CertNexus CyberSec First Responder (CFR) - CFR-310 Exam Practice Test

Question 1
An incident response team is concerned with verifying the integrity of security information and event management (SIEM) events after being written to disk. Which of the following represents the BEST option for addressing this concern?

Correct Answer: B
Question 2
Which of the following are legally compliant forensics applications that will detect an alternative data stream (ADS) or a file with an incorrect file extension? (Choose two.)

Correct Answer: A,E
Question 3
According to company policy, all accounts with administrator privileges should have suffix _ja. While reviewing Windows workstation configurations, a security administrator discovers an account without the suffix in the administrator's group. Which of the following actions should the security administrator take?

Correct Answer: A
Question 4
A user receives an email about an unfamiliar bank transaction, which includes a link. When clicked, the link redirects the user to a web page that looks exactly like their bank's website and asks them to log in with their username and password. Which type of attack is this?

Correct Answer: B
Question 5
Which of the following are common areas of vulnerabilities in a network switch? (Choose two.)

Correct Answer: D,E
Question 6
An attacker intercepts a hash and compares it to pre-computed hashes to crack a password. Which of the following methods has been used?

Correct Answer: B
Question 7
When tracing an attack to the point of origin, which of the following items is critical data to map layer 2 switching?

Correct Answer: C
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 8
After a security breach, a security consultant is hired to perform a vulnerability assessment for a company's web application. Which of the following tools would the consultant use?

Correct Answer: A
Question 9
When performing an investigation, a security analyst needs to extract information from text files in a Windows operating system. Which of the following commands should the security analyst use?

Correct Answer: B
Question 10
A security analyst has discovered that an application has failed to run. Which of the following is the tool MOST likely used by the analyst for the initial discovery?

Correct Answer: C