EC0-479 EC-Council Certified Security Analyst (ECSA)

Loading demo links...

Showing 10–12 of 12 questions

Question 10 (Volume B)

Harold is a security analyst who has just run the rdisk /s command to grab the backup SAM file on a computer. Where should Harold navigate on the computer to find the file?

Select an option, then click Submit answer.

  • %systemroot%\LSA

  • %systemroot%\repair

  • %systemroot%\system32\drivers\etc

  • %systemroot%\system32\LSA

Question 11 (Volume E)

A law enforcement officer may only search for and seize criminal evidence with _____________, which are facts or circumstances that would lead a reasonable person to believe a crime has been committed or is about to be committed, evidence of the specific crime exists and the evidence of the specific crime exists at the place to be searcheD.

Select an option, then click Submit answer.

  • Mere Suspicion

  • A preponderance of the evidence

  • Probable cause

  • Beyond a reasonable doubt

Question 12 (Volume B)

What is the target host IP in the following command?

Select an option, then click Submit answer.

  • Firewalk does not scan target hosts

  • 172.16.28.95

  • This command is using FIN packets, which cannot scan target hosts

  • 10.10.150.1