Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil Exam 212-89 Topic 1 Question 79 Discussion

Actual exam question for Eccouncil's 212-89 exam
Question #: 79
Topic #: 1
[All 212-89 Questions]

After a recent email attack, Harry is analyzing the incident to obtain important information related to the incident. While investigating the incident, he is trying to

extract information such as sender identity, mail server, sender's IP address, location, and so on.

Which of the following tools Harry must use to perform this task?

Show Suggested Answer Hide Answer
Suggested Answer: C

Yesware is a tool primarily known for its email tracking capabilities, which can be useful for sales, marketing, and customer relationship management. However, in the context of investigating email attacks and analyzing incidents to extract details such as sender identity, mail server, sender's IP address, and location, a more appropriate tool would be one that specializes in analyzing and extracting detailed header information from emails, providing insights into the path an email took across the internet. While Yesware can provide data related to email interactions, it might not offer the depth of forensic analysis required for incident investigation. Tools like email header analyzers, which are designed specifically for dissecting and interpreting email headers, would be more fitting. In the absence of a direct match from the given options, the description might imply a broader interpretation of tools like Yesware in context but traditionally, tools specifically designed for email forensics would be sought after for this task.


Contribute your Thoughts:

Dean
29 days ago
Harry should just ask the email provider for the details. Seems like a waste of time trying to figure it out on his own. But if I had to choose, I'd go with Option D, Sharp.
upvoted 0 times
Marta
1 days ago
User2: Option D, Sharp, would be a good choice.
upvoted 0 times
...
Dortha
3 days ago
User1: Harry should just ask the email provider for the details.
upvoted 0 times
...
...
Jimmie
2 months ago
Who names these tools? Yesware and Logly? Really? I'm going with Option D, Sharp, because at least it sounds like it might do the job.
upvoted 0 times
Bernadine
7 days ago
Cammy: Let's go with Option D then, Sharp it is.
upvoted 0 times
...
Cammy
12 days ago
User 2: I think so too, it does sound like it could get the job done.
upvoted 0 times
...
Shawna
1 months ago
User 1: I agree, Sharp sounds like a reliable tool for this task.
upvoted 0 times
...
...
Jerry
2 months ago
Hmm, I'm not too sure about these options. Isn't there a tool specifically designed for email forensics? I feel like that would be the best choice here.
upvoted 0 times
Ivette
7 days ago
D) Sharp
upvoted 0 times
...
Lonna
22 days ago
C) Yesware
upvoted 0 times
...
Kiera
29 days ago
B) Logly
upvoted 0 times
...
Nana
1 months ago
A) Clamwin
upvoted 0 times
...
...
Emeline
2 months ago
I'm going with Option A, Clamwin. It's a good antivirus tool that can scan for malware and potentially reveal some information about the attack.
upvoted 0 times
Melinda
22 days ago
Yes, Clamwin is known for its malware scanning capabilities. It could definitely help in this situation.
upvoted 0 times
...
Silvana
1 months ago
I think Clamwin is a good choice too. It can help with malware detection.
upvoted 0 times
...
...
Rasheeda
2 months ago
I'm not sure, but I think Clamwin could also be useful for this task.
upvoted 0 times
...
James
2 months ago
I agree with Davida, Logly is a good tool for extracting information like sender identity and IP address.
upvoted 0 times
...
Willard
2 months ago
Option D, Sharp, seems like the right tool for the job. It can help extract crucial details about the email attack, like the sender's identity and location.
upvoted 0 times
Alyce
14 days ago
Great to hear! It's important to have the right tools for investigating email attacks.
upvoted 0 times
...
Gianna
18 days ago
I have used Sharp before, and it was very helpful in analyzing email incidents.
upvoted 0 times
...
Tu
24 days ago
Yes, I agree. Sharp can provide important details like the sender's IP address and mail server.
upvoted 0 times
...
Shannan
29 days ago
I think Sharp is the best option for extracting information from the email attack.
upvoted 0 times
...
Stefania
1 months ago
D) Sharp
upvoted 0 times
...
Aaron
1 months ago
C) Yesware
upvoted 0 times
...
Ricki
2 months ago
B) Logly
upvoted 0 times
...
Glory
2 months ago
A) Clamwin
upvoted 0 times
...
...
Davida
2 months ago
I think Harry should use Logly for analyzing the incident.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77