Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil Exam 212-89 Topic 1 Question 79 Discussion

Actual exam question for Eccouncil's 212-89 exam
Question #: 79
Topic #: 1
[All 212-89 Questions]

After a recent email attack, Harry is analyzing the incident to obtain important information related to the incident. While investigating the incident, he is trying to

extract information such as sender identity, mail server, sender's IP address, location, and so on.

Which of the following tools Harry must use to perform this task?

Show Suggested Answer Hide Answer
Suggested Answer: C

Yesware is a tool primarily known for its email tracking capabilities, which can be useful for sales, marketing, and customer relationship management. However, in the context of investigating email attacks and analyzing incidents to extract details such as sender identity, mail server, sender's IP address, and location, a more appropriate tool would be one that specializes in analyzing and extracting detailed header information from emails, providing insights into the path an email took across the internet. While Yesware can provide data related to email interactions, it might not offer the depth of forensic analysis required for incident investigation. Tools like email header analyzers, which are designed specifically for dissecting and interpreting email headers, would be more fitting. In the absence of a direct match from the given options, the description might imply a broader interpretation of tools like Yesware in context but traditionally, tools specifically designed for email forensics would be sought after for this task.


Contribute your Thoughts:

Jimmie
19 hours ago
Who names these tools? Yesware and Logly? Really? I'm going with Option D, Sharp, because at least it sounds like it might do the job.
upvoted 0 times
...
Jerry
7 days ago
Hmm, I'm not too sure about these options. Isn't there a tool specifically designed for email forensics? I feel like that would be the best choice here.
upvoted 0 times
...
Emeline
11 days ago
I'm going with Option A, Clamwin. It's a good antivirus tool that can scan for malware and potentially reveal some information about the attack.
upvoted 0 times
...
Rasheeda
15 days ago
I'm not sure, but I think Clamwin could also be useful for this task.
upvoted 0 times
...
James
18 days ago
I agree with Davida, Logly is a good tool for extracting information like sender identity and IP address.
upvoted 0 times
...
Willard
19 days ago
Option D, Sharp, seems like the right tool for the job. It can help extract crucial details about the email attack, like the sender's identity and location.
upvoted 0 times
Ricki
20 hours ago
B) Logly
upvoted 0 times
...
Glory
4 days ago
A) Clamwin
upvoted 0 times
...
...
Davida
23 days ago
I think Harry should use Logly for analyzing the incident.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77