
EC-CouncilCertified Security Specialist
Domain 6Objective 6
Investigating Email Crimes ECSS Practice Questions (Page 3)
Part of the Digital Forensics Investigations domain, which makes up ~20% of our current practice bank.
44questions here
9free pages
8concepts
Questions 11–15
- 11
A forensic investigator needs to collect email evidence from a suspect's smartphone. The email app is configured with IMAP. What is the best way to preserve the evidence?
Select an answer first - 12
What is the primary purpose of maintaining a chain of custody for email evidence?
Select an answer first - 13
A forensic investigator must collect email evidence from a suspect's webmail account for a harassment case. The account is accessed via a browser. What is the most forensically sound approach?
Select an answer first - 14
A company is investigating an internal email leak. The suspect's mailbox is on a Microsoft Exchange server. The legal team wants to preserve evidence without disrupting business operations. What is the best approach?
Select an answer first - 15
Which of the following is a common sign that an email may be spoofed?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECSS” is a trademark of its owner, used for identification only.