New Year Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free Logical Operations CFR-210 Practice Exam with Questions & Answers | Set: 3

Questions 21

Which of the following protocols can be used for data extension?

Options:
A.

SNMP

B.

DNS

C.

ARP

D.

DHCP

Questions 22

An intruder gains physical access to a company’s headquarters. The intruder is able to access the company’s network via a visitor’s office. The intruder sets up an attack device, under the visitor’s office desk, that impersonates the corporate wireless network. Users at headquarters begin to notice slow browsing speeds from their company laptops. Which of the following attacks is MOST likely occurring?

Options:
A.

Man-in-the-middle

B.

Denial of service

C.

Social engineering

D.

ARP table poisoning

Questions 23

A SOC analyst reviews vendor security bulletins and security blog articles against the company’s deployed system and software base. Based on current attack patterns, three vulnerabilities, including a zero-day vulnerability, have been upgraded to high priority. Which of the following should the SOC analyst recommend? (Choose two.)

Options:
A.

Reboot affected servers

B.

Implement DNS filtering

C.

Update IPS rules

D.

Implement application whitelisting

E.

Patch affected systems

Questions 24

A system administrator is informed that a user received an email containing a suspicious attachment. Which of the following methods is the FASTEST way to determine whether the file is suspicious or not?

Options:
A.

Reverse engineering

B.

Virus scanning

C.

Virtualization

D.

Sandboxing

Questions 25

Log review shows that large amounts of data are being sent to an IP address unassociated with the company. Which of the following migration techniques should be implemented?

Options:
A.

DNS filtering

B.

System hardening

C.

Proxy

D.

IPS

Questions 26

A forensics investigator has been assigned the task of investigating a system user for suspicion of using a company-owned workstation to view unauthorized content. Which of the following would be a proper course of action for the investigator to take?

Options:
A.

Notify the user that their workstation is being confiscated to perform an investigation, providing no details as to the reasoning.

B.

Confiscate the workstation while the suspected employee is out of the office, andperform a search on the asset.

C.

Confiscate the workstation while the suspected employee is out of the office, and perform the search on bit-for-bit image of the hard drive.

D.

Notify the user that the workstation is being confiscated to perform an investigation, providing complete transparency as to the suspicions.

Questions 27

Network engineering has reported low bandwidth during working hours. The incident response team is currently investigating several anomalous activities that may be related. Which of the following is the MOST appropriate method to further investigate this problem?

Options:
A.

Collecting and analyzing computer logs

B.

Imaging hard disk drives of computers on the network

C.

Capturing network traffic and packet analysis

D.

Penetration testing and port scanning

Questions 28

A forensics analyst is analyzing an executable and thinks it may have some text of interest hidden within it. Which of the following tools can the analyst use to assist in validating the suspicion?

Options:
A.

Isof

B.

cat command

C.

hex editor

D.

more

Questions 29

A hacker’s end goal is to target the Chief Financial Officer (CFO) of a bank. Which of the following describes this social engineering tactic?

Options:
A.

Vishing

B.

Pharming

C.

Spear phishing

D.

Whaling

Questions 30

During a network-based attack, which of the following data sources will provide the BEST data to quickly determine the attacker’s point of origin? (Choose two.)

Options:
A.

DNS logs

B.

System logs

C.

WIPS logs

D.

Firewall logs

E.

IDS/IPS logs

Exam Code: CFR-210
Certification Provider: Logical Operations
Exam Name: Logical Operations CyberSec First Responder
Last Update: Mar 27, 2025
Questions: 100

Logical Operations Related Exams

How to pass CertNexus CFR-410 - CyberSec First Responder (CFR) Exam Exam

Logical Operations Free Exams

Logical Operations Free Exams
Examstrack provides free Logical Operations exam prep materials and practice tests to support your Logical Operations certification goals.