Page 1 of 92
1
WGU C702 FINAL EXAM ACTUAL LATEST
VERSION 2023-2024 QUESTIONS AND CORRECT
VERIFIED ANSWERS WITH RATIONALES
ALREADY GRADED A+ (NEW!!)
Which web application threat occurs when attackers identify a flaw, bypass authentication, and compromise the network?
- Buffer overflow
- SQL injection
- Cookie poisoning
- Broken access control
- Logs
- Windows Server
- Internet Information Services (IIS)
- Web server
- %SystemDrive%\PerfLogs\LogFiles
- %SystemDrive%\inetpub\LogFiles
- %SystemDrive%\PerfLogs\Logs\LogFiles
- %SystemDrive%\inetpub\logs\LogFiles
- netstat -n
- netstat -na 1 / 4
D Which Microsoft-developed server architecture supports HTTP, HTTPS, FTP, FTPS, SMTP, and NNTP?
C In which location are IIS log files stored by default?
D Which command is used to find if TCP and UDP ports have unusual listening?
Page 2 of 92
2
- netstat -ns
- netstat -s
B The Apache web server follows a modular approach and consists of two major
components: the Apache core and the ________.
- Apache modules
- Apache client
- Apache main
- Apache config
- Cookie poisoning
- Buffer overflow
- SQL injection
- http_alloc
- http_config
- http_core
- http_manage
- Expediting the process of obtaining a warrant may lead to the timely prosecution of a 2 / 4
A Which web application threat occurs when attackers insert commands via input data and are able to tamper with the data?
Denial-of-service C The elements of the Apache core that address the basic functionalities of the server are http_protocol, http_main, http_request, http_core, alloc, and ________.
B Under which of the following circumstances has a court of law allowed investigators to perform searches without a warrant?
Page 3 of 92
3 perpetrator.
- Delay in obtaining a warrant may lead to the preservation of evidence and expedite the
- Delay in obtaining a warrant may lead to the destruction of evidence and hamper the
- Expediting the process of obtaining a warrant may lead to a delay in prosecution of a
- Lightweight construction materials need to be used.
- Computer systems should be visible from every angle.
- Room size should be compact with standard HVAC equipment.
- Sufficient space to place all equipment to include storage
- Testify as an expert witness
- Testify as an expert defendant
- Data analysis
- Data acquisition
- False
- True
investigation process.
investigation process.
perpetrator.C Which of the following should be physical location and structural design considerations for forensics labs?
D Which of the following is not part of the Computer Forensics Investigation Methodology?
B Investigators can immediately take action after receiving a report of a security incident.
A 3 / 4
Page 4 of 92
4 Identify the following project, which was launched by the National Institute of Standards and Technology (NIST), that establishes a "methodology for testing computer forensics software tools by development of general tool specifications, test procedures, test criteria, test sets, and test hardware."
- Computer Forensic Hardware Project (CFHP)
- Computer Forensic Investigation Project (CFIP)
- Computer Forensic Tool Testing Project (CFTTP)
- Enterprise Theory of Investigation (ETI)
- True
- False
- Transfer copies of system logs onto a clean media.
- Record what is on the screen if the computer is switched on.
- Immediately power down the computer if an ongoing attack is detected.
- Document every detail relevant to the incident.
- True
- False
- / 4
C First responders can collect or recover data from any computer system or device that holds electronic information.
B What is not one of the measures a system or network administrator should take when responding to an incident.
C Written consent from the authority is sufficient to commence search and seizure activity.
A