Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilDigital Forensics Essentials

Domain 7Objective 3

Static Malware Analysis DFE Practice Questions (Page 5)

Part of the Malware Forensics domain, which makes up ~15% of our current practice bank.

51questions here
11free pages
9concepts

Questions 21–25

  1. 21application · medium

    An analyst extracts printable strings from a suspected malware binary. The output shows only a few short strings such as 'MZ', 'UPX0', 'UPX1', and 'UPX!'. What is the most reasonable conclusion?

    Select an answer first
  2. 22foundation · easy

    Which task is part of static malware analysis?

    Select an answer first
  3. 23foundation · easy

    Which tool is commonly used to extract printable strings from a binary?

    Select an answer first
  4. 24application · medium

    A malware analyst is performing static analysis on a suspicious executable. The file is packed, and the import table shows only the functions needed for unpacking. The analyst cannot find any suspicious strings or URLs. What is the most appropriate conclusion?

    Select an answer first
  5. 25application · medium

    A malware analyst runs Detect It Easy (DIE) on a suspicious executable and the tool reports that the file is packed with UPX. The analyst also computes a SHA-256 hash of the file. What is the most appropriate next step?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “DFE” is a trademark of its owner, used for identification only.