Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil 312-50 Exam - Topic 6 Question 106 Discussion

A friend of yours tells you that he downloaded and executed a file that was sent to him by a coworker. Since the file did nothing when executed, he asks you for help because he suspects that he may have installed a trojan on his computer.what tests would you perform to determine whether his computer Is Infected?
D) Use netstat and check for outgoing connections to strange IP addresses or domains.
A) Use ExifTool and check for malicious content.
B) You do not check; rather, you immediately restore a previous snapshot of the operating system.
C) Upload the file to VirusTotal.

Eccouncil 312-50 Exam - Topic 6 Question 106 Discussion

Actual exam question for Eccouncil's 312-50 exam
Question #: 106
Topic #: 6
[All 312-50 Questions]

A friend of yours tells you that he downloaded and executed a file that was sent to him by a coworker. Since the file did nothing when executed, he asks you for help because he suspects that he may have installed a trojan on his computer.

what tests would you perform to determine whether his computer Is Infected?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

0/2000 characters
Kathrine
7 months ago
Wait, he just ran a random file? That's risky!
upvoted 0 times
...
Mohammad
7 months ago
ExifTool might not catch everything, though.
upvoted 0 times
...
Rosina
7 months ago
Not sure if restoring a snapshot is the best move.
upvoted 0 times
...
Dylan
8 months ago
Using netstat is a solid idea to check for weird connections.
upvoted 0 times
...
Tonette
8 months ago
Definitely upload the file to VirusTotal!
upvoted 0 times
...
Chara
8 months ago
ExifTool sounds familiar, but I can't recall if it's really effective for detecting trojans. I might lean towards using VirusTotal instead.
upvoted 0 times
...
Lucia
8 months ago
I feel like restoring a snapshot might be too drastic without checking for infections first. We should investigate before taking such measures.
upvoted 0 times
...
Juliana
8 months ago
I'm not entirely sure, but I think checking for outgoing connections with netstat could help identify if something suspicious is happening.
upvoted 0 times
...
Cristal
9 months ago
I remember we discussed using VirusTotal in class; it seems like a good first step to check if the file is flagged as malicious.
upvoted 0 times
...
Sherell
9 months ago
ExifTool? I'm not familiar with that tool. I think I'd feel more comfortable sticking to the basics like netstat and checking for any weird network activity.
upvoted 0 times
...
Aleta
9 months ago
Okay, let's think this through. I'd probably upload the file to VirusTotal and see if it comes back as malicious. That's a good first step to determine if it's a trojan.
upvoted 0 times
...
Hobert
9 months ago
I'm a bit unsure about this one. Should I really just restore a previous snapshot without checking anything first? That seems a bit extreme.
upvoted 0 times
...
Gayla
9 months ago
Hmm, this is a tricky one. I think I'd start by using netstat to check for any suspicious outgoing connections. That could give us a clue if the computer is infected.
upvoted 0 times
...
Veda
1 year ago
You know, if I found a suspicious file on my computer, the first thing I'd do is call in an airstrike. Just to be safe.
upvoted 0 times
Karma
12 months ago
That's a bit extreme, calling in an airstrike. But it's good to be cautious with suspicious files.
upvoted 0 times
...
Barrie
12 months ago
D) Use netstat and check for outgoing connections to strange IP addresses or domains.
upvoted 0 times
...
Madalyn
12 months ago
C) Upload the file to VirusTotal.
upvoted 0 times
...
Tiffiny
1 year ago
A) Use ExifTool and check for malicious content.
upvoted 0 times
...
...
Arthur
1 year ago
ExifTool? Really? That's more for image metadata, not malware detection. I think D is the way to go here.
upvoted 0 times
...
Joanna
1 year ago
Option B is tempting, but it's a bit of an overreaction. I'd start with VirusTotal first to see if the file is known malware.
upvoted 0 times
Rolf
1 year ago
C: After that, using ExifTool to check for malicious content could be helpful in determining if the file is infected.
upvoted 0 times
...
Edward
1 year ago
B: I would also use netstat to check for any suspicious outgoing connections.
upvoted 0 times
...
Rasheeda
1 year ago
A: I agree, using VirusTotal is a good first step to check for known malware.
upvoted 0 times
...
...
Keva
1 year ago
I would personally go with restoring a previous snapshot of the operating system to be safe.
upvoted 0 times
...
Nu
1 year ago
I think using netstat to check for outgoing connections is a good idea to see if there are any suspicious activities.
upvoted 0 times
...
Queenie
1 year ago
I would upload the file to VirusTotal to check for any potential threats.
upvoted 0 times
...
Kina
1 year ago
I'd definitely go with option D. Checking for suspicious network connections is the best way to detect a potential trojan infection.
upvoted 0 times
Caren
1 year ago
User 3: Using ExifTool to check for malicious content is also a good idea before taking any further steps.
upvoted 0 times
...
Xuan
1 year ago
User 2: I think uploading the file to VirusTotal could also help identify any malicious content.
upvoted 0 times
...
Stephanie
1 year ago
User 1: I agree, option D is a good choice to check for outgoing connections.
upvoted 0 times
...
...

Save Cancel