to detect steganography?
Select an answer first - 44
During a forensic examination of a suspect's drive, the analyst finds a set of image files that appear to be ordinary photos. However, the analyst suspects steganography is hiding sensitive documents. Which technique is MOST effective for detecting hidden data?
Select an answer first - 45
What type of data is typically found in volatile memory (RAM) that is useful for forensic analysis?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCT” is a trademark of its owner, used for identification only.