GCFA Exam Questions
314 real GCFA exam questions with expert-verified answers and explanations. Page 7 of 7.
- Question #316Advanced Incident Response & Digital Forensics Fundamentals
Which of the following articles defines illegal access to the computer or network in Chapter 2 of Section 1, i.e., Substantive criminal law of the Convention on Cybercrime passed b...
Convention on CybercrimeArticle 2illegal accesscybercrime law - Question #317Memory Forensics & Anti-Forensics Detection
Which of the following is included in a memory dump file?
memory dumpcrash dump analysisloaded driverskernel call stack - Question #318Advanced Windows Artifacts & Browser Forensics
Which of the following are the two different file formats in which Microsoft Outlook saves e-mail messages based on system configuration? Each correct answer represents a complete...
Outlook PSTOST fileemail forensicsmailbox formats - Question #319Advanced Incident Response & Digital Forensics Fundamentals
You work as a Network Administrator for NetTech Inc. The company's network is connected to the Internet. For security, you want to restrict unauthorized access to the network with...
hardware firewallnetwork securityperimeter defenseunauthorized access - Question #320File System & Registry Forensics
A customer comes to you stating that his hard drive has crashed. He had backed up the hard drive, but some files on it were encrypted with Windows Encrypted File System (EFS). What...
EFSencryption key recoveryfile restorationWindows encryption - Question #321File System & Registry Forensics
Which of the following registry hives contains information about all users who have logged on to the system?
registry hivesHKEY_USERSuser account trackingWindows registry - Question #322File System & Registry Forensics
Which of the following steps should be performed in order to optimize a system performance? Each correct answer represents a complete solution. Choose three.
system optimizationdisk defragmentationtemporary filesanti-spyware - Question #324File System & Registry Forensics
In a Windows 98 computer, which of the following utilities is used to convert a FAT16 partition to FAT32?
FAT16 to FAT32CVT1.EXEpartition conversionWindows 98 - Question #325Advanced Mac & Linux Forensics
Adam works as a professional Computer Hacking Forensic Investigator. A project has been assigned to him to investigate an iphone, which is being seized from a criminal. The local p...
iPhone forensicsiOS partition structure/private/varmobile device forensics - Question #326Threat Hunting & Timeline Analysis
John works as a Network Administrator for DigiNet Inc. He wants to investigate failed logon attempts to a network. He uses Log Parser to detail out the failed logons over a specifi...
Log ParserWindows Event IDsfailed logon analysissecurity event logs - Question #327Advanced Incident Response & Digital Forensics Fundamentals
Victor is a novice Ethical Hacker. He is learning the hacking process, i.e., the steps taken by malicious hackers to perform hacking. Which of the following steps is NOT included i...
hacking methodologyattack phasesreconnaissanceethical hacking - Question #328File System & Registry Forensics
Adrian, the Network Administrator for Peach Tree Inc., wants to install a new computer on the company's network. He asks his assistant to make a boot disk with minimum files. The b...
MS-DOS boot filesboot diskIO.SYSCOMMAND.COM - Question #329Advanced Incident Response & Digital Forensics Fundamentals
Which of the following types of attacks cannot be prevented by technical measures only?
social engineeringtechnical controls limitationshuman factorattack prevention - Question #330Threat Hunting & Timeline Analysis
John works as a contract Ethical Hacker. He has recently got a project to do security checking for the information gathering step. Which of the following commands will he use to ac...
network scanninginformation gatheringnmapnetcat