100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

WGU MASTERS COURSE C702 FORENSICS AND NETWORK INTRUSION LATEST EXAM UPDATE 2025.

Rating
-
Sold
-
Pages
87
Grade
A+
Uploaded on
20-03-2025
Written in
2024/2025

A software company suspects that employees have set up automatic corporate email forwarding to their personal inboxes against company policy. The company hires forensic investigators to identify the employees violating policy, with the intention of issuing warnings to them. Which type of cybercrime investigation approach is this company taking? A Civil B Criminal C Administrative D Punitive - ANSWER C Which model or legislation applies a holistic approach toward any criminal activity as a criminal operation? A Enterprise Theory of Investigation B Racketeer Influenced and Corrupt Organizations Act C Evidence Examination D Law Enforcement Cyber Incident Reporting - ANSWER A

Show more Read less
Institution
WGU C702
Course
WGU C702











Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
WGU C702
Course
WGU C702

Document information

Uploaded on
March 20, 2025
Number of pages
87
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Content preview

A software company suspects that employees have set up automatic corporate email
forwarding to their personal inboxes against company policy. The company hires
forensic investigators to identify the employees violating policy, with the intention of
issuing warnings to them.

Which type of cybercrime investigation approach is this company taking?

A Civil
B Criminal
C Administrative
D Punitive - ANSWER C

Which model or legislation applies a holistic approach toward any criminal activity as
a criminal operation?

A Enterprise Theory of Investigation
B Racketeer Influenced and Corrupt Organizations Act
C Evidence Examination
D Law Enforcement Cyber Incident Reporting - ANSWER A

What does a forensic investigator need to obtain before seizing a computing device
in a criminal case?

A Court warrant
B Completed crime report
C Chain of custody document
D Plaintiff's permission - ANSWER A

Which activity should be used to check whether an application has ever been
installed on a computer?

A Penetration test
B Risk analysis
C Log review
D Security review - ANSWER C

Which characteristic describes an organization's forensic readiness in the context of
cybercrimes?

A It includes moral considerations.
B It includes cost considerations.
C It excludes nontechnical actions.
D It excludes technical actions. - ANSWER B

, A cybercrime investigator identifies a Universal Serial Bus (USB) memory stick
containing emails as a primary piece of evidence.

Who must sign the chain of custody document once the USB stick is in evidence?

A Those who obtain access to the device
B Anyone who has ever used the device
C Recipients of emails on the device
D Authors of emails on the device - ANSWER A

Which type of attack is a denial-of-service technique that sends a large amount of
data to overwhelm system resources?

A Phishing
B Spamming
C Mail bombing
D Bluejacking - ANSWER C

Which computer crime forensics step requires an investigator to duplicate and
image the collected digital information?

A Securing evidence
B Acquiring data
C Analyzing data
D Assessing evidence - ANSWER B

What is the last step of a criminal investigation that requires the involvement of a
computer forensic investigator?

A Analyzing the data collected
B Testifying in court
C Assessing the evidence
D Performing search and seizure - ANSWER B

How can a forensic investigator verify an Android mobile device is on, without
potentially changing the original evidence or interacting with the operating system?

A Check to see if it is plugged into a computer
B Tap the screen multiple times
C Look for flashing lights
D Hold down the power button - ANSWER C

What should a forensic investigator use to protect a mobile device if a Faraday bag
is not available?

,A Aluminum foil
B Sturdy container
C Cardboard box
D Bubble wrap - ANSWER A

Which criterion determines whether a technology used by government to obtain
information in a computer search is considered innovative and requires a search
warrant?

A Availability to the general public
B Dependency on third-party software
C Implementation based on open source software
D Use of cloud-based machine learning - ANSWER A

Which situation allows a law enforcement officer to seize a hard drive from a
residence without obtaining a search warrant?

A The computer is left unattended.
B The front door is wide open.
C The occupant is acting suspicious.
D The evidence is in imminent danger. - ANSWER D

Which legal document contains a summary of findings and is used to prosecute?

A Investigation report
B Search warrant
C Search and seizure
D Chain of custody - ANSWER A

What should an investigator use to prevent any signals from reaching a mobile
phone?

A Faraday bag
B Dry bag
C Anti-static container
D Lock box - ANSWER A

A forensic investigator is called to the stand as a technical witness in an internet
payment fraud case.

Which behavior is considered ethical by this investigator while testifying?

A Providing and explaining facts found during the investigation
B Interpreting the findings and offering a clear opinion to the jury
C Helping the jury arrive at a conclusion based on the facts

, D Assisting the attorney in compiling a list of essential questions - ANSWER A

A government agent is testifying in a case involving malware on a system.

What should this agent have complied with during search and seizure?

A Fourth Amendment
B Stored Communications Act
C Net Neutrality Bill
D Federal Rules of Evidence - ANSWER A

Which path should a forensic investigator use to look for system logs in a Mac?

A /var/log/cups/access_log
B /var/log/
C /var/audit/
D /var/log/install.log - ANSWER B

Which tool should a forensic investigator use to view information from Linux kernel
ring buffers?

A arp
B dmesg
C fsck
D grep - ANSWER B

A forensic investigator makes a bit-stream copy of a Windows hard drive that has
been reformatted. The investigator needs to locate only the Adobe PDF files on the
hard drive.

Which tool should this investigator use?

A Quick Recovery
B Handy Recovery
C EaseUS Data Recovery
D Stellar Data Recovery - ANSWER C

Which hexadecimal value should an investigator search for to find JPEG images on
a device?

A 0x424D
B 0xD0CF11E0A1B11AE1
C 0x504B030414000600
D 0xFFD8 - ANSWER D
$23.99
Get access to the full document:

100% satisfaction guarantee
Immediately available after payment
Both online and in PDF
No strings attached

Get to know the seller
Seller avatar
DOCRISHNA

Also available in package deal

Thumbnail
Package deal
WGU PACKAGE DEAL
-
12 2025
$ 148.28 More info

Get to know the seller

Seller avatar
DOCRISHNA NURSING
View profile
Follow You need to be logged in order to follow users or courses
Sold
4
Member since
2 year
Number of followers
0
Documents
284
Last sold
1 year ago
All-in-one Exam Paper Zone for Students.

PROVIDING THE LATEST APPEALING EXAM UPDATES, NURSING ASSINGMENTS, EXAMS AND TESTBANKS . AVAILABLE AND TRUSTED CONTENT OF THE HIGHEST QUALITY. A GUARANTEED PASS IN YOUR EXAMS WHEN YOU PURCHASE MY DOCUMENTS .Please Always leave a review after purchasing any document so as to make sure our customers are 100% satisfied .

0.0

0 reviews

5
0
4
0
3
0
2
0
1
0

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions