
EC-CouncilDigital Forensics Essentials
Domain 7Objective 3
Static Malware Analysis DFE Practice Questions (Page 1)
Part of the Malware Forensics domain, which makes up ~15% of our current practice bank.
51questions here
11free pages
9concepts
Questions 1–5
- 1
An analyst is performing static analysis on a malware sample that uses anti-disassembly techniques and is packed with a custom packer. The analyst has spent significant time trying to unpack the sample but has been unsuccessful. The analyst needs to provide a preliminary assessment to the incident response team. Which approach is most appropriate?
Select an answer first - 2
What type of information can string extraction reveal from a malware binary?
Select an answer first - 3
What is a key limitation of static malware analysis?
Select an answer first - 4
Why might an analyst examine the version information embedded in a malware sample's resources?
Select an answer first - 5
An analyst extracts strings from a packed malware sample and finds a URL that appears to be a C2 endpoint. However, the analyst knows the sample is packed. What is the most appropriate conclusion?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “DFE” is a trademark of its owner, used for identification only.