GCFA Exam Questions
314 real GCFA exam questions with expert-verified answers and explanations. Page 3 of 7.
- Question #106Memory Forensics & Anti-Forensics Detection
Victor works as a professional Ethical Hacker for SecureNet Inc. He wants to use Steganographic file system method to encrypt and hide some secret information. Which of the followi...
steganographyslack spacehidden partitionanti-forensics - Question #107Advanced Windows Artifacts & Browser Forensics
Which of the following is the Windows feature on which the file management can be performed by a PC user?
Windows Explorerfile managementWindows tools - Question #109File System & Registry Forensics
You are responsible for maintaining and troubleshooting PC's at your company. The receptionist reports her screen has gone blue. When you get there you notice the 'blue screen of d...
NTFSBSODdisk corruptionWindows filesystem errors - Question #110Advanced Incident Response & Digital Forensics Fundamentals
Which of the following types of firewall functions at the Session layer of OSI model?
circuit-level firewallOSI modelsession layernetwork security - Question #111Advanced Incident Response & Digital Forensics Fundamentals
Joseph works as a Web Designer for WebTech Inc. He creates a Web site and wants to protect it from lawsuits. Which of the following steps will he take to accomplish the task? Each...
legal compliancejurisdiction restrictionswebsite liabilityaccess control - Question #112Advanced Incident Response & Digital Forensics Fundamentals
Trinity wants to send an email to her friend. She uses the MD5 generator to calculate cryptographic hash of her email to ensure the security and integrity of the email. MD5 generat...
MD5 hashinghash verificationdata integrityforensic tools - Question #113File System & Registry Forensics
Which utility enables you to access files from a Windows .CAB file?
CAB filesEXTRACT.EXEWindows utilitiesfile extraction - Question #114Advanced Incident Response & Digital Forensics Fundamentals
Adam works as a professional Computer Hacking Forensic Investigator. He has been assigned with a project to investigate a computer in the network of SecureEnet Inc. The compromised...
Helix Livevolatile data collectionlive forensicsTCP/IP transfer - Question #115Advanced Mac & Linux Forensics
Adam works as a professional Computer Hacking Forensic Investigator. A project has been assigned to him to investigate a compromised system of a cyber criminal, who hides some info...
Sleuth Kiticat commandLinux forensicsfile meta-data - Question #116Advanced Windows Artifacts & Browser Forensics
Which of the following graphical tools is used to navigate through directory structures?
Windows Explorerdirectory navigationgraphical toolsfile management - Question #117Advanced Incident Response & Digital Forensics Fundamentals
John is a black hat hacker. FBI arrested him while performing some email scams. Under which of the following US laws will john be charged?
18 U.S.C. 1030CFAAcomputer crime lawemail fraud - Question #118Advanced Incident Response & Digital Forensics Fundamentals
Mark has been hired by a company to work as a Network Assistant. He is assigned the task to configure a dial-up connection. He is configuring a laptop. Which of the following proto...
PAPauthentication protocolsdial-up securitypassword encryption - Question #119Advanced Incident Response & Digital Forensics Fundamentals
Which of the following anti-child pornography organizations helps local communities to create programs and develop strategies to investigate child exploitation?
Project Safe Childhoodchild exploitation investigationslaw enforcement organizationsICAC - Question #120File System & Registry Forensics
Which of the following statements about the HKEY_LOCAL_MACHINE registry hive is true?
HKEY_LOCAL_MACHINEregistry hivesWindows registrysystem configuration - Question #121Advanced Incident Response & Digital Forensics Fundamentals
Adam works as a professional Computer Hacking Forensic Investigator. A project has been assigned to him to investigate and examine drive image of a compromised system, which is sus...
Forensic Sorterdisk image formatsforensic imagingEnCase - Question #122Advanced Incident Response & Digital Forensics Fundamentals
In the United States, Title VII of the 1964 Civil Rights Act was formulated to protect an employee from discrimination on the basis of religion, color, race, national origin, and s...
Title VIICivil Rights Actemployment lawlegal history - Question #123File System & Registry Forensics
Your network has a Windows 2000 Server computer with FAT file system, shared by several users. This system stores sensitive data. You decide to encrypt this data to protect it from...
FAT file systemEFS limitationsfile encryptionWindows 2000 security - Question #124Advanced Incident Response & Digital Forensics Fundamentals
Which of the following statements are true about Compact Disc (CD) and Digital Versatile Disk (DVD)? Each correct answer represents a complete solution. Choose all that apply.
optical mediaCD DVD propertiesdata encodingelectromagnetic effects - Question #125Advanced Windows Artifacts & Browser Forensics
Sandra wants to create a full system state backup of her computer, which is running on Microsoft Windows XP operating system. Which of the following is saved in full state system b...
system state backupWindows XPregistry backupboot files - Question #126Advanced Incident Response & Digital Forensics Fundamentals
Which of the following U.S. Federal laws addresses computer crime activities in communication lines, stations, or systems?
18 U.S.C. 1362communication lines crimeUS federal lawcomputer crime statutes - Question #127Advanced Incident Response & Digital Forensics Fundamentals
This type of virus infects programs that can execute and load into memory to perform predefined steps for infecting systems. It infects files with the extensions .EXE, .COM, .BIN,...
file virusexecutable infectionmalware classificationEXE COM SYS infection - Question #128Advanced Incident Response & Digital Forensics Fundamentals
Which of the following is a documentation of guidelines that computer forensics experts use to handle evidences?
chain of custodyevidence handlingforensic documentationevidence integrity - Question #129Threat Hunting & Timeline Analysis
John works as a professional Ethical Hacker. He has been assigned the project of testing the following result: Considering the above traceroute result, which of the following state...
traceroute analysispacket filtering firewallnetwork path analysisfirewall detection - Question #130Advanced Mac & Linux Forensics
Which of the following directories contains administrative commands and daemon processes in the Linux operating system?
Linux directory structure/sbindaemon processesfile system hierarchy - Question #131Advanced Mac & Linux Forensics
You work as the Network Administrator for McNeil Inc. The company has a Unix-based network. You want to query an image root device and RAM disk size. Which of the following Unix co...
Unix commandsrdevRAM diskboot configuration - Question #132Advanced Incident Response & Digital Forensics Fundamentals
Which of the following is used to authenticate asymmetric keys?
asymmetric encryptiondigital signatureauthenticationcryptography - Question #133Advanced Incident Response & Digital Forensics Fundamentals
Sarah has created a site on which she publishes a copyrighted material. She is ignorant that she is infringing copyright. Is she guilty under copyright laws?
copyright lawintellectual propertylegal liabilitycybercrime law - Question #134Advanced Incident Response & Digital Forensics Fundamentals
Which of the following describes software technologies that improve portability, manageability, and compatibility of applications by encapsulating them from the underlying operatin...
application virtualizationOS compatibilityportabilityencapsulation - Question #135Advanced Incident Response & Digital Forensics Fundamentals
You work as a Network Administrator for Tech Perfect Inc. The company has a TCP/IP-based network. You are configuring a wireless LAN on the network. You experience interference on...
wireless LANchannel interferenceWAP configurationSSID - Question #136Threat Hunting & Timeline Analysis
John works as a professional Ethical Hacker. He has been assigned the project of testing the phases while testing the security of the server: * Footprinting * Scanning Now he wants...
enumerationPsToolsethical hackingnetwork scanning - Question #137Advanced Incident Response & Digital Forensics Fundamentals
In 2001, the Council of Europe passed a convention on cybercrime. It was the first international treaty seeking to address computer crime and Internet crimes by harmonizing nationa...
cybercrime conventioninternational lawxenophobia legislationdigital forensics law - Question #138Advanced Incident Response & Digital Forensics Fundamentals
Which of the following are the benefits of information classification for an organization? Each correct answer represents a complete solution. Choose two.
information classificationdata sensitivitysecurity policydata protection - Question #139File System & Registry Forensics
You work as a Network Administrator for Net World International. You want to configure a Windows 2000 computer to dual boot with Windows 98. The hard disk drive of the computer wil...
FAT32file systemdual bootWindows compatibility - Question #140File System & Registry Forensics
Which of the following registry hives stores configuration information specific to a particular user who is currently logged on to the computer?
Windows registryHKEY_CURRENT_USERregistry hivesuser configuration - Question #141Advanced Incident Response & Digital Forensics Fundamentals
Which of the following enables an inventor to legally enforce his right to exclude others from using his invention?
patent lawintellectual propertylegal rightsinventor protection - Question #142Memory Forensics & Anti-Forensics Detection
John works as a professional Ethical Hacker. He has been assigned a project to test the security injects the virus on the server and, as a result, the server becomes infected with...
antivirus evasionvirus mutationsignature detectionmalware analysis - Question #143Advanced Incident Response & Digital Forensics Fundamentals
Which of the following command line tools are available in Helix Live acquisition tool on Windows? Each correct answer represents a complete solution. Choose all that apply.
Helix forensics toollive acquisitionforensic toolsincident response - Question #144Advanced Incident Response & Digital Forensics Fundamentals
Adam works as a Computer Hacking Forensic Investigator. He has been assigned a project to investigate child pornography. As the first step, Adam found that the accused is using a P...
P2P networksGnutellaFreenetdigital forensics investigation - Question #145Advanced Incident Response & Digital Forensics Fundamentals
You are a professional Computer Hacking forensic investigator. You have been called to collect the evidences of Buffer Overflows or Cookie snooping attack. Which of the following l...
log analysisbuffer overflowcookie snoopingincident response - Question #146File System & Registry Forensics
Which of the following tools is used to extract human understandable interpretation from the computer binary files?
binary file analysisforensic toolsword extractiondata recovery - Question #147Threat Hunting & Timeline Analysis
John works as a professional Ethical Hacker. He has been assigned the task of testing the security information to begin scanning in order to detect active computers. He sends a pin...
ICMPnetwork scanningtimestamp requestping types - Question #148Advanced Incident Response & Digital Forensics Fundamentals
Which of the following statements are true about routers? Each correct answer represents a complete solution. Choose all that apply.
network routingpacket forwardingprotocol translationbroadcast traffic - Question #149Advanced Incident Response & Digital Forensics Fundamentals
John, a novice web user, makes a new E-mail account and keeps his password as "apple", his favorite fruit. John's password is vulnerable to which of the following password cracking...
password crackingdictionary attackbrute forcehybrid attack - Question #150File System & Registry Forensics
Which of the following tools is used to modify registry permissions in Windows?
registry permissionsREGEDT32Windows registry toolsaccess control - Question #151File System & Registry Forensics
Which of the following file systems provides integrated security?
EFSencrypting file systemfile system securityintegrated encryption - Question #153Advanced Incident Response & Digital Forensics Fundamentals
Convention on Cybercrime, created by the Council of Europe, is the treaty seeking to address Computer crime and Internet crimes by harmonizing national laws, improving investigativ...
Convention on Cybercrimeinternational cybercrime lawmutual assistanceextradition - Question #154Threat Hunting & Timeline Analysis
Adam works as a Security Analyst for Umbrella Inc. He suspects that a virus exists in the network of the company. He scanned the client system with latest signature-based anti-viru...
polymorphic virusmalware evasionsignature mutationanti-virus bypass - Question #155Advanced Incident Response & Digital Forensics Fundamentals
Which of the following laws or acts, formed in Australia, enforces prohibition against cyber stalking?
cyberstalking lawAustralia legislationStalking Amendment Actlegal framework - Question #156Advanced Mac & Linux Forensics
In which of the following files does the Linux operating system store passwords?
Linux password storageshadow file/etc/shadowcredential files - Question #157Advanced Mac & Linux Forensics
What is the name of the group of blocks which contains information used by the operating system in Linux system?
superblockLinux file system structureinodefilesystem metadata