WGU C840 PRACTICE ASSESSMENT EXAM
QUESTIONS AND ANSWERS
Which tool should the IT staff use to gather digital evidence
about this security vulnerability? - correct answer Sniffer
A police detective investigating a threat traces the source to a
house. The couple at the house shows the detective the only
computer the family owns, which is in their son's bedroom. The
couple states that their son is presently in class at a local middle
school. How should the detective legally gain access to the
computer? - correct answer Obtain consent to search from the
parents
How should a forensic scientist obtain the network
configuration from a Windows PC before seizing it from a crime
,WGU C840
scene? - correct answer By using the ipconfig command from a
command prompt on the computer
The human resources manager of a small accounting firm
believes he may have been a victim of a phishing scam. The
manager clicked on a link in an email message that asked him to
verify the logon credentials for the firm's online bank account. -
correct answer Browser cache
After a company's single-purpose, dedicated messaging server
is hacked by a cybercriminal, a forensics expert is hired to
investigate the crime and collect evidence. Which digital
evidence should be collected? - correct answer Firewall logs
Thomas received an email stating that he needed to follow a
link and verify his bank account information to ensure it was
secure. Shortly after following the instructions, Thomas noticed
money was missing from his account.Which digital evidence
should be considered to determine how Thomas' account
information was compromised? - correct answer Email messages
The chief executive officer (CEO) of a small computer company
has identified a potential hacking attack from an outside
competitor. Which type of evidence should a forensics
, WGU C840
investigator use to identify the source of the hack? - correct answer
Network transaction logs
A forensic scientist arrives at a crime scene to begin collecting
evidence. What is the first thing the forensic scientist should
do? - correct answer Photograph all evidence in its original place
Which method of copying digital evidence ensures proper
evidence collection? - correct answer Make the copy at the bit-level
A computer involved in a crime is infected with malware. The
computer is on and connected to the company's network. The
forensic investigator arrives at the scene. Which action should
be the investigator's first step? - correct answer Unplug the
computer's Ethernet cable.
What are the three basic tasks that a systems forensic specialist
must keep in mind when handling evidence during a cybercrime
investigation? Answer options may be used more than once or
not at all. Select your answers from the pull-down list. - correct
answer Find evidence, Preserve evidence, Prepare evidence
How do forensic specialists show that digital evidence was
handled in a protected, secure manner during the process of