Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil Exam 212-89 Topic 1 Question 79 Discussion

Actual exam question for Eccouncil's 212-89 exam
Question #: 79
Topic #: 1
[All 212-89 Questions]

After a recent email attack, Harry is analyzing the incident to obtain important information related to the incident. While investigating the incident, he is trying to

extract information such as sender identity, mail server, sender's IP address, location, and so on.

Which of the following tools Harry must use to perform this task?

Show Suggested Answer Hide Answer
Suggested Answer: C

Yesware is a tool primarily known for its email tracking capabilities, which can be useful for sales, marketing, and customer relationship management. However, in the context of investigating email attacks and analyzing incidents to extract details such as sender identity, mail server, sender's IP address, and location, a more appropriate tool would be one that specializes in analyzing and extracting detailed header information from emails, providing insights into the path an email took across the internet. While Yesware can provide data related to email interactions, it might not offer the depth of forensic analysis required for incident investigation. Tools like email header analyzers, which are designed specifically for dissecting and interpreting email headers, would be more fitting. In the absence of a direct match from the given options, the description might imply a broader interpretation of tools like Yesware in context but traditionally, tools specifically designed for email forensics would be sought after for this task.


Contribute your Thoughts:

Jerry
6 days ago
Hmm, I'm not too sure about these options. Isn't there a tool specifically designed for email forensics? I feel like that would be the best choice here.
upvoted 0 times
...
Emeline
10 days ago
I'm going with Option A, Clamwin. It's a good antivirus tool that can scan for malware and potentially reveal some information about the attack.
upvoted 0 times
...
Rasheeda
14 days ago
I'm not sure, but I think Clamwin could also be useful for this task.
upvoted 0 times
...
James
17 days ago
I agree with Davida, Logly is a good tool for extracting information like sender identity and IP address.
upvoted 0 times
...
Willard
18 days ago
Option D, Sharp, seems like the right tool for the job. It can help extract crucial details about the email attack, like the sender's identity and location.
upvoted 0 times
Glory
3 days ago
A) Clamwin
upvoted 0 times
...
...
Davida
22 days ago
I think Harry should use Logly for analyzing the incident.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77