Skip to main content

CFR-410 Real Exam Questions

CyberSec First Responder (CFR)

180 questions available · Page 1 of 18

Updated Exam DumpsVerified AnswersPass Guarantee

Get Complete Exam Dumps
Question 1 Single choice

Senior management has stated that antivirus software must be installed on all employee workstations.

Which of the following does this statement BEST describe?

  1. A

    Guideline

  2. B

    Procedure

  3. C

    Policy

  4. D

    Standard

Show answer and explanation

Correct answer: C

Question 2 Single choice

If an organization suspects criminal activity during the response to an incident, when should they notify law enforcement authorities?

  1. A

    After one day of network downtime.

  2. B

    According to a pre-defined cost threshold.

  3. C

    As soon as criminal activity is suspected.

  4. D

    After the criminal activity is confirmed.

Show answer and explanation

Correct answer: C

Question 3 Single choice

A security analyst is required to collect detailed network traffic on a virtual machine.

Which of the following tools could the analyst use?

  1. A

    nbtstat

  2. B

    WinDump

  3. C

    fport

  4. D

    netstat

Show answer and explanation

Correct answer: D

Question 4 Single choice

A security administrator notices a process running on their local workstation called SvrsScEsdKexzCv.exe.

The unknown process is MOST likely:

  1. A

    Malware

  2. B

    A port scanner

  3. C

    A system process

  4. D

    An application process

Show answer and explanation

Correct answer: A

Question 5 Single choice

Where are log entries written for auditd in Linux?

  1. A

    /etc/audit/audit.rules

  2. B

    /var/log/audit/messages

  3. C

    /var/log/audit/audit.log

  4. D

    /var/log/audit.log

  5. E

    /etc/audit/audit.conf

Show answer and explanation

Correct answer: C

Question 6 Multiple choice

Which of the following methods are used by attackers to find new ransomware victims? (Choose two.)

  1. A

    Web crawling

  2. B

    Distributed denial of service (DDoS) attack

  3. C

    Password guessing

  4. D

    Phishing

  5. E

    Brute force attack

Show answer and explanation

Correct answers: D, E

Question 7 Single choice

A suspicious script was found on a sensitive research system. Subsequent analysis determined that proprietary data would have been deleted from both the local server and backup media immediately following a specific administrator's removal from an employee list that is refreshed each evening.

Which of the following BEST describes this scenario?

  1. A

    Backdoor

  2. B

    Rootkit

  3. C

    Time bomb

  4. D

    Login bomb

Show answer and explanation

Correct answer: A

Question 8 Single choice

Which of the following is an automated password cracking technique that uses a combination of uppercase and lowercase letters, 0-9 numbers, and special characters?

  1. A

    Dictionary attack

  2. B

    Password guessing

  3. C

    Brute force attack

  4. D

    Rainbow tables

Show answer and explanation

Correct answer: C

Question 9 Single choice

Which of the following is a method of reconnaissance in which a ping is sent to a target with the expectation of receiving a response?

  1. A

    Active scanning

  2. B

    Passive scanning

  3. C

    Network enumeration

  4. D

    Application enumeration

Show answer and explanation

Correct answer: C

Question 10 Single choice

In which of the following attack phases would an attacker use Shodan?

  1. A

    Scanning

  2. B

    Reconnaissance

  3. C

    Gaining access

  4. D

    Persistence

Show answer and explanation

Correct answer: A