Lab 2
Lab 2
Lab 2
com/Instructions/ExamResult/6ec36601-5f52-4f27-ad92-0e5d3ed4bfb3
20/20
Congratulations, you passed!
Duration: 46 minutes, 22 seconds
Who should have access to a share containing sensitive data like CertEnroll? Score: 1
Everyone
Administrators
Authenticated Users
Only users with a role requirement for such data
Which of the following would be an effective method to directly block access to Rene and Score: 1
other similar users from accessing an admin-only resource?
Task complete
Task complete
Jamie is an administrator
https://labclient.labondemand.com/Instructions/ExamResult/6ec36601-5f52-4f27-ad92-0e5d3ed4bfb3 1/4
2/14/24, 1:19 PM labclient.labondemand.com/Instructions/ExamResult/6ec36601-5f52-4f27-ad92-0e5d3ed4bfb3
confirm if the C:\LABFILES\pcaps directory was deleted and check for an event log Score: 1
record with an event ID of 4663 and an Object Name of C:\LABFILES\
Select the Score button to validate this task:
C:\LABFILES\pcaps deleted ...
Event log record found with ID 4663 and Object Name C:\LABFILES\pcaps
Task complete
confirm the existence of LegalNoticeCaption and LegalNoticeText registry keys with Score: 1
non-zero values $result = $False
Select the Score button to validate this task:
Registry keys LegalNoticeCaption and LegalNoticeText exist
Task complete
Defense
Compliance
Prohibition
Tracking
Congratulations, you have answered the question correctly.
What are the dual purposes of corrective controls? (Select two) Score: 1
https://labclient.labondemand.com/Instructions/ExamResult/6ec36601-5f52-4f27-ad92-0e5d3ed4bfb3 2/4
2/14/24, 1:19 PM labclient.labondemand.com/Instructions/ExamResult/6ec36601-5f52-4f27-ad92-0e5d3ed4bfb3
confirm if the notes.txt file exists and contains "This is important" Score: 1
Select the Score button to validate this task:
File C:\Users\jaime\notes.txt exists and contains 'This is important'
Task complete
Task complete
confirm if the calchash.ps1 file exists and contains the "Get-FileHash" command Score: 1
Select the Score button to validate this task:
File C:\Users\jaime\calchash.ps1 exists and contains the 'Get-FileHash' command
Task complete
confirm if the check.ps1 file exists and contains the "Get-Content" cmdlet Score: 1
Select the Score button to validate this task:
File C:\Users\jaime\check.ps1 exists and contains the 'Get-Content' cmdlet
Task complete
What is the typical means (which was used in this exercise) to detect changes in a file? Score: 1
encryption
authentication
authorization
hashing
Give instructions
Restore a system back to preferred condition
Persuade a perpetrator to go elsewhere
Compensate for a failed control
What is the purpose of the dot and slash in front of the filenames in the PowerShell Score: 1
scripts and when executing PowerShell scripts?
https://labclient.labondemand.com/Instructions/ExamResult/6ec36601-5f52-4f27-ad92-0e5d3ed4bfb3 4/4