
EC-CouncilComputer Hacking Forensic Investigator
Domain 6Objective 2
Email and Social Media Forensics CHFI Practice Questions (Page 7)
Part of the Cloud and Communication Forensics domain, which makes up ~14% of our current practice bank.
55questions here
11free pages
11concepts
Questions 31–35
- 31
When conducting a social media profile investigation, what is the primary purpose of gathering publicly available information from a user's profile?
Select an answer first - 32
Which social media platform's forensic analysis often involves examining the 'activity log' feature to reconstruct a user's actions?
Select an answer first - 33
Which email authentication standard uses cryptographic signatures to verify that an email message was not altered in transit and that it genuinely comes from the claimed domain?
Select an answer first - 34
An employee receives an email that appears to be from a colleague, but the message content is unusual and requests a wire transfer. You examine the headers and see the following: 'From: colleague@company.com', 'Reply-To: attacker@evil.com', 'SPF: pass', 'DKIM: pass'. The 'Received' chain shows the email originated from an IP address that is not in the company's range. What is the most likely explanation?
Select an answer first - 35
Which metadata standard is commonly embedded in JPEG images and can contain information such as camera model, date/time, and GPS coordinates?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CHFI” is a trademark of its owner, used for identification only.