Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam 312-49v10 All Questions

View all questions & answers for the 312-49v10 exam

Exam 312-49v10 topic 1 question 515 discussion

Actual exam question from ECCouncil's 312-49v10
Question #: 515
Topic #: 1
[All 312-49v10 Questions]

Chong-lee, a forensics executive, suspects that a malware is continuously making copies of files and folders on a victim system to consume the available disk space. What type of test would confirm his claim?

  • A. File fingerprinting
  • B. Identifying file obfuscation
  • C. Static analysis
  • D. Dynamic analysis
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
aqeel1506
4 months ago
D. Dynamic analysis
upvoted 1 times
...
aqeel1506
4 months ago
Steps Involved in Dynamic Analysis: Isolate the System: Ensure that the system is isolated from the network to prevent the malware from spreading or communicating with external servers. Use a Sandbox Environment: Execute the malware in a sandbox environment or a virtual machine to safely observe its behavior without risking the actual system. Monitor File System Activity: Use tools like Process Monitor or Sysinternals Suite to track file creation, modification, and deletion events in real-time. Track Disk Usage: Monitor disk space usage to identify any significant changes that might indicate the creation of multiple copies of files. Log Analysis: Review logs generated during the dynamic analysis to gather evidence of the malware’s activities.
upvoted 1 times
...
Elb
6 months, 3 weeks ago
Selected Answer: A
A < Fingerprinting can test.
upvoted 1 times
...
581777a
1 year, 3 months ago
Selected Answer: D
D. Dynamic analysis Dynamic analysis involves observing the behavior of a system or software while it is running or executing. In this case, Chong-lee suspects that a malware is consuming disk space by continuously making copies of files and folders. Dynamic analysis would involve monitoring the system's behavior in real-time to observe any unusual or unexpected activity that confirms the claim. This could include monitoring disk space usage, file creation and deletion, and other system activities to determine if a malware is indeed performing the described behavior.
upvoted 2 times
...
redmonkeyprism
1 year, 5 months ago
Selected Answer: D
Dynamic Analysis makes much more sense. Mark starting disk space, start the malware, and then monitor disk space usage with no other activity taking place.
upvoted 3 times
...
diomaya
1 year, 5 months ago
File Fingerprinting is part of the Static Analysis. The question is a bit unclear in my opinion.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...